Scripts defined in user policy doesn't run

  • Thread starter Thread starter Palle
  • Start date Start date
P

Palle

We have 2 DCs, separated by WAN, and an OU structure as follows:

domain
--vk
----st
------st01
------st02
----va
----sy

Gpo exist on domain, vk, st, st01. And every gpo has a user logon script
(amongst other things), but only the domain & vk Gpo applies. Only certain
client machines (2000 pro) is affected. Nothing visible in the eventlog.
All permissions on Gpo's is correct, and no "no override" is used.
Replication between DCs is functioning and all Gpo's is synchonized.
Clients use DHCP, and receives corect DNS etc.
One thought, all the clients affected have had roaming profiles, but not
anymore. How do I check that the client side extensions are functioning ?

/Palle
 
Here are some ideas:

823862 User Policies Are Not Applied When You Log On to a Computer That Is
http://support.microsoft.com/?id=823862

302104 The Logon Script Does Not Run During the Initial Logon Process
http://support.microsoft.com/?id=302104

227260 How a Slow Link Is Detected for Processing User Profiles and Group
Policy
http://support.microsoft.com/?id=227260

250842 Troubleshooting Group Policy Application Problems
http://support.microsoft.com/?id=250842

227369 Default Behavior for Group Policy Extensions with Slow Link
http://support.microsoft.com/?id=227369




If the above does not help enable Userenv logging on the client, log in
verify you did not get the policies, do whatever you have to do to make the
policies apply. Repost with that Userenv.log and the name of the user
account you are testing with. Also be more specific as far as what
configured policies are not applying and see if the clients are reporting
any Userenv errors in the application event log.

221833 How to Enable User Environment Debug Logging in Retail Builds of
Windows
http://support.microsoft.com/?id=221833

Buz Brodin
MCSE NT4 / Win2K
Microsoft Enterprise Domain Support

Get Secure! - www.microsoft.com/security

This posting is provided "as is" with no warranties and confers no rights.

Please do not send e-mail directly to this alias. This alias is for
newsgroup purposes only.
 
Ok, have enabled UserEnvDebugLevel and check out all logs and GPOs. The
clients receive all GPO as planned and processes them. The problem lies
elsewhere..hmm...

Thanks for the interesting links though...

/Palle
 
Did you see a fastlink or slowlink reference in the Userenvs? Or how about a
CheckXFOREST entry?

Buz Brodin
MCSE NT4 / Win2K
Microsoft Enterprise Domain Support

Get Secure! - www.microsoft.com/security

This posting is provided "as is" with no warranties and confers no rights.

Please do not send e-mail directly to this alias. This alias is for
newsgroup purposes only.
 
Back
Top