E
edavid3001
I have a 550 machine network. On this network I have some users who's
user settings (GPOs) are not *running*. My guess is maybe 20 of the
~600 users.
What I mean is that the settings have been set in the registry, but
they simply don't run. This includes user login scripts, logoff
scripts, and various settings such as run login scripts invisible=yes
but they don't run invisible.
I have a VMware PC for testing. Whenever I log in, it works fine.
I took a user in question, and made a copy of this user's profile.
Gave this new user it's own home drive and mapped it to that home
drive & roaming profile.
I logged into the VM machine as this new test user numerous times.
The problem followed this test user onto my VM machine. The user
login scripts do not run. The domain logon script is visible.
The machine settings are there.
Another thing worth mentioning is that these GPOs apply at the root.
This user is in a department OU with other users, of which they are
running the user GPOs. Their computer is in another OU for computers/
department and same thing - the computer GPOs are processing.
So the problem is following the user. It was working for this user
per the log files I generate during the user login script. It just
quit and hasn't worked for 3 1/2 months.
This is the userenv.log;
USERENV(37c.380) 09:46:01:885 ReconcileFile: Unable to open temporary
file
USERENV(37c.380) 09:47:31:375 CUserProfile::CleanupUserProfile: Ref
Count is not 0
USERENV(37c.380) 09:47:31:406 CUserProfile::CleanupUserProfile: Ref
Count is not 0
USERENV(37c.380) 09:47:31:406 CUserProfile::CleanupUserProfile: Ref
Count is not 0
USERENV(37c.75c) 09:47:38:046 ProcessGPOs: The DC for domain PRIME is
not available at startup. retrying
USERENV(37c.75c) 09:47:44:125 ProcessGPOs: DC for domain PRIME is
reachable after retries.
USERENV(b08.b0c) 09:47:50:687 RefreshPolicyEx: Failed to open event
with 2
USERENV(b08.b0c) 09:47:50:921 RefreshPolicyEx: Failed to open event
with 2
USERENV(37c.75c) 09:47:58:015 GetGPOInfo: Local GPO's gpt.ini is not
accessible, assuming default state.
USERENV(37c.d64) 09:48:11:698 GetWbemServices: CoCreateInstance
returned 0x800401f0
USERENV(37c.d9c) 09:48:58:744 GetGPOInfo: Local GPO's gpt.ini is not
accessible, assuming default state.
USERENV(37c.d9c) 09:50:08:566 ProcessGPOs: Forced option changed
policy mode.
The local GPOs GPT.ini error is normal I believe, since I have no
"local" GPO set. It's all domain.
Rsop.msc shows everything as normal. The user shows the policy's and
user login scripts. They just don't run for this particular user.
DNS resolves for the domain. WINS had an issue, but that is fixed.
If I recreate the GPO making an exact copy of it, and copying the
scripts from the old GPOs directories into the new GPOs directories,
then the new GPO will run on these users but the old one doesn't.
The rights are the same on these. The user has access to these
scripts when I navigate in explorer to them.
Any ideas on this? It really strikes me odd that the login scripts
are in HKCU, and the old one doesn't run but the new one does.
user settings (GPOs) are not *running*. My guess is maybe 20 of the
~600 users.
What I mean is that the settings have been set in the registry, but
they simply don't run. This includes user login scripts, logoff
scripts, and various settings such as run login scripts invisible=yes
but they don't run invisible.
I have a VMware PC for testing. Whenever I log in, it works fine.
I took a user in question, and made a copy of this user's profile.
Gave this new user it's own home drive and mapped it to that home
drive & roaming profile.
I logged into the VM machine as this new test user numerous times.
The problem followed this test user onto my VM machine. The user
login scripts do not run. The domain logon script is visible.
The machine settings are there.
Another thing worth mentioning is that these GPOs apply at the root.
This user is in a department OU with other users, of which they are
running the user GPOs. Their computer is in another OU for computers/
department and same thing - the computer GPOs are processing.
So the problem is following the user. It was working for this user
per the log files I generate during the user login script. It just
quit and hasn't worked for 3 1/2 months.
This is the userenv.log;
USERENV(37c.380) 09:46:01:885 ReconcileFile: Unable to open temporary
file
USERENV(37c.380) 09:47:31:375 CUserProfile::CleanupUserProfile: Ref
Count is not 0
USERENV(37c.380) 09:47:31:406 CUserProfile::CleanupUserProfile: Ref
Count is not 0
USERENV(37c.380) 09:47:31:406 CUserProfile::CleanupUserProfile: Ref
Count is not 0
USERENV(37c.75c) 09:47:38:046 ProcessGPOs: The DC for domain PRIME is
not available at startup. retrying
USERENV(37c.75c) 09:47:44:125 ProcessGPOs: DC for domain PRIME is
reachable after retries.
USERENV(b08.b0c) 09:47:50:687 RefreshPolicyEx: Failed to open event
with 2
USERENV(b08.b0c) 09:47:50:921 RefreshPolicyEx: Failed to open event
with 2
USERENV(37c.75c) 09:47:58:015 GetGPOInfo: Local GPO's gpt.ini is not
accessible, assuming default state.
USERENV(37c.d64) 09:48:11:698 GetWbemServices: CoCreateInstance
returned 0x800401f0
USERENV(37c.d9c) 09:48:58:744 GetGPOInfo: Local GPO's gpt.ini is not
accessible, assuming default state.
USERENV(37c.d9c) 09:50:08:566 ProcessGPOs: Forced option changed
policy mode.
The local GPOs GPT.ini error is normal I believe, since I have no
"local" GPO set. It's all domain.
Rsop.msc shows everything as normal. The user shows the policy's and
user login scripts. They just don't run for this particular user.
DNS resolves for the domain. WINS had an issue, but that is fixed.
If I recreate the GPO making an exact copy of it, and copying the
scripts from the old GPOs directories into the new GPOs directories,
then the new GPO will run on these users but the old one doesn't.
The rights are the same on these. The user has access to these
scripts when I navigate in explorer to them.
Any ideas on this? It really strikes me odd that the login scripts
are in HKCU, and the old one doesn't run but the new one does.