GPupdate Failing on Member Servers
i have dc windows 2008 enterprise , have member servers 2003 isa server 2008 standard av server , 2008 enterprise
currently gpupdate /force command giving error below on member servers.
i have check below path i.e. till *.gpt.ini accessible 2008 member server not 2003 member server.
c:\>gpupdate /force
updating policy...
user policy update has completed successfully.
computer policy not updated successfully. following errors enc
ountered:
the processing of group policy failed. windows attempted read file \\domainname.local\sysvol\domainname.local\policies\{31b2f340-016d-11d2-945f-00c04fb984f9}\gpt.ini domain controller , not successful. group policy settings may
not applied until event resolved. issue may transient , cou
ld caused 1 or more of following:
a) name resolution/network connectivity current domain controller.
b) file replication service latency (a file created on domain controller
has not replicated current domain controller).
c) distributed file system (dfs) client has been disabled.
to diagnose failure, review event log or invoke gpmc.msc access infor
mation group policy results.
-------------------------
but can access below path run command on 2003 member server when enter complete name \\dcname.domainname.local\sysvol\aoacrs.local\policies\{31b2f340-016d-11d2-945f-00c04fb984f9}\gpt.ini
but 2003 when access run command \\domainname.local can see netlogon & sysvol folder can't click on them gives error "\\domainname.local\sysvol not accessible. might not have permission use network resource"
dont know group policy working fine on 2003 member server on 2008 member not working long time.
---------------------------
also nslookup working fine on 2008 member, pointing dc ip adddress.
dcdiag on 2003 member server giving error below
starting test: frssysvol
......................... dcname failed test frssysvol
dcdiag on 2008 member server giving error below
starting test: sysvolcheck
......................... dcname failed test sysvolcheck
-------------------------------
c:\>ipconfig /all
windows ip configuration
host name . . . . . . . . . . . . : 2008memberserver
primary dns suffix . . . . . . . : domainname.local
node type . . . . . . . . . . . . : hybrid
ip routing enabled. . . . . . . . : no
wins proxy enabled. . . . . . . . : no
dns suffix search list. . . . . . : domainname.local
ethernet adapter epharm_av_3682:
connection-specific dns suffix . :
description . . . . . . . . . . . : basp virtual adapter
physical address. . . . . . . . . : 00-14-5e-3e-9e-67
dhcp enabled. . . . . . . . . . . : no
autoconfiguration enabled . . . . : yes
ipv4 address. . . . . . . . . . . : 10.240.6.196(preferred)
subnet mask . . . . . . . . . . . : 255.255.255.240
default gateway . . . . . . . . . : 10.240.6.193
dns servers . . . . . . . . . . . : 10.240.18.229
10.240.18.226
10.240.18.228
194.72.7.142
194.72.7.137
netbios on tcpip. . . . . . . . : enabled
ethernet adapter epharm_av_925:
connection-specific dns suffix . :
description . . . . . . . . . . . : basp virtual adapter #2
physical address. . . . . . . . . : 00-14-5e-3e-9e-67
dhcp enabled. . . . . . . . . . . : no
autoconfiguration enabled . . . . : yes
ipv4 address. . . . . . . . . . . : 10.247.15.100(preferred)
subnet mask . . . . . . . . . . . : 255.255.255.240
default gateway . . . . . . . . . :
netbios on tcpip. . . . . . . . : enabled
ethernet adapter epharm_av_3989:
connection-specific dns suffix . : domainname.local
description . . . . . . . . . . . : basp virtual adapter #3
physical address. . . . . . . . . : 00-14-5e-3e-9e-67
dhcp enabled. . . . . . . . . . . : no
autoconfiguration enabled . . . . : yes
ipv4 address. . . . . . . . . . . : 10.240.18.237(preferred)
subnet mask . . . . . . . . . . . : 255.255.255.240
default gateway . . . . . . . . . :
dns servers . . . . . . . . . . . : 10.240.18.229
10.240.18.230
194.72.7.137
netbios on tcpip. . . . . . . . : enabled
tunnel adapter local area connection* 8:
media state . . . . . . . . . . . : media disconnected
connection-specific dns suffix . :
description . . . . . . . . . . . : isatap.{247e9943-3a7f-4c76-9b9b-cad8b7e09
a9c}
physical address. . . . . . . . . : 00-00-00-00-00-00-00-e0
dhcp enabled. . . . . . . . . . . : no
autoconfiguration enabled . . . . : yes
tunnel adapter local area connection* 12:
media state . . . . . . . . . . . : media disconnected
connection-specific dns suffix . :
description . . . . . . . . . . . : isatap.{e84fd664-d357-4fa0-b7a7-7aff627b3
190}
physical address. . . . . . . . . : 00-00-00-00-00-00-00-e0
dhcp enabled. . . . . . . . . . . : no
autoconfiguration enabled . . . . : yes
tunnel adapter local area connection* 13:
media state . . . . . . . . . . . : media disconnected
connection-specific dns suffix . :
description . . . . . . . . . . . : isatap.domainname.local
physical address. . . . . . . . . : 00-00-00-00-00-00-00-e0
dhcp enabled. . . . . . . . . . . : no
autoconfiguration enabled . . . . : yes
---------------------------------------------------------
gp log error recorded below
getdcnamefromgptpath: netdfsgetclientinfo() failed error=0xa66 gpt path=\\domainname.local\sysvol\domainname.local\policies\{31b2f340-016d-11d2-945f-00c04fb984f9}\gpt.ini
gpsvc(3f4.87c) 11:44:59:933 processgpo: couldn't find group policy template file <\\dmainname.local\sysvol\domainname.local\policies\{31b2f340-016d-11d2-945f-00c04fb984f9}\gpt.ini >, error = 0x5. dc: <null>
gpsvc(3f4.87c) 11:44:59:933 processgpo: ==============================
gpsvc(3f4.87c) 11:44:59:948 evallist: processgpo failed
gpsvc(3f4.87c) 11:44:59:948 getgpoinfo: evaluatedeferredgpos failed. exiting
gpsvc(3f4.87c) 11:44:59:948 getgpoinfo: leaving 0
gpsvc(3f4.87c) 11:44:59:948 getgpoinfo: ********************************
gpsvc(3f4.87c) 11:44:59:948 processgpos: getgpoinfo failed.
gpsvc(3f4.87c) 11:44:59:948 processgpos: no wmi logging done in policy cycle.
gpsvc(3f4.87c) 11:44:59:964 processgpos: processing failed error 5.
please me rid of issue.
hey huge sucess me. have found solution.
after refering lots of articles , lots of research, small problem.
i have opened adsiedit.msc , done below.
1- expand first folder (domain)
2- , next 1 go cn=system expand it
3- go cn=policies expand it
4- right click each folder of policies click properties , search gpcfilesyspath press edit , add server name before domain name done remaining policies folders.
for example \\dcname.domainname.local\sysvol\domainname.local\policies\{31b2f340-016d-11d2-945f-00c04fb984f9}
and logged off , logged in on 1 of member server , found issue has been resolved without rebooting of server.
Windows Server > Group Policy
Comments
Post a Comment