Can only create/edit new Group Policy on DC holding PDC role
From: LoriP (LoriP_at_discussions.microsoft.com)
Date: 11/12/04
- Next message: Marsha: "Re: Default Domain Policy"
- Previous message: Steve Detwiler: "Roaming Profile Question"
- Next in thread: Gautam Anand: "Re: Can only create/edit new Group Policy on DC holding PDC role"
- Reply: Gautam Anand: "Re: Can only create/edit new Group Policy on DC holding PDC role"
- Messages sorted by: [ date ] [ thread ]
Date: Thu, 11 Nov 2004 16:55:05 -0800
Since upgrading to Windows Server 2003, Standard Edition, the only place we
can create/edit a new group policy is on the DC holding the PDC role. During
the upgrade we had to seize the PDC role because we lost the DC it was on,
and that machine was rebuilt with 2003 rather than upgraded from 2000. The
error message received is "Failed to open the Group Policy Object. You may
not have appropriate rights. I have checked article 294257, but this didn't
help, and I ran DCDIAG /V from the PDC which showed no errors. I have also
read the Step-by-Setp Buide to Using the Security Configuration Tool Set, but
haven't come up with anything. I also read articles 832214, but it's not
these policies, it's any new policy created. Article 263166 but nothing.
I've also run gpotool /verbose, but didn't come up with anything there. Any
other ideas? Our lab machines aren't a help because the problem doesn't
exist there.
Thanks for any information you can share.
- Next message: Marsha: "Re: Default Domain Policy"
- Previous message: Steve Detwiler: "Roaming Profile Question"
- Next in thread: Gautam Anand: "Re: Can only create/edit new Group Policy on DC holding PDC role"
- Reply: Gautam Anand: "Re: Can only create/edit new Group Policy on DC holding PDC role"
- Messages sorted by: [ date ] [ thread ]
Relevant Pages
|