gpo related errors that i have never encountered before
- From: "Ardealul" <Ardealul@xxxxxxxxxxxxxxxxxxxxxxxxx>
- Date: Tue, 20 Sep 2005 03:47:02 -0700
early in the morning i noticed that some scripts i've created (long ago) and
programmed to run during each night didn't run. these tasks are run under a
specific user. backup tasks mostly.
events noted on the Domain Controller (w2k3 w/ sp1) :
APPLICATION EVENT LOG:
Event 1053:
Windows cannot determine the user or computer name. (Not enough storage is
available to complete this operation. ). Group Policy processing aborted.
Event ID 1003:
The Remote Installation service successfully read its settings from the
directory service.
Event ID 1047:
The Remote Installation service encountered an error from the PDC directory
service while attempting a search. The error code is in the record data.
Event ID 1030:
Windows cannot query for the list of Group Policy objects. Check the event
log for possible messages previously logged by the policy engine that
describes the reason for this.
DNS EVENT LOG:
Event ID 4000:
The DNS server was unable to open Active Directory. This DNS server is
configured to obtain and use information from the directory for this zone and
is unable to load the zone without it. Check that the Active Directory is
functioning properly and reload the zone. The event data is the error code.
On domain computers (wxp w/ sp2):
Event ID 1058:
Windows cannot access the file gpt.ini for GPO
cn={2C8287F7-9333-4547-86AB-6B5E43BF29FF},cn=policies,cn=system,DC=x. The
file must be present at the location
<\\x\SysVol\x\Policies\{2C8287F7-9333-4547-86AB-6B5E43BF29FF}\gpt.ini>.
(Configuration information could not be read from the domain controller,
either because the machine is unavailable, or access has been denied. ).
Group Policy processing aborted.
Event ID 1000:
Could not execute the following script \\x\y\z.bat. Access is denied. ->
asta ar fi trebuit sa fie un startup script.
i'm thinking that it's a kerberos related error due to the fact that clients
read gpo's only after kerberos authentication, while regular file system
(share) access also occurs after ntlm v2 authentication, which works.
.
- Prev by Date: Re: Organize AD
- Next by Date: Re: Windows 2003 Domain Controller
- Previous by thread: Have new 2003 Server, problems running DCPROMO on old 2000 server
- Next by thread: Roaming profile not creating certain reg keys
- Index(es):
Relevant Pages
|