RE: UserEnv Application events after DC promotion to W2K3



Hello Bill,

Thanks for posting!

Please excuse that I should have indicated that the Userenv.log and
Netlogon.log should be enabled based on the following method:

Enabling debug logging for the Net Logon service
http://support.microsoft.com/?id=109626

How to enable user environment debug logging in retail builds of Windows
http://support.microsoft.com/default.aspx?scid=kb;en-us;221833

1. Ensure the TCP/IP NetBios help service is started and set to "Automatic".
Ensure the DFS service on all DCs is started and set to "Automatic"
Ensure the "Everyone" has the "bypass traverse checking" user right on
the default domain controller policy.

2. The antivirus (if installed) is not scanning the sysvol or subfolders,
if so, exclude it.

3. Ensure there is no non-ASCII characters computer or user account.

4. If the domain controller is multi-homed (more than 1 network card), they
may experience this problem (note that "network card" could mean a physical
or a virtual one. Please confirm the Client for Microsoft Networks and the
File and Printer Sharing services have to be bound to the network adapter.

More information for your reference:
Event ID 1053 and 1058 appear in the Application log after you upgrade to
Windows 2000 Server or Windows Server 2003 with Active Directory
http://support.microsoft.com/default.aspx?scid=kb;en-us;883271

You cannot open file shares or Group Policy snap-ins when you disable SMB
signing for the Workstation or Server service on a domain controller
http://support.microsoft.com/default.aspx?scid=kb;en-us;839499

Hope the information helps. If there is anything that is unclear, please
feel free to let me know.

Thanks & Regards,

Jason Tan

Microsoft Online Partner Support
Get Secure! - www.microsoft.com/security

=====================================================

When responding to posts, please "Reply to Group" via your newsreader so
that others may learn and benefit from your issue.

=====================================================
This posting is provided "AS IS" with no warranties, and confers no rights.










--------------------
| Thread-Topic: UserEnv Application events after DC promotion to W2K3
| thread-index: AcWHxp3rNYCRVKQWRned/JQLurPm0A==
| X-WBNR-Posting-Host: 150.131.131.155
| From: "=?Utf-8?B?QmlsbC1NVA==?=" <BillMT@xxxxxxxxxxxxxx>
| Subject: UserEnv Application events after DC promotion to W2K3
| Date: Wed, 13 Jul 2005 09:19:17 -0700
| Lines: 45
| Message-ID: <F47EABB0-2090-4F67-95BE-EA78FEB12ED4@xxxxxxxxxxxxx>
| MIME-Version: 1.0
| Content-Type: text/plain;
| charset="Utf-8"
| Content-Transfer-Encoding: 7bit
| X-Newsreader: Microsoft CDO for Windows 2000
| Content-Class: urn:content-classes:message
| Importance: normal
| Priority: normal
| X-MimeOLE: Produced By Microsoft MimeOLE V6.00.3790.0
| Newsgroups: microsoft.public.windows.server.migration
| NNTP-Posting-Host: TK2MSFTNGXA03.phx.gbl 10.40.2.250
| Path: TK2MSFTNGXA01.phx.gbl!TK2MSFTNGXA03.phx.gbl
| Xref: TK2MSFTNGXA01.phx.gbl
microsoft.public.windows.server.migration:11229
| X-Tomcat-NG: microsoft.public.windows.server.migration
|
| "Jason Tan (MSFT)" wrote:
| > It is weird that there is "no" informaiton logged in USERENV.LOG. Does
the
| > workaround in KB832215 helps? If you have additional information, I
suggest
| > you open a new post to update the issue and the post the error in Event
| > log.
|
| Jason - Per your suggestion - here is the new Posting on this issue...
|
| Additional Information: On further checking... No Userenv.log file
exists
| anywhere on the system drive, so it isn't exactly empty, it really
doesn't
| exist at all.
|
| And the workaround in KB32215 is not helpful because there are 4 DCs in
the
| Root domain (two W2K and two W2K3) and all are already set to have
netlogon
| start automatically and all have netlogon started, thus when either of
the
| two new W2K3 DCs are restarted they should see other answering DCs if I
| understand KB32215 correctly. - Bill
|
| ====================================================
| Relevent Application Log Events are:
|
| Event Type: Error
| Event Source: Userenv
| Event Category: None
| Event ID: 1097
| Date: 7/12/2005
| Time: 10:42:28 AM
| User: NT AUTHORITY\SYSTEM
| Computer: SERVERA
| Description: Windows cannot find the machine account, The Local Security
| Authority cannot be contacted .
|
| Event Type: Error
| Event Source: Userenv
| Event Category: None
| Event ID: 1030
| Date: 7/12/2005
| Time: 10:42:28 AM
| User: NT AUTHORITY\SYSTEM
| Computer: SERVERA
| Description: Windows cannot query for the list of Group Policy objects.
| Check the event log for possible messages previously logged by the policy
| engine that describes the reason for this.
|
|
|

.



Relevant Pages

  • Re: Intermittant GPO failure to apply
    ... Windows XP. ... If so, if you create a new group policy on SBS 2003 domain, does the issue ... Produced By Microsoft MimeOLE V6.00.3790.1830 ... |> Welcome to our SBS newsgroup. ...
    (microsoft.public.windows.server.sbs)
  • Re: GP not appling to single client and GP core failure
    ... Microsoft Windows XP Operating System Group Policy Result tool v2.0 ... Group Policy was applied from: ... Small Business Server Windows Firewall ... Filtering: Denied ...
    (microsoft.public.windowsxp.security_admin)
  • Re: Limit number of Logon attempts
    ... Windows Small Business Server 2003: ... Deploying Windows Firewall Settings for Microsoft Windows XP with Service ... Administering Group Policy by Using the Group Policy ... This newsgroup only focuses on SBS technical issues. ...
    (microsoft.public.windows.server.sbs)
  • Re: Can you change Windows Firewall Settings from win2k group policy?
    ... thank you for using Microsoft newsgroup. ... | *Upgrading Windows 2000 Group Policy for Windows XP* ...
    (microsoft.public.windows.server.sbs)
  • Re: Locking down a 2003 TS server with 2000 AD GPO
    ... you can use Gpresult.exe (a tool included in the Microsoft ... Windows 2000 Resource Kit) to troubleshoot group policy issues. ...
    (microsoft.public.windows.terminal_services)

Quantcast