Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations gkittelson on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

Group Policy Issues on "one" computer (Windows XP)

Status
Not open for further replies.

augrunt

IS-IT--Management
Jun 11, 2009
7
AU
Hey Guys,

I've got a huge headache and I've exhausted many many Google Searches but have still not received the solution and I am hoping you guys might be willing and caring enough to share with me your knowledge! :)

I have recently reformatted a Laptop for our company that was working well and fine except for the BSoD every 5mins.
Now, it's working fine and beautiful and it's like nothing ever happened! It's all re-installed and to the normal user's eye its better than a dream...

However, in my eyes its a nightmare. I have joined it to our Domain and given it the correct DNS settings like every other computer in the organization, it has the exact same name it had before and it's SIDs have been rebuilt (twice now) sinec I do not use images, and once using the NewSID which has been made obsolete by SysInternals (I knew SIDs were useless).

Now, the reason I bring up SIDs is because this attrocity cannot receive its Group Policy. Even though one of my Group Policies is actually giving WSUS data and it manages to connect to the correct server without apparent direction from Group Policy according to GPRESULT (which kindly returns "The user \DOMAIN\USER has no RSOP data" or sometimes "INFO: The Policy Object Does Not Exist"). If I try to do GPUPDATE /force event viewer logs errors about it not being able to know which Domain Controller to contact (Network connection error) logged by UserEnv.

Now, This computer has the same exact same name, the exact same settings like it did before and before, it used to receive Group Policy.

I have tested the DC's and they are replicating it fine and not reporting any errors. However, the Domain this particular computer is on is logging some errors on the DC about Security Policy every 5 or so mins. I doubt this has anything to do with it though but here is the event viewer info

Source: SceCli
Event ID: 1202
Security policies were propagated with warning. 0xd : The data is invalid.

Does anyone know what I can do?
 
dugrunt,

Did you remove (delete) the computer from the AD prior to rebuilding it?
Have you tried removing and then reading the computer to the domain?

Does it affect all users logging on to this machine?

Under the Computer Name > Change > More > are all the details correct?

The SceCli Event ID: 1202 may indicate that the security database (holds the security policy for the machine) is corrupt.
Open up the command prompt (as admin) on the machine where you receive these events and execute:

To check the consistency of the database: esentutl /g %windir%\security\database\secedit.sdb
To attempt to repair the database run: esentutl /r edb in the %windir%\security

If successful, run gpupdate /force. Check the events.

Regards,
 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top