Not sure what I've got set wrong here but I'm using mandatory profiles, a group policy applied to an OU with lots of settings and the loopback processing policy enabled. Users can login once fine, but as soon as you logoff and attempt to logon again they get that damn "user profile could not be loaded" error.

There's various scenarios of changing permissions on the users profile on the local machine that result in it working again, some work permanently some work just for the next logon.

The key thing i have noticed though is that the profile automatically gets created with special deny permissions on create files, create folders and change permissions for "this folder only" on the root folder, and i can't work out how to get rid of it doing that automatically. Is that by design on mandatory profiles!?