Jump to content

Recommended Posts

Posted

Just went to make a change to our GPO WSUS policy and the path to the policy is not displayed.

 

If I click on our WSUS policy it lists in the right window, computer config/policies/admin templates/extra registry settings. Which does not sound right to me.

If I try to edit the policy and browse the path I get, computer config/admin templates but all the normal items from that point on are missing, I only have 'Google' and 'all settings' listed.

 

in the right windows under admin templates it says ' Policy definitions (ADMX files) retrieved from the central store.'

 

in the right window under all settings it says 'Display names for some settings cannot be found. You might be able to resolve this issue by updating the .ADM files used by Group Policy Management.

 

Really hope someone can help me fix this.

Posted

It should unpack the definitions into your program files directory - just copy the policydefinitions folder to\\DOMAIN\SYSVOL\DOMAIN\Policies\

 

If it prompts for any overwrites just let it go on with it. If you still get group policy errors after that you may need to go and copy the chrome, office 2010/2013 (or anything else but they are the ones I use) ones into the same policydefinitions folder as well (if you use those and manage them via group policy)

Posted (edited)

would that be \\DOMAIN\SYSVOL\DOMAIN\Policies\PolicyDefinitions ??? or not?

 

The PolicyDefinitions folder seems to contain similar looking files

 

EDIT Ignore that, just re-read your post

Edited by edutech4schools
Posted

When I last did it the admx installer created a folder called policydefinitions that I copied to that location but if you want to copy the contents of policydefinitions into the policydefinitions folder you already have that will work just as well.

 

That folder is where all of the group policies live

Posted

:) That is fantastic, I can't thank you all enough.

 

I have just noticed an error on our other DC in regards to Group policy. All the policy definitions seem to have copied to server from the main server (or never got deleted in the first place) and AD seems to be working but when I try to open Group Policy management I get the following.

 

[ATTACH=CONFIG]35317[/ATTACH]

Posted

The SYSVOL (and the NETLOGON) folder is automatically replicated with all of the other domain controllers. If replication is failing then that is something to have a look at quite urgently

Really need to see the error message

Posted

Still the same. Just looking in the logs and have the following on the 'Other' server

 

Active Directory Domain Services could not use DNS to resolve the IP address of the source domain controller listed below. To maintain the consistency of Security groups, group policy, users and computers and their passwords, Active Directory Domain Services successfully replicated using the NetBIOS or fully qualified computer name of the source domain controller.

Invalid DNS configuration may be affecting other essential operations on member computers, domain controllers or application servers in this Active Directory Domain Services forest, including logon authentication or access to network resources.

Posted

Check you have reverse lookup configured correctly...

 

https://technet.microsoft.com/en-us/library/cc961414.aspx

 

eg/ if your ip range is 10.20.30.* then the reverse lookup will be 30.20.10.in.addr.arpa

 

Check that error log out a bit more and see if there is a link to a technet article, it might shed a little more light on it. I'm not massively up on my DNS but I'm sure someone else will be along shortly to help!

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now



×
×
  • Create New...