Jump to content
EduGeek EdSec 2026 is Go! 27th Oct in Derby! Join us for a day of EdTech security focused talks, networking, and an evening social ×

spc-rocket

Members
  • Posts

    800
  • Joined

  • Last visited

Everything posted by spc-rocket

  1. Yes, it was a strange one, i thought the permissions were correct but obviously not for the sync to work correctly. Their logons are working correctly. I noticed that its only got the sync symbol next to the user's (whoever is logged in ) and no others so that looks like its only doing the current logged in user. Phew!!. Thanks for you help. If possible could you provide some info on how you got setup with regards to what you suggested above. Thanks, Best Regards, Ash.
  2. Hiya, Thanks for your help. I found that the following MS article which led me to think about the permissions and as soon as i applied these it started to work so that's all sorted now. The only thing is that as stated in the article we have the one big share for home folder and then sub folders underneath it for all users. This is where the perms issue happened. The only thing i'm not sure about is which exactly permissions its talking about. As a test i've give the following permission (this folder only) List folder data/read, read attributes, read extended attributes and Read. Just wondering if i could get away with just read? Also noticed that the sync centre is now displaying the share of the home folders and its listing all folders for other users as well. I sure hope its not syncing the other users folders as well? Users may receive an "Access is denied" error message if you make files and folders available for offline use Ash.
  3. Hi there, I didn't set the policy to sync at logon or logoff because these are only applicable to windows xp. The main sync setting is set on the user configuration (i.e. administratively allow offline files...). Offline files are set (i.e. to allow offline files) on the laptops only. The desktops don't need to sync and hence it is disabled on them. The efficient sync setting is something like "Turn on economical application of administratively assigned offline files" this is set to enabled in the Laptops GPO (is the computer configuration setting) Ash.
  4. Hello all, Having a strange issue where for all of our laptops we have configured for offline use. This works correctly i.e. i've told it to automatically make the homedrive available offline using the GPO in the user configuration and offline files are enabled in the computer (Laptops's GPO). The files are available offline when there is no network so that is working fine. However if the user creates a file or folders on the home drive offline it doesn't seem to sync them back to the server when they are back on the network? Just wondering if anyone had this problem or any suggestions? Windows 7 32bit Enterprise connecting to file shares of server 2008 r2, DCs are also server 2008 r2 Thanks, Ash.
  5. Hi there, Thanks for confirming this. I think its a reasonable error given the network is not available offline. You can disable the balloon notification in User Configuration\Policies\Administrative templates\Start Menu and Taskbar. "Turn off all balloon notifications" - enabled. Ash.
  6. HI, Yes the baloon does popup on the right hand corner. I have disabled the baloon notification in GPO but when i look at the event viewer the same error is logged. Ash.
  7. Hiya, Yes this is what i was thinking as well. On RM Cc3 network we don't see this and they use roaming profiles as well. It does actually save the user data etc and the sync is working correctly including any changes made to desktop etc. so i'm not sure if this is what should be happening. Its happening on all laptops. Desktops are fine because i have cached logons set to 0 (this prevents cached logins) all together i believe. Ash.
  8. Hi, No i've turned off that setting. i.e. on the share where the profiles leave i've selected "No files will be available offline..." setting. Is this what you mean? Ash.
  9. Hello All, We are configuring our GPOs and policies and offline access for our laptop users. We run into a problem where for laptops we have the offline file access set and also cached logon (count 50). Everything is working fine on when logging on to the domain but when they logon offline (as a cached logon) there is an event generated in the application log regarding the user profile service. The message reads: "Windows cannot locate the server copy of your roaming profile and is attemptingto log you onwith yoru local profile. Changes to the profile will not be copied to the server when you log off. The error may be caused by network problems or insufficient security rights. DETAIL - The network path was not found This is strange because the user is already logged on the laptop when connected to the domain. So this issue is happening on offline. We do use folder redirection for My docs and other folders etc. I have the GPO set for do not detect slow network connections and group policy slow detection set to 0. Just wondering if anyone has any ideas of what could be wrong. Win 7 Enterprise 32bit Server (DCs) Server 2008 R2. Thanks in advance, Ash.
  10. This below changes should work. Please test it though.
  11. Hi, You need to use the certificates mmc to import certificates. However if its a enterprise CA then all your domain joined stations should have your enterprise CA's root certs already under "Trusted Root Certification Authorities". You do need to generate a certificate for your IAS (radius) server from your CA or get a commercial authority. Ash.
  12. HI, Have look at this guide. http://www.edugeek.net/forums/networks/13961-wireless-802-1x-radius-authentication-using-ias-server.html Ash.
  13. Hiya, Can you narrow down the path even more i.e. what folders does it create in the temp area you identified. I think on our cc3 network we have got some rules that has specific folders under the temp area set for sims to update correctly. This will solve the problem of allow eveyrthing to run from temp. One of the rules (path rule) that we have is %userprofile%\Local Settings\Temp\*.tmp. remember you can use the env variable such as %userprofile%, %homedrive% and also wild cards for files. Ash.
  14. This is fixed by the script to hide the inactive shortcuts, this is how the rm system works but validating the shortcuts first delaying the start menu and then showing on the ones that are visible. Easily replicatable using a vb script. Ash.
  15. Windows server 8 or what ever will be the official name for it will have deduplication built into it. Ash.
  16. Hi SYNACK Has there been any formal annoucement on the future of TMG? I think there were reports or rumors that this may be the last version of TMG/ISA. There's also been a lot of speculation that the product might be integrated with the server product and if so it may as simple as adding a role. Ash.
  17. Hi, Just wondering if the current version supports webdav for file access? If not then this would be one of the features i'd like. Ash.
  18. Hi, Instead of putting %homedrive%%homeshare%, just leave it as %homedrive%. Now you must make sure that in the user's ADUC properties the connect drive is H and the path is populated. Ash.
  19. If they are joined to the domain, then you can create the rules in TMG (if tmg 2010 is joined to the domain as well) to allow users access to the internet. The rules are based on network objects, computer accounts, subnets etc. Ash.
  20. Stuart, How are clients configured i.e. the trusted laptops? they should be able to just use the wpad info to configured the proxy file automatically. This is done by setting up the wpad on the dns server and then allowing the TMG clients to pick it up. You may need to create rules on tmg to allow appropriate traffic i.e. allow access from internet to external. Need a bit more info on what type of client the trusted laptops are i.e. secureNAT, webproxy or firewall client Ash.
  21. Hello, We're just gone to using AD logons for sims and everything seems to be working well however when users start NOVA T it asks them for username and password? is there any addition settings that need to be set for this to work? TIA, Ash.
  22. Hi, Have you made sure that your domain's CA root's certificate has not expired? This CA's certificate is automatically copied to the trusted root ca when you join a station to the domain if its a enterprise CA. This is so that any certificate issues by the CA is automatically trusted by the client i.e. if you IAS server's certificate should be trusted by your clients if its issues by your internal CA. I think you may want to have a look at the IAS certificate and find out who issued that certificate, if it is your CA then it should be fine and the issue may be somewhere else i.e. distance, singnal loss. Are you getting any error in the system log when on the client or IAS server when client's can't connect. It might get give some clues as to what it is happening. @snoeere the guide is located here --> http://www.edugeek.net/forums/networks/13961-wireless-802-1x-radius-authentication-using-ias-server.html Ash.
  23. Hello all, We are testing windows 7 pro SP1 (32bit) on a test network with server 2008 R2 and we're seeing that during offline (not connected to the network) the logon takes around 30 seconds or so on the welcome screen before logging on. The number of cached logons is set for the laptop's gpo (which this client is part of) and it is set for 30 cached logons. The logon on the network is pretty quick 5-8 seconds. The background wallpaper is a jpeg so i don't think it is this that's causing the issue. The domain admin account is working correctly and logons pretty quick. Any ideas as to why this might be happening. Ash.
  24. Excellent Guide Michael, top stuff!! Ash.
  25. I believe you need to give write access to the sims.ini file in the windows folder for this to work. We had similar issues and by allowing access to this file worked. Worth a try. Ash.
×
×
  • Create New...