Roaming Profiles Issues??

I have 12 users with win 7 pro machines login into the sbs2011 essentials server with roaming profiles it takes along time to login and log off. 
I want to turn off the roming profiles and turn on folder redirection.
Is this best practice to do a way with roaming profiles?
How do i turn off roaming profiles with out any issues for the users? any links articles how tos greatly appreciated
How do i turn on folder redircetion?ny links articles how tos greatly appreciated
Also have a win 2003 TS where some users login to what do i need to do to makes sure there are not issues for there logins as well?

Hi,
Before going further, would you please let me let me know how you configure the roaming profile? Did you configure
it via Profile tab (the path: ADUC-> User account properties-> Profile)? Or configure it via group policy?
Regarding to folder redirection on SBS, please refer to following articles and check if can help you.
Folder
Redirection in Small Business Server 2008
A
Simple Guide to Setup Folder Redirection in SBS 2011
Please Note: Since the web site is not hosted by Microsoft, the link may change without notice. Microsoft
does not guarantee the accuracy of this information.
Hope this helps.
Best regards,
Justin Gu

Similar Messages

  • Roaming Profile issues

    Hi all,
    Since we migrated the infrastructure of our client to Win 8.1 and Server 2012 we are experiencing issues with roaming profiles. Before they had Win 7 and SBS Server 2003. The users have different problems:
    RemoteApps are not working anymore (error 0x80070003), means we need to delete the contents of "HKEY_CURRENT_USER\Software\Microsoft\workspaces\Feeds\" and "%USERPROFILE%\AppData\Roaming\Microsoft\Workspaces\"
    The computer does not download the profile from the server so that the most recent local profile will be loaded. Events: "User Profiles General - 1509" and "User Profile Service - 1540" (I don't have the English error message available).
    When this happens once, it never will work again even after days. Only deleting the local profile and re-login will solve the issue 
    And then there is the next problem! After deletion of the local profile and  re-login with the users profile, the profile will be downloaded from the server. But there are always two things missing:
    %USERPROFILE%\AppData\Local\Microsoft\Windows\WinX: No right-click-menu on the start button available
    %USERPROFILE%\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\[Default-Icons]: There are no standard programs available in the start menu, such as explorer, IE, Calc, etc because of the missing shortcuts. When I checked the server I saw that the shortcuts
    disappeared some days ago (previous versions)
    So my questions here are
    Why isn't the WinX folder being created? The local Default profile does contain it.
    Where are the start menu shortcuts gone? I don't think it's caused by the user because it already happened 4 or 5 times. 
    This applies to migrated users but also to newly created users in the WIn8 environment and on different machines. I hope anyone had similar issues and was able to solve it..?
    Thanks a lot

    Hi,
    Would you please check the post from Rainer Meier and
    Sean Maisonneuvein this thread? Hope this can also help you:
    http://social.technet.microsoft.com/Forums/windows/en-US/161692bf-fa57-4ac1-b9b8-4e550ad9c987/windows-key-x-does-not-work-in-windows-8
    Kate Li
    TechNet Community Support

  • Roaming Profile at User level simply not copying...no error

    Little rusty on setting this up but if I recall if I choose to setup roaming profiles at the user object level then I simply need to create a share with the appropriate share/NTFS permissions then assign the UNC path in the Profile tab in ADUC?  We
    are running Win 2008 R2 with Win 7 SP1 clients.
    If this is correct then I have done this and the profile will simply not roam...no errors in event log, the test user simply logs in and has a normal local profile.  While I am logged in as this user I can access the above UNC and create a folder so
    I think permissions are ok.
    Originally this computer and test user were in an OU where I set a GPO setting up Folder Redirection.  Thinking that I possibly configured something incorrectly there I moved the user and computer object to a basic OU where only the default domain policy
    is applied.  No change.
    I don't remember getting this part working to be such a hassle so I am at a loss now how to troubleshoot further.
    Thanks

    Hi,
    Since Roaming Profile doesn’t work correctly, and you could not find any error in the event logs. At this time, I suggest you’d better first check for the correct permissions on the profile
    share. In addition to logging events in the Application Event log, User Profiles can provide a detailed log to aid troubleshooting. To create a detailed log file for user profiles:
    1. Start regedit and locate the following path: HKEY_LOCAL_MACHINE\Software\Microsoft\WindowsNT\CurrentVersion\Winlogon
    2. Create a new value called UserEnvDebugLevel as a REG_DWORD, and set the value to 30002 in hexadecimal format.
    The log file can be found at: %windir%\debug\usermode\userenv.log
    Regarding how to troubleshoot Roaming Profile issue, please try to refer to the following article to see if it helps.
    Troubleshoot User Profiles with Events
    http://technet.microsoft.com/en-us/library/jj649075.aspx
    Here are some guide about how to configure Roaming Profile, they may be useful to us.
    Configuring Roaming User Profiles
    http://technet.microsoft.com/en-us/library/cc738596(WS.10).aspx
    Group Policy Recommendations for Roaming User Profiles
    http://technet.microsoft.com/en-us/library/cc781862(v=ws.10).aspx
    How to configure Roaming Profiles and Folder Redirection
    http://www.grouppolicy.biz/2010/08/best-practice-roaming-profiles-and-folder-redirection-a-k-a-user-virtualization/
    Best Regards,
    Andy Qi
    TechNet Subscriber Support
    If you are
    TechNet Subscription user and have any feedback on our support quality, please send your feedback
    here.
    Andy Qi
    TechNet Community Support

  • Locally cached copy of roaming profiles are being created with username.domainname.00x suffix

    First off let me give some background as to where we've come from and how we got to where we are today.  In my organazation we initially setup a Win 2k3 domain with roaming profiles.  The roaming profiles worked without a problem for about 6 years.  We migrated to a Windows 2k8 domain (non-2008 native mode) about two years ago.  Profiles have been working fine.  We recently did a rollout of 80% of our client machines with newly leased machines.  Once we did this, the profile issues have been...interesting to say the least.  I've been seeing a couple machines having issues loading their profiles correctly.  The users will complain of not being able to use MS Outlook, or they don't have their proper desktop icons on their desktop.  These erros can present themselves when the user changes their domain acct. password (per our security policey) or it may happen just out of the blue.  The user may be working perfectly fine on Monday, and then log off and on Tuesday when they login to their computer, the user will have these problems.  When this is reported to me, I login the computer that is having the issue and I look at the C:\Documents and Settings folder and I'll see sometimes multiple bogus profiles.  The profiles have a naming convention of %username%.%domainname%.00X .  The .00X will increment up 1 with each bogus profile.  Each of these bogus profiles will have only the local settings folder in them.  In order to fix this problem, we typically delete all the local profiles and let the computer pull the server copy back down.  Can someone please shed some light on this for me.  Thanks. 

    I have the exact same issue. All my machines are SP3 as well. I have tried UPHClean and it makes no difference. It's completely random when the username.domain.000 accounts start appearing and accounts become corrupt causing the same issue with outlook or a different set of desktop icons. After almost 3 months of having to reset user profiles (we have 1700 AD accounts and 3 IT guys), here's what I've found to this point.
    WINLOGON.EXE is the culprit. UPHClean doesn't appear to work well with SP3 or this particular version of WINLOGON. WINLOGON.EXE is locking (handle) the profile directory itself.
    7F8: File  (RW-)   C:\Documents and Settings\(User Directory)
    You cannot even run a batch script or something to "restart" winlogon to unlock the folder because it's a system process. When the user logs back in, the pc sees there is already a user profile folder there so it creates a new one with the domain name, rinse and repeat and you get:
    Username
    Username.Domain
    Username.Domain.000
    Username.Domain.001
    These will go on forever unless you use DELPROF in your GPO as a Computer/Windows/Startup script to remove all "USER ONLY" profiles from the docs and settings folder. This works great other than now, users seem to randomly loose their favorites. This is about the most discussed roaming profile issue on the internet but not a single person nor group of persons has created a 100% working fix for it. It's been a massive headache for me and my guys and I know thousands of other IT guys have or are still struggling with it.
    PLEASE Microsoft, fix this winlogon issue so it will release the user profile directory when the user logs out. PLEASE.

  • Issue with offline availability of roaming profiles in Server 2012

    I've recently stood up a Windows 2012 R2 server. I set up folder redirection using the guidelines
    here and roaming profiles using Group Policy. All is well except for the fact that if the client is physically disconnected from the network then the profile isn't available.
    I've set up folder redirection/roaming profiles on many different version of Windows Server and this is the first time I can remember that the files weren't available offline without further intervention from me. Is there some new setting or default on 2012
    R2 that I'm running afoul of?
    I note the following screen on the share properties but don't want to go at it until I know more
    Location of image in case of no display
    Sunt ludi et ioci dum aliquis oculo nocet.

    Shaon,
    No problem at all, I'm delighted that someone is answering at all! :-)
    The answers to your points/questions are as follows:
    1. The issue persists after a reboot
    2. All computers in the OU are experiencing this issue along with all users affected by these group policy items
    3. There is only one group policy applied here and in relation to the three items you've mentioned:
    Action on server disconnect [Not configured]
    Non-default server disconnect actions [Not configured]
    Do not automatically make redirected folders available offline [Not visible]
    All the relevant group policy objects (on the server) are at their default "Not configured" value. I've filtered by Windows 7 and Windows 8 as I have nothing below that. I've checked both locations viz.:
    Computer Configuration\Policies\Administrative Templates\Network\Offline Files
    User Configuration\Policies\Administrative Templates\Network\Offline Files
    The same is true for Local Computer Policy, all are set to "Not configured". In Explorer on the client under the Easy Access option all of the salient settings are greyed out.
    - Derek
    Sunt ludi et ioci dum aliquis oculo nocet.

  • CS5 issues with mandatory roaming profiles

    Hi,
    I have seen lots of problems reported with using CS5 on networks with mandatory roaming profiles but not found any answers yet?
    Has anyone managed to get it working yet?
    We have gone to using standard network default profiles but it is not where we really want to be.
    Regards
    Darren

    Dreamweaver is designed to work in a multi-user environment, and it creates a configuration folder for each user in that person's application data folder or library. You need to contact Adobe technical support if you need a different setup.

  • Windows Domain Controller on Windows Server 2012 R2: Hyper-V roaming profiles not loading due to slow connection

    I have racked my brain and done everything that I know to do for about two weeks now.  I am setting up a new system at our fire department and I am having the worst luck with getting the workstations to login to the domain controller with roaming
    profiles.  It keeps telling me that the roaming profile could not be loaded because of a slow connection.  These are workstations that are connected directly to the switch that the DC is connected to.  I have tried multiple connections regarding
    the layout (DC into the router, router into the switch).  The router is a Cisco RV220W.  I have two VLANS, one for public and one for private domain.  The Private VLAN has DHCP turned off since I am providing it through the DC.  I currently
    have a connection from the Private VLAN going to the unmanaged switch that the workstations and server are plugged into.
    The server is a Dell PowerEdge R420 that has 6 NIC ports (1 dual port and 1 quad port).  I have a virtual switch setup on Hyper-V for an external port (let's say Card 2 Port 3) that is assigned to the WS 2012R2 Domain Controller.  The DC can see
    the internet fine and the workstations can connect to the shared folders on the server.  I can retrieve files by just using the computer name or FQDN.  The DC is also running DNS and DHCP.  The DNS has the _msdcs setup from when I installed
    the active directory role.  I have attempted to assign static IP addresses to the workstations:
    IP:                     10.0.0.80
    Subnet:             255.255.255.0
    IPV4 Gateway:  10.0.0.1
    IPV4 DNS:        10.0.0.12
    I've attempted "append the specific DNS suffix", I've "registered the connection in DNS", I've used "use this connections suffix in DNS registration".
    The server is assigned:
    IP:                     10.0.0.12
    Subnet:             255.255.255.0
    IPV4 Gateway:  10.0.0.1
    IPV4 DNS:         10.0.0.12
    The DNS entries have forwarders that forward to my ISP DNS servers for lookup
    I've enabled and disabled DHCP, I've installed a new VM just to create another DC to make sure that I didn't goof up when I created it.
    I've lost my patience with this project and am sinking fast.  Can someone please offer some advice as to what I've done wrong?  I've created this exact scenario at work many times but, I've never done it with Windows Server 2012.  Is this
    possibly something to do with the Dell PowerEdge server (Generation 12) with the SR-IOV?  I am going to attempt to work on it some more tomorrow when I get over there.  I think there may be an issue with the SR-IOV not being enabled on the machine
    through the Dell Bios.  Would the SR-IOV really cause the workstations to report a slow connection?  When I login at the domain controller the roaming profiles and folder redirection work fine so, I know the GPO settings are correct.  I don't
    have "ignore slow connections" or any of those GPO's set.  I need to get it working the correct way so, I didn't want to fool the server when there is another underlying problem.  Any help that someone can offer, I am more than willing
    to listen.  If you need more information, please ask.
    Thanks,
    Jay

    So, I've managed to research this some more since Thursday and I've come to the conclusion that Hyper-V does a horrible job of supporting Qualcomm NIC cards. That's the only thing I can conclude as far as where the issue is originating. I've read many
    post and walkthroughs but nothing that has helped. The issue wasn't with any settings in the domain controller. The issue was that there really is a slow connection originating at the domain controller that is a VM and has network connectivity through the
    virtual switch from Hyper-V. So, next question is, how do I get the DC to have better connectivity through the NIC that Hyper-V won't give it? If hyper-v would allow passthrough, this would be so much simpler. VM-ware is looking really good at this point.
    Im disappointed in MS right now.

  • AppV 5 slow to refresh with roaming profile (no redirects) but fast with local profile

    Hi,
    I have an issue I can't get thought out. I have an AppV5 SP3 full infra, with SMB share and local caching of packages enabled. Everything works from a functional level. However I have an issue where users with a roaming profile get a very slow AppV refresh
    during login.
    I created a few testaccounts, a few with local profile and a few with roaming profiles. For these testusers there are NO folder redirects. The only difference between them is local profile or roaming profile.
    When I login with a local-profile user initially, the AppV client rather slowly refreshes the applications and shortcuts. It generates quite some CPU load on the RDS host, but as soon as the shortcuts are placed everything is fine. When I log that user off,
    and log in again, the shortcuts are there immediately and I can immediately start the applications (Office 2010 for example). Blazing fast. Also when logging in, the refresh-UI is there for about half a second, it really flashes and it's done.
    Then with a testuser with roaming profile, the initial refresh is about the same. But when I logoff that user and login again, it's all very slow. The shortcuts are there but blank initially, it takes about 5-10 seconds to get the correct icon. It takes
    much longer before the refresh actually starts (sometimes up to 30 seconds after login), and it takes 5-10 seconds to do the refresh, with 100% cpu load on the thread AppVclient.exe is running on. Also right after loging in when the shortcuts are blank they
    don't work until they get the proper icon. WHen everything is refreshed it works all fine though. It's just painfully slow at start.
    I don't understand this. I can reproduce this every single time. Without folder redirects I don't see the difference between roaming and local profile from AppV perspective, as the roaming profile is of course copied to the server and in that sense the server
    just works with a local copy anyway.
    Anyone encountered this, and how to troubleshoot, or better fix this?

    So is the fact that there is a 5-10 second delay during refresh actually an issue? What I mean by that is - are any users comparing the local profiles with roaming profiles experience, or complaining that the delay is there?
    Roaming profiles and Folder redirection are of course very simple to configure; however for the best user experience I recommend managing profiles with a real profile management solution.
    If you have MDOP, then you'll also have access to UE-V. You've mentioned your environment is RDS, which sadly doesn't get UE-V, even though you have App-V.
    Here are some resources on UE-V + App-V and what's required when managing App-V with roaming users:
    How To Use Microsoft User Experience Virtualization With App-V Applications
    Application Publishing and Client Interaction: Roaming registry and data
    Here's also some resources on App-V performance worth looking at:
    Performance Guidance for Application Virtualization 5.0
    App-V Performance Best Practices: New Project VRC White Paper
    Please remember to click "Mark as Answer" or "Vote as Helpful" on the post that answers your question (or click "Unmark as Answer" if a marked post does not actually
    answer your question). This can be beneficial to other community members reading the thread.
    This forum post is my own opinion and does not necessarily reflect the opinion or view of my employer, Microsoft, its employees, or other MVPs.
    Twitter:
    @stealthpuppy | Blog:
    stealthpuppy.com |
    The Definitive Guide to Delivering Microsoft Office with App-V

  • App-v 5.0 sp3 Publish application icons/ shourtcut missed on 2nd time logon on terminal server 2012 r2 with roaming profile with folder redirection

    1. I updated app-v 5.0 sp3 environment on 2012 R2. Roaming profile users with folder redirection logon fine at first time applications icons available but at 2nd logon applicaitons icons are missed while packages are available. we are using existing
    roaming profiles with folder redirection which are running in current environment through APP-V 4.6 2008 R2. Please suggest work around to resolve this issue.
    2. TS Nodes of 2008 R2 with App-v 4.6 running fine on Microsoft 2012 private cloud but we are facing performance issue (stuck, slow logon, slow performance etc) when we are moving in new 2012 R2 private cloud. SAP, SCSM and other sevices are running
    fine, please provide solution.
    Thanks

    1.) What are you doing with the App-V Icon path? e.g. %LOCALAPPDATA%\Microsoft\AppV\Client\Integration\<GUID>\Root\AppVClientUX.exe.0.ico ?
    I guess you could workaround it with deploying the icons to a central location and then pointing to the icon out on a central share. Or put the icons in a machine location...I haven't had this issue but that's just off the top of my head.
    2.) I have not used App-V 4.6 in an environment like yours BUT would pre-caching the applications be possible? Any chance you'll be moving those apps into App-V 5.0 soon?
    PLEASE MARK ANY ANSWERS TO HELP OTHERS Blog:
    rorymon.com Twitter: @Rorymon

  • Slow logon for roaming profiles on Server 2012 R2.

    Hey all,
    We have migrated Windows Server 2008 R2 to 2012 R2. After this, roaming profiles began to take 7-8 mins to 15-16 mins to logon to the 2012 R2 RDHS. Same roaming profiles have no problems logging on other RDS servers running Server 2008 R2.
    All updates are installed. All RDS related HotFixes have been applied. Server 2012 R2 only got RDSH role activated. It's a domain environment and AD role is on a physical DC. This is a mixed OS environment for clients.
    Local users have no problems logging on. Roaming profiles have no problems logging back in day after the first logon - The very first logon took a long time for them.
    Profiles stored on an SSD NAS device. The device doesn't support SMB3 protocol. Could this be why?
    Also when we check Event Viewer, we see "Event ID 5: Kernel-General :: {Registry Hive Recovered} Registry hive (file): '\........\NTUSER.DAT' was corrupted and it has been recovered. Some data might have been lost." But again,
    same profiles have no problem logging on Server 2008 R2.
    Looking forward to hearing your thoughts and advices.
    Thanks in advance.

    Hi Bruce,
    >>After this, roaming profiles began to take 7-8 mins to 15-16 mins to logon to the 2012 R2 RDHS.
    Before going further, I want to further confirm if this happens when the users log onto the server first time or all the time.  Besides, does this happen to all domain users logging onto the server?
    >>"Event ID 5: Kernel-General :: {Registry Hive Recovered} Registry hive (file): '\........\NTUSER.DAT' was corrupted and it has been recovered. Some data might have been lost."
    For this event, we can refer to the solution provided by Justin in the following thread to tackle the issue.
    Registry Hive Corrupted - Event ID 5: Kernel-General
    http://answers.microsoft.com/en-us/windows/forum/windows_7-system/registry-hive-corrupted-event-id-5-kernel-general/275d080b-4d29-4eed-887d-bee55725c602?page=1
    Best regards,
    Frank Shen

  • NAC and AD, Machine GPOs, Roaming Profiles = Chaos

    I've just observed a hapless Cisco consultant try to make NAC 4.1 work on computers with machine GPOs, roaming profiles, logon scripts within user GPOs, and for that matter legacy logon scripts with "run logon scripts synchronously" enabled. All of these technologies seem to fail on a NAC-enforced connection.
    We assign software on machine GPOs and we use roaming user profiles, and it seems we either need to have a domain controller and profile share on the isolation VLAN, which defeats the purpose of NAC, or perform some kind of machine authentication, which can occur before GPO processing and net logons can happen.
    While I'm not the Cisco consultant, it wasn't hard to recognize this problem.
    Everything I've read about NAC and CAA suggests this is a per-user compliance solution and not a per-machine solution. Surely others have observed this, and I think this is what machine authentication (802.1x) NAC, as opposed to user authentication NAC, is all about. At the risk of sounding like a total n00b, where can I start researching a NAC solution that supports what I want and lets us use the Cisco NAC gear we've already invested in?

    I have had similar issues and have solved many with a custom script that runs at log on. It is a compiled script and works great, AutoIT3.
    The policy part takes care of itself if you leave machines logged in long enough or do a gpupdate /force. This will force the group policy to synchronize but you will need to log off and on again.
    The roaming profile is much tougher. I am still trying to get this working. If anyone has any info on EXACTLY what takes place on a roaming profile synchronization, I would be grateful. If I can I will replicate that process in my script and solve this issue also.
    I have fixed the log in script stuff with a delayscript that I use (ironically) clean access to install. You have to launch it with the users credentials, though and not from Clean Access which uses the SYSTEM users credentials in its stub agent!
    This is a known issue to Cisco but any prodding of them to get it working would help. Their solution is braindead, just give unremediated machines full access! If they fail remediation, kick them off then. Gee, that gives the unremediated machine a mere two to three minutes to attack your AD DCs on each log in attempt. Not good.
    Anyway, that's where I am at. Most of this can be dealt with, some is still problematical.
    Dan S.

  • Roaming profiles not created while the creation of user account

    Hello,
    Our file server (running windows server 2003) is hosting Roaming profiles for users (in active directory running 2003). And that worked just fine till this week, when trying to create some users, we figured out that their roaming profiles are not created
    (after their first logon the the domain of course)
    We checked out the NTFS permissions and the SMB share permissions, and everything looks correct.I have even modified the permissions as Microsoft recommands. But still nothing has changed.
    What could be the problem? or where to look for some paths to troubleshoot this problem??
    Thanks in advance!
    Lotfi BOUCHERIT

    Hi Lotfi B,
    According to your description
    the user, is not able to access the share from the Explorer, as Awinish said, there may be a network or Firewall issue.
    Please try to troubleshoot the network issue referring to the following article:
    Troubleshoot network connection problems
    In addition, it would be helpful if you could help to collect the following information:
    Could the old users access the share?
    Did the GPResult show the GPO had applied successfully? Please run
    Gpresult /h > C:\temp\gpresult.html  (“C:\temp\”is the path of the gpresult.html,
    you can set it yourself) in Command Prompt, the file gpresult.html is used for checking the resultant of Group Policy information.
    Regards,
    Lany Zhang

  • Windows 7 / Server 2003 Roaming profile synchronization error at logoff (ntuser.pol)

    Hi all,
    I have implemented Roaming Profiles for a few test users on Windows 7 PC's (Windows Server 2003) and everything is working well aside from one error I'm seeing at logoff ('Your roaming user profile was not completely synchronized.  See the event log
    for details or contact your administrator.')
    The event log reveals event ID's 1504 and 1509.  1504 is flagging the fact that Windows cannot update the roaming profile completely.  1509 shows the following:
    'Windows cannot copy file C:\Users\jtest\ntuser.pol to location \\server\Profiles$\jtest.V2\ntuser.pol.  This error may be caused by network problems or insufficient security rights.
    DETAIL - Cannot create a file when that file already exists.
    Other observations:
    This issue occurs with all test users upon each logoff attempt except for the very first logoff, where there is no network share copy of ntuser.pol to get in the way.
    Prior to logoff, the network share copy of ntuser.pol has an older timestamp than the local copy.  This is not a cause or symptom but it leads me to believe updating the network copy of the file at logoff is normal/required behavior.
    If I delete the network share copy of ntuser.pol prior to logoff the error does not occur.  I don't suspect file permissions are the cause since I used the same user having difficulty logging off to delete the network share copy of the file.
    ntuser.dat has no problem overwriting itself upon logoff.
    I was able to repeat the problem with two windows 7 clients.
    I've been all over the usual suspects (i.e. group policies affecting roaming profiles, file/folder permissions, installed every hotfix relating to roaming profiles and folder redirection, and googled every keyword) and came up empty.  I confirmed offline
    caching for the profile share is disabled.
    Does anyone know what may be going on here?  I'd greatly appreciate a point in the right direction.  Thanks in advance.

    You could too run a process monitor to watch what happen. With filter you can easilly configure it on the server to not log everything except read|write on the profile.
    Regards, Philippe
    Don't forget to mark as answer or vote as helpful to help identify good information. ( linkedin endorsement never hurt too :o) )
    Answer an interesting question ? Create a
    wiki article about it!

  • 7310 - Problem with CIFS and Roaming Profiles since upgrade to 2010.Q1.0.2

    We have developed a strange problem with our environment which I'm pretty sure is down to the upgrade to 2010.Q1.0.2 from 2009.Q3.4.1 on our 7310 (all the previous 2009 releases had been fine) since nothing else has changed in our environment. I suspect some changes to the underlying CIFS server causing this?
    We have virtual Windows servers hosted on a VMWare VSphere cluster which are stored on the 7310 via iSCSI LUNs and also CIFS shares on the 7310 for home directories and separate CIFS shares for roaming profiles - all paths are correct in AD for each user - we also use folder redirection for XP Pro clients to force things like "Application Data", "My Documents" etc. onto the Homedir share.
    What we've been seeing recently (which only started happening after the upgrade) is a lot of failed logons to the domain for users. It looks like the usual corrupted profile problem that has plagued Windows forever ...the usual messages that it cannot log the user on with a copy of their roaming profile, and that it will use a temporary one. Some folder redirections (that are initiated via Group Policy) also don't get applied. Users don't see errors when logging off from a "good" profile, and NTUSER.DAT etc. seemingly gets written correctly - the next time they log on, around half the time the users will get these errors as described below:
    Event viewer logs show "cannot find the file specified" errors for NTUSER.DAT, along with "directory name is invalid" errors for some of the folder redirections.
    More worrying (and what I think might be the real reason for these failures) are the "offline caching is enabled on the roaming profile share" errors. I think that the client-side caching might not be working - possibly the profiles aren't getting flushed and written correctly upon logout?
    Now, unfortunately the MMC snap-in for managing shares doesn't seem to support changing the behaviour for client-side caching on the CIFS shares (as confirmed in the latest 7000-series Admin Guide on page 198).
    I've been thinking about unchecking the "Enable Oplocks" box which from the CIFS side would completely stop all client-side caching I presume?
    Is this likely to be the culprit here, or is there any other known behaviour that could be causing these errors? Is it also worth disabling "Cache device usage" altogether for the Profiles share itself?
    Can anyone help? It's a bit of a strange problem, and something I don't want to raise with Sun on our support contract just yet, since at first glance it looks like a Windows problem, but I suspect the storage could well be to blame...

    Unfortunately, this is still not working correctly...
    So, it looks like it's not related to the offline caching seeing as it all works on the Q2009 despite the warnings...
    Some more errors coming out of userenv.log on the affected Windows machines:
    USERENV(280.284) 10:07:33:230 ReconcileFile: GetFileAttributes on the source failed with error = 2
    USERENV(280.284) 10:07:33:230 CopyProfileDirectoryEx: ReconcileFile failed with error = 2
    and later:
    USERENV(280.284) 10:07:33:245 GetShareName: WNetGetConnection initially returned error 2250
    USERENV(280.284) 10:07:33:245 CopyProfileDirectoryEx: Leaving with a return value of 0
    USERENV(280.284) 10:07:33:245 RestoreUserProfile: CopyProfileDirectory failed. Issuing default profile
    ...which then forces the TEMP profiles.
    All other errors linked to this look like "file not found", "invalid path" etc. when the files are present and the paths are correct.
    Manually mapping drives using CIFS with UNC paths sporadically fails too now. We have a bunch of GPOs that map shares to users depending on their group memberships - these too are sporadically failing.
    It certainly looks to me like it could be a CIFS problem introduced in the Q2010 release.
    I'm going to raise a ticket with Sun...

  • Roaming Profiles not working when Lenovo Hotkey Client Loader is running on Win 8.1 laptops

    This issue seems to be Windows 8.1 related.  Specifically it is affecting all our X1 Carbon, and T440S laptops running Windows 8.1, but NOT 430S running Windows 7. Basically roaming profiles were creating the proper folder on the file server but the folders were empty.  Through trial and error, I narrowed it down to the "Lenovo Hotkey Client Loader" as listed in msconfig or Program Files\Lenovo\HotKey\TPHKLoad.exe.  Once that service was disabled, the roaming profiles would copy over properly.  I am running the latest and greatest version of "Hotkey Features Integration for Windows 8.1" Ver 5.25.0000.  Wondering if anyone else is seeing this?  Wondering how significant TPHKLoad.exe is? And wondering if we'll see an update to the Features pack to correct this?  Hopefully this post can help some others who are looking at empty roaming profile folders.

    Hi all,
    A
    After few months, problem occurred again and i could not install the windows from the scratch over and over again.
    I started searching problem online and eventually i found the FIX.
    Looks like Registry Entries are getting screwed up somehow.
    My "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SecurityProvider" was looking exactly as below:
    ", schannel.dll"
    And i made it as below:
    "msapsspc.dll,
    schannel.dll, digest.dll, msnsspc.dll, credssp.dll"
    The solution for the other person in the link ( cannot share link since site does not allow me to ) as a source was only missing "credssp.dll" whereas i was missing everything except "schannel.dll". Strange...
    ============================
    Adding credssp.dll to the list of SecurityProviders in HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SecurityProviders
    fixed it for me. 
    My full registry entry now reads "msapsspc.dll,
    schannel.dll, digest.dll, msnsspc.dll, credssp.dll"
    ============================

Maybe you are looking for

  • Lsnrctl: error while loading shared libraries: libclntsh.so.9.0:

    Hi I copied across an /opt folder from a Redhat 9 server that has Oracle 9.2.0 to a Redhat AS 4. I then set the oracle variables, hoping after that I can get the database up and running. However I get this error, when trying to start the listener or

  • Windows Server 2012 R2 GPO Loginscript is executed with more than 2 minutes delay after login

    Hi everybody A strange problem came up in a new Windows Active Directory Domain (one single DC with Windows Server 2012 R2 Essentials): after configuring a User GPO with a Powershell Loginscript and applying the GPO to an User OU, the following happe

  • How do I make a program to loop a video feed in LabVIEW 8.0?

    Hello everyone I am needing a LOT of guidance here. I am a senior at Pittsburg State University in Pittsburg, KS. I have a senior design project that I am basing around LabVIEW. My school owns LabVIEW v8.0 and I am attempting to figure it out. Here's

  • Block Sections in movie after burning

    After I burn a movie I put it in to watch and during faster sequences it gets all blocky. Here's what I've tried: I've done a test on the burner Burned it to the HD and it did looked the same way It looks fine when I watch it in QuickTime before I bu

  • Printer Migration

    We currently have 2 standalone 2008 R2 print servers that have separate objects. We plan to consolidate the objects on those servers onto one 2012 R2 print server. If we follow the steps here will the objects still exist on the old print server after