Manage map drive GPO clearly

I would like to setup GPO to map drives instead of kixtart login script.
In login script, it had command to map many different drive mapping for all department.
e.g. Account, Shipping, Marketing, Engineering ...etc.
Each department will map several drive based on their requirements in ONE login script. It can be read easily in this file.
To achieve above task in GPO, can map drives based on Item-level targetting for differnet group memebership.
But how should manage GPO clearly. create GPO for each department? Then there will have many GPO_DeptName_MapDrive GPOs there, Right?
or I can create one GPO. And put all mapping drive needed there?
Many thanks.

Hi,
group the accounts in ad in an OU per department.
If you use one script (that possibly differentiates the mappings based on group membership), you can use one gpo.
If you use different scripts, or want to apply all settings through gpo, you will need to vcreate multiple gpo's and assign them to the appropirate OU's. 
Another thing; I would recommend not to create a GPO per setting, rather a GPO per environment or per group of settings (Like UserConfigurationMarketing, instead of MarketingMapdrive, Marketingdesktopshortcut and MarketingSecurity). Avoid creating gpo's
that only contain few settings.
MCP/MCSA/MCTS/MCITP

Similar Messages

  • Users are being logged into the desktop before the mapped drives GPO takes effect

    We are using a Group Policy object to map network drives to our users.  We are getting reports that the user are being logged into their desktop before the drives are mapped, causing a program that points to the mapped drive to not be able to access
    files on that drive.  Once the user goes into Computer and double clicks on the drive, they are then able to see the files on the drive and the program is able to access them as well.
    We have added another GPO to institute the "Always wait for the network at computer startup and logon" policy to try to fix the issue, but it has not solved our problem.
    Thanks in advance for any assistance.

    >   Once the user goes into Computer and double clicks on the drive, they
    > are then able to see the files on the drive
    Did you check the "reconnect" option?
    Martin
    Mal ein
    GUTES Buch über GPOs lesen?
    NO THEY ARE NOT EVIL, if you know what you are doing:
    Good or bad GPOs?
    And if IT bothers me - coke bottle design refreshment :))

  • Unable to remove Mapped drives GPO

    Hello
    Windows Server 2008 R2
    I previously create some mapped drives for users in 2 cities (same lan different ips - 10.10.2.x and 192.168.0.x)
    Under each ou I have gone into the GPO preferences and created a "Delete" under map drives.  When rebooting the workstations, the drives are still there and mapped.  I deleted the GPO for them and still, they show up.  I also created
    a new mapped drive and is sporatic to users (some users it does show up, others it does not show up).
    I cannot figure out why they are still being mapped or why only some users see the new mapped drive and some don't.  Even those users that see the new mapped drive still see the old ones as well.
    Any suggestions?
    Thank you
    Terry

    Hi Terry,
    There may be few things which you check
    1. Run RSOP or GPresult on users system and confirm if the old / new groups are getting applied.
    2. Make sure that group policy objects are replicated all domains Controllers in domain so that there is replication issue which is causing this behavior
    3. As suggestion if you need map drives for these users then don't need create new delete map drive. You can remove the original map drive settings or filter out these set of users using item level targeting.
    Hope this helps to resolve the issues.
    Regards,
    Rajesh J S

  • Drives mapped via GPO, NET USE shows mapping but doesn't show up in Explorer - Win 8.1

    Fresh install of Windows Enterprise 8.1
    Connected PC to domain, logged in, drive mapping worked as it should.
    Rebooted a few times after installing software that I normally install on my computers (from the same sources/locally from my file server, etc).  Rebooted a few more times all is well.
    A few reboots later, the only drive that is mapped is X: which is my user drive done via the user profile in AD.  The rest of the mappings that normally show up done by the GPO no longer show up.
    After some digging, and noticing no errors in any logs I ran NET USE in a CMD prompt window, low and behold the drives are actually mapped and I can access them via the CLI without issue.  I can navigate via their mapped drive letters, etc.
    They just don't show up in Windows Explorer at all and I cannot navigate to the drive letters via the address bar.  Strangely enough, it still kinda works since the Downloads start menu item is mapped to a network drive and that still works (Q:\) and
    Chrome can access it as well if I try to download something.
    I'm really not sure what else to check/try here. 
    Have other Windows 7 and Windows 8.1 machines (my laptop) and all works just fine, so it's only this specific install on my desktop that is showing this issue.

    Hi,
    There are several reasons causing the issue:
    First, The problematic client doesn't reconnect to the target share at logon. 
    Please follow the steps to re-configure the mapped driver on the client and then check if the issue will re-occur.
    Steps:
    a. Open "My Computer"
    b. Click on "Tools" and then select "Map Network Driver"
    c. input the \\ipaddressofserver\sharename to give the path of the share
    d. Check "Reconnect at logon"
    e. Drive gets mapped
    f. Double click on the drive to check.
    Second, Antivirus software or Windows Firewall may block the mapped share.
    If there is any Antivirus software and the Windows Firewall is enabled on the problematic client. If so, please disable them to check if the issue can be resolved.
    Third, Fast Logon Optimization is enabled on the clients.
    The fast logon feature may affect the display and drive letter assignment of a mapped network drive. As a result, the drive may have been mapped; however, the user on client cannot see it in Windows Explorer. He may recognize it as a failed network drive
    mapping. This is the reason why we usually suggest you to disable fast logon on the clients via a GPO, and please check if the mapped network drive will be occur under this circumstance.
    Please also configure the following group policy setting to disable Fast Logon Optimization to see if the issue still exists on the problematic clients.
    Computer Configuration\Administrative Templates\System\Logon\Always wait for the network at computer startup and logon
    If we cannot get this issue fixed, please post back the event log related to this issue.
    Kate Li
    TechNet Community Support

  • Assign mapping drive through GPO

    <p></p><p>We have a simple domain with forest level is 2003 and domain function level is 2008, all domain controller is 2008 R2. workstations are windows7 professional. </p><p>We are tring to assign mapping drives through
    GPO,&nbsp;user configuration, prederence, windows settings, mapping drive.&nbsp;&nbsp; How ever, half of the users does not get the drives,is there any reason why this GPO does not work? </p><p><img alt="" src="https://social.technet.microsoft.com/Forums/getfile/576324"
    />s not work? </p>

    Hi Tracy,
    >>How ever, half of the users does not get the drives,is there any reason why this GPO does not work?
    Please try to log on twice continuously to see if the drive can be mapped successfully. If not, please check event logs in Event Viewer to see if some related events were logged, and we can run cmd command
    gpresult/h gpreport.html to collect group policy result report to troubleshoot the issue.
    Best regards,
    Frank Shen

  • Error code 0x80070035 on drive maps in GPO, "Network path cannot be found".

    I am trying to apply a GPO that maps drives so that another GPO can then make them available offline for a couple of hundred users.
    Every time I try to apply the policy it fails with an 0x80070035 error which translates as a "Network Path cannot be found". The security settings for that particular folder is fine and the user can see it ok, furthermore following logon I can
    manually map the drive through windows explorer and through CMD/powershell using the net use command.
    The path i tried was \\servername\otherdir\securearea\ which didnt work (i did drop and add the final "\" just in case i was going mad)
    i then tried \\servername\otherdir\unsecurearea\ which
    still failed
    just to prove my lack of sanity i created a folder on the hard drive of the laptop itself, made it a shared folder and tried both \\localhost\sharedfolder and \\127.0.0.1\sharedfolder,
    they all fail with the same error code.
    i have checked the hosts and the lmhosts files are there is nothing new in there, only the usual MS gumf that has come with every copy on windows since Win95
    patience is wearing thin, hair is getting short ...
    thoughts anyone?
    Nothing is unfixable - with a suitable sized hammer!

    Hi klimacher,
    Would you please let me know the current situation of this issue? Have you referred to Kelly's suggestion and solved this issue?
    Based on your description, I understand that you configure Drive Maps via GPP. However, can’t apply the policy
    with error code 0x80070035. If anything I misunderstand, please don’t hesitate to let me know.
    If so, you should find Event 4098 as below shows.
    When you type the location of this mapped drive, please remove trailing slash on the UNC path. Then apply the
    setting and run gpupdate command to update group policy setting. Please monitor the result.
    In addition, please refer to the following article and troubleshoot this issue.
    Troubleshooting
    the Drive Maps Preference Extension in Group Policy: Adding a Share Name with Trailing Slash '\' Returns Error Code 0x80070035
    If this issue still exists, please let me know summarily how you configure the Drive Maps. For an example,
    where the GPO link? Did link to user OU? Any update, please feel free to let us know.
    Hope this helps.
    Best regards,
    Justin Gu

  • GPO Drive mapping - drive not visible but mapped

    Did you double check your policy and make sure you selected "Show this drive" for that mapped drive?

    HiI've got a weird issue and Internet has yet to give me a solution.So I've created a GPO that maps drives to certain users inOU's.Users that do not yet have a profile ona workstation get the drive mapped as expected. But users that have previously logged on to the workstations do not see the drive.gpupdate /force does not seem to resolve the issue. I ran a gpresult /H result.html and saw that the GPO succeeded in applying the user settings. I checked the drive with "net use" and there I could see that the drive was mapped butjust not visible in Windows. The drive letter I'm using is not used by another device. The reconnect checkbox is ticked in the Drive Maps properties.When I type the drive letter in the addressbar in explorer ( N:\) it works flawlessly so it's not a permission issue.So to summarize: drive is accessible and mapped...
    This topic first appeared in the Spiceworks Community

  • Mapping drive using GPO does not obey to Item-level targeting

    Dear all,
    We are mapping drive using Item-level targeting based on security group (User Configuration > Preferences > Windows Settings > Drive Maps) with the following settings:
    Action: Replace
    Run in logged-on user's security context: <Checked>
    Item-level targeting: <Checked>
    So if user is member of Group_X then he/she will have drive X mapped on his computer.
    Problem now is that (even if reconnect is unchecked), drive will stay mapped when we remove a user from this group.
    Is this the normal behavior ? did I missed something ?
    or even worst, imho, should I add a new drive properties which would say to delete the drive if user does not belong to the relevant group ?
    -> double targeting query for a single drive
    -> what's the point of Replace / Reconnect then ?
    Thanks in advance for your opinions!
    /behd
    [EDIT: Forgot to specify Win2008R2 AD, Win7 Pro clients but doubt that it'll be of any interest for this case]

    Drive mapping should not remain after you remove the user from the group.
    What I suspect is, that at first, the "reconnect" was checked then the user got the policy and tattooed the reconnect value. after that it doesn't matter that "reconnect" was removed.
    Try the following:
    Logon with test user, make sure no drive mapping exist (disconnect if necessary).
    Create a new policy with drive map - make sure reconnect is not checked, and apply it for the test user.
    Make sure no other drive mapping policy exist for that user.
    Login with the test user, make sure drive was mapped.
    Log off that user, remove it from the group, wait for AD replication and log on again (sometimes another log off \ log on required).  
    Please take a moment to Vote as Helpful and/or Mark as Answer where applicable. Thanks.

  • How do you enumerate domain users mapped drives????

    I'm migrating file shares from Windows 2003 file cluster to a Windows 2012 R2 DFS shares. Unfortunately, users that are mapped to those shares off the file cluster are not being mapped via GPO or logon script. I discovered that users have manual static mappings
    that reconnect at logon. This, of course, makes it difficult to notify users or update network mappings. The answer? To see who mapping to those shares. Yes, I've looked at Open Files from Computer Management but I also need to double check this against a
    script that can enumerate domain users mapped drives. 
    I've tried the following and it returns nothing:
    "GET-WMIOBJECT -CLASS WIN32_MAPPEDLOGICALDISK -COMPUTERNAME "NAME" | SELECT NAME, PROVIDERNAME"
    Any know of powershell script that would work??? Thanks!

    here are two similar questions, the responses to which might be of help:
    http://social.technet.microsoft.com/forums/windowsserver/en-US/46881e57-62a4-446e-af2d-cd2423e7837f/report-on-remote-users-mapped-drives
    http://social.technet.microsoft.com/Forums/en-US/56ba81a4-3836-48f9-ae7b-7e774c12655e/query-remote-xp-machine-for-list-of-mapped-network-drives-of-current-logged-on-user?forum=winserverpowershell
    The long and the short of it is that it is not that easy to accomplish remotely. The simplest solution appears to be to run a script in the context of the logon session whose drive mappings you want.
    Al Dunbar -- remember to 'mark or propose as answer' or 'vote as helpful' as appropriate.

  • E4200 router, wmp600n wireless adapters and mapped drives with wpa2 don't work!

    Sigh
    I have a file server running windows 2003 and five computers (1 windows 7, 4 windows xp-sp3).
    There are two shares on the server.
    When the router is setup with wpa2, three of the windows xp machines will have problems with mapped drives. Directly after the drives are mapped, everything works, but 10 or so hours later, users can no longer access these mapped drives and there is no way to reconnect them it seems.
    The other two machines (windows 7 and one windows xp machine) have no problems whatsoever.
    The only thing that the three computers have in common is that they are also sharing a printer (an hp j4680) attached to one windows xp machine (not the server).
    If I set everything to wpa, everything works fine, but of course my wireless network speeds drop to 56mbps.
    Thoughts?

    Peanut, I appreciate your effort, but I don't think you truly understand what is going on.
    FWIW and for those experiencing similar oddities, On a mixed network of Windows Server 2003, Windows XP and Windows 7 machines, several Windows XP machines would on boot up decide that the router was the master browser. This made file shares on the server inaccessible to these machines. All machines were using wmp600n adapters.
    All computers had excellent signal strength and could access the internet without fail.
    What was not immediately evident to me was I was also having email issues where certain XP machines could not receive or send (sometimes one, sometimes both) pop email. I suspected it was a port blocking issue by the ISP since this problem was intermittent.
    What was clear though is that in each of the machines that exhibited the problem that computer was seeing the browser as the browser master. So finally, I swapped out the router with another branded router. This is not the only case of this router behaving this way--in my searches I have run into several other people who have had issues with file sharing so I don't know if it is a model deficiency or firmware issue.
    All I know is the all the problems went away with the router switch.  File shares work. Email works.
    So, I got a bad router that appeared to function properly--assuming this is not the case with other e4200s. I will know after RMAing this one.

  • Problem in the iFS map drive...!

    Thanks for your concern:
    As you know, in window explorer,iFS map drive is very convenient facility.According to install procedure in some documents, i installed these on client-pc and rebooted. But there was no notification for which machine is iFS server when i mapped iFS server to map-drive in local.In set&admin guide,there might be some notification beside machine name in map-network drive diallog box as like "iFS server".
    what's wrong?. but,in program group of start menu,iFS utilities are generated correctly.
    Only in mapping iFS drive,these problems are occured.
    I wonder:
    1.When iFS server is started with ifsstart command, Are there any droped,but essential,agent or protocol by my mistake?
    thanks......
    null

    Something wrong in IfsProtocols.log file..
    What should I do?
    IfsProtocols.log
    Wed Aug 23 15:56:36 JST 2000
    IfsException in starting ServerManager; FATAL
    oracle.ifs.common.IfsException: IFS-10620: Unable to construct connection pool
    oracle.ifs.common.IfsException: IFS-10633: Unable to create library connection
    oracle.ifs.common.IfsException: IFS-10600: Unable to construct library connection
    java.sql.SQLException: ORA-01033: ORACLE initialization or shutdown in progress
    Server Manager exiting.
    Wed Aug 23 15:58:18 JST 2000
    Server STARTED: IfsProtocols(37416) not managed
    Attempting to load agent FtpServerAgent
    Agent FtpServerAgent loaded
    Attempting to start agent FtpServerAgent
    Agent FtpServerAgent started
    Attempting to load agent CupServerAgent
    Agent CupServerAgent loaded
    FtpServerAgent: Start request
    Server STARTED: IfsAgents(37415) not managed
    FtpServerAgent: passing credentials
    FtpServerAgent: starting timer
    FtpServerAgent: Timer timeouts remaining set to 4
    Attempting to start agent CupServerAgent
    Agent CupServerAgent started
    Attempting to load agent NtfsServerAgent
    Agent NtfsServerAgent loaded
    CupServerAgent: Start request
    CupServerAgent: passing credentials
    CupServerAgent: starting timer
    CupServerAgent: Timer timeouts remaining set to 4
    Attempting to start agent NtfsServerAgent
    Agent NtfsServerAgent started
    Attempting to load agent WcpServerAgent
    Agent WcpServerAgent loaded
    NtfsServerAgent: Start request
    NtfsServerAgent: passing credentials
    NtfsServerAgent: starting timer
    NtfsServerAgent: Timer timeouts remaining set to 4
    Attempting to start agent WcpServerAgent
    Agent WcpServerAgent started
    Attempting to load agent ImapServerAgent
    WcpServerAgent: Start request
    Agent ImapServerAgent loaded
    WcpServerAgent: passing credentials
    WcpServerAgent: starting timer
    WcpServerAgent: Timer timeouts remaining set to 4
    Attempting to start agent ImapServerAgent
    Agent ImapServerAgent started
    Attempting to load agent SmtpServerAgent
    Agent SmtpServerAgent loaded
    ImapServerAgent: Start request
    ImapServerAgent: passing credentials
    ImapServerAgent: starting timer
    ImapServerAgent: Timer timeouts remaining set to 4
    Attempting to start agent SmtpServerAgent
    Agent SmtpServerAgent started
    SmtpServerAgent: Start request
    SmtpServerAgent: passing credentials
    SmtpServerAgent: starting timer
    SmtpServerAgent: Timer timeouts remaining set to 4
    Server STARTED: CupServer(37600) managed by IfsProtocols(37416)
    CupServerAgent: Server STARTED: CupServer(37600) managed by IfsProtocols(37416)
    Server STARTED: FtpServer(37619) managed by IfsProtocols(37416)
    FtpServerAgent: Server STARTED: FtpServer(37619) managed by IfsProtocols(37416)
    Server STARTED: WcpServer(37621) managed by IfsProtocols(37416)
    WcpServerAgent: Server STARTED: WcpServer(37621) managed by IfsProtocols(37416)
    FtpServerAgent: timer expired with internal status of Starting...
    FtpServerAgent: remaining timeouts reduced to 3
    FtpServerAgent: Server Created with internal status of Starting...
    FtpServerAgent: stopping timer
    WcpServerAgent: timer expired with internal status of Starting...
    WcpServerAgent: remaining timeouts reduced to 3
    WcpServerAgent: Server Created with internal status of Starting...
    WcpServerAgent: stopping timer
    CupServerAgent: timer expired with internal status of Starting...
    CupServerAgent: remaining timeouts reduced to 3
    CupServerAgent: Server Created with internal status of Starting...
    CupServerAgent: stopping timer
    ImapServerAgent: timer expired with internal status of Starting...
    ImapServerAgent: remaining timeouts reduced to 3
    NtfsServerAgent: timer expired with internal status of Starting...
    NtfsServerAgent: remaining timeouts reduced to 3
    SmtpServerAgent: timer expired with internal status of Starting...
    SmtpServerAgent: remaining timeouts reduced to 3
    Server STARTED: ImapServer(37647) managed by IfsProtocols(37416)
    ImapServerAgent: Server STARTED: ImapServer(37647) managed by IfsProtocols(37416)
    ImapServerAgent: Server Created with internal status of Starting...
    ImapServerAgent: stopping timer
    Server STARTED: SmtpServer(37658) managed by IfsProtocols(37416)
    SmtpServerAgent: Server STARTED: SmtpServer(37658) managed by IfsProtocols(37416)
    SmtpServerAgent: Server Created with internal status of Starting...
    SmtpServerAgent: stopping timer
    NtfsServerAgent: timer expired with internal status of Starting...
    NtfsServerAgent: remaining timeouts reduced to 2
    Server STARTED: NtfsServer(37667) managed by IfsProtocols(37416)
    NtfsServerAgent: Server STARTED: NtfsServer(37667) managed by IfsProtocols(37416)
    NtfsServerAgent: Server Created with internal status of Starting...
    NtfsServerAgent: stopping timer
    null

  • Error when mapping drive with read only permissions - unc path works fine

    Hello,
    we have user shares that we map to drive H:. the shares are in the form \\server\user\<loginname>. The shares have full permission and the files and folders have full permission for the user. To be clear, the shared folder is \\server\user. <loginname>
    are several folders, one for each user.
    We use a vb script to check if a user stores too much data and if yes, we set the permissions for the user to read only and delete (with icacls).
    Unfortunately, it this happens, we cannot map the drive anymore on Windows 7 (on Windows XP it works fine). The error is "Permission denied". Interestingly, the user can still open the share with the unc - path.
    Is there anything I can do, so that the user still has his drive mapped? Most user are not tech savvy enough to open their share with the unc - path.
    Thank You,
    Peter

    Hi Peter,
    Sorry for the delay in reply.
    Please disable User Account Control in windows 7 to see if you can see the map drive. In the meantime, I suggest to use GPP instead of logon script to map drive.
    GP Preferences Will Reduce Logon Scripts : Mapping Drives
    http://blogs.technet.com/b/grouppolicy/archive/2009/02/11/gp-preferences-will-reduce-logon-scripts-mapping-drives.aspx
    Please refer to the similar thread below to see if it helps:
    Windows 7 Drive mapping via Logon script issue
    http://social.technet.microsoft.com/Forums/en-US/6cdfae47-1ca0-46e8-8456-6aac2ee616b2/windows-7-drive-mapping-via-logon-script-issue
    Regards,
    We
    are trying to better understand customer views on social support experience, so your participation in this
    interview project would be greatly appreciated if you have time.
    Thanks for helping make community forums a great place.

  • Mapped drives automatically disconnected

    Hi,
    Having a bit of an odd issue with a Windows 2012 R2 server mapping drives to a Windows 2008 R2 in a RDS environment.
    I have setup the mapped drives in GPO with the replace option and reconnected ticked.
    When I login with a user account, the drives all have the Red X, which causes us issues with applications trying to run from them, or utilize the drives, if you go and click on them in windows explorer they map fine.
    If I manually map a drive, log off and back on same red X.  Now if I do this as a domain admin, they drive seems to stay connected. 
    So I thought id add the users to local admin to test, no difference.  I have tried to disable all my GPO so nothing is getting applied to this server and same issue.
    have tried this command on the file server
    net config server /autodisconnect:-1
    Updated the registry with the as per:
    http://support.microsoft.com/kb/297684#appliesto
    have also tried the linkconnections regkey
    https://support.microsoft.com/kb/937624/en-us?wa=wsignin1.0
    now pretty much out of idea's may have to log it with MS, but thought id see if anyone has had a similar issue.
    Thanks,

    Hi,
    Would you please tell us that does this issue also happen on other servers?
    In addition, are there any related warning or error messages logged in the Event Logs?
    Best Regards,
    Amy
    Please remember to mark the replies as answers if they help and un-mark them if they provide no help. If you have feedback for TechNet Subscriber Support, contact [email protected]

  • Mapped Drives in Group Policy

    Hi,
    I am currently mapping drives via Group Policy, they are mapped based on the users location with Item Level Targeting. Because users move between different offices they access different drives in each office, the settings delete all mapped drives and then adds
    the mapped drives for the office they are currently each time they log on.
    However some users have manually mapped drives that are specific to the user. Is there a way to retain the manually mapped drives and just delete and add the drives in Group Policy?
    My apologies if I have not made myself clear.
    Thank you in advance for any help or thoughts

    Hi,
    Using "Delete" preference item, you can delete the specific mapped drives by identifying their drive letter configured using GPP, without disturbing the mapped drives created manually.
    Checkout the below link for more information,
    http://technet.microsoft.com/en-us/library/cc770902.aspx
    Regards,
    Gopi
    JiJi
    Technologies

  • Group Policy Pref - Mapped Drives Not Applying to One User

    Hi All,
    I’m new to this list, so please excuse any etiquette slip ups.  
    I have three users at a site. All their machines are running Windows XP Service Pack 3 and have client side extensions installed. I created a group policy to map their default drives using GP User Preferences.
    Each of the drives is set to "update".
    As an example of the policy created XML is as follows:
    <Drive clsid="{935D1B74-9CB8-4e3c-9914-7DD559B7A417}" name="H:" status="H:"
    image="2" changed="2009-11-25 05:13:58"
    uid="{8A44D2F4-AAE5-4F43-AEEC-D36F08EA619C}" desc="Maps the users H drive to
    ServerName\users$\%username%" bypassErrors="1"><Properties action="U"
    thisDrive="NOCHANGE" allDrives="NOCHANGE" userName=""
    path="\\ServerName\users$\%username%" label="Home (ServerName)"
    persistent="1" useLetter="1" letter="H"/></Drive>
    and
    <Drive clsid="{935D1B74-9CB8-4e3c-9914-7DD559B7A417}" name="J:" status="J:"
    image="0" changed="2009-11-30 03:52:58"
    uid="{535CD462-A45D-4363-ADA1-2316D5ECC703}" desc="Maps J drive for users to
    \\ServerName\apps" bypassErrors="1"><Properties action="C"
    thisDrive="NOCHANGE" allDrives="NOCHANGE" userName=""
    path="\\ServerName\Apps" label="Apps (ServerName)" persistent="1"
    useLetter="1" letter="J"/></Drive>
    The group policy is applied to an OU for that site. 
    All three users are in the same OU.
    All three users are also in the same “xxsitecode Users” group.
    2 of the users log into their pc and get the mapped drives with no issue, but one user doesn’t.
    There are no other login scripts and the user has no manually mapped drives.
    He does have a H drive mapped using the profile field in his AD object as a temp measure. But every 90 mins any other manually mapped drives are removed by the policy.
    We don’t use roaming profiles
    To trouble shoot I have tried
    -    Reinstalling client side extensions
    -    Re-joining the pc to the domain
    -    Running gpupdate from the command prompt to see if any event logs are generated (none are)
    -    Manually mapping the drives to make sure there is network access etc – I can manually map them/he can access them.
    -    Creating the user a new account, when he logs in using that account he gets his mapped drives on all PC’s
    -    Getting the user to log into a different pc, when he does this he doesn’t get his drives – so it’s not his machine or profile
    -    Manually checking the security on the user object in AD against one of the users who gets their drives mapped
    I'm sure the GP is fine because it works for two other users and the testing isolates his user account as the issue.
    The Policy I’m having issues with is xxxx Mapped Drives/ Printers
    I have posted this issue on the tech net GP discussion groups page, but haven’t had any replies.
    Any suggestions would be appreciated.
    Simone

    What's interesting is that I applied a new GP to users - it has one policy setting and one preferences setting. He only gets the policy setting.. aka he gets the wallpaper but not the homepage.
    Also, Jorke asked me to post the gpresult /z .
    Microsoft (R) Windows (R) XP Operating System Group Policy Result tool v2.0
    Copyright (C) Microsoft Corp. 1981-2001
    Created On 10/02/2010 at 2:19:34 PM
    RSOP results for DOMAIN\USER on MACHINENAME : Logging Mode
    OS Type:                     Microsoft Windows XP Professional
    OS Configuration:            Member Workstation
    OS Version:                  5.1.2600
    Domain Name:                 DOMAIN
    Domain Type:                 Windows 2000
    Site Name:                   SITECODE
    Roaming Profile:            
    Local Profile:               C:\Documents and Settings\USER.DOMAIN
    Connected over a slow link?: No
    COMPUTER SETTINGS
        CN=MACHINENAME,OU=Laptops,OU=SITECODE,DC=DOMAIN,DC=com,DC=au
        Last time Group Policy was applied: 10/02/2010 at 1:06:38 PM
        Group Policy was applied from:      XXXXXADC.DOMAIN.com.au
        Group Policy slow link threshold:   500 kbps
        Applied Group Policy Objects
            Allow Remote Assistance
            au-mdwsus
            Default Domain Policy
            Legal Notice
            Proxy Settings
            Logon as service, operating system
            AU-WSUS
            Desktop Background & Home Page
            Reg Permissions for default desktop
            Local Admin & Local Power Users
        The following GPOs were not applied because they were filtered out
            SITECODE Mapped Drives/ Printers
                Filtering:  Not Applied (Empty)
            Local Group Policy
                Filtering:  Not Applied (Empty)
            AVD Rollout
                Filtering:  Disabled (GPO)
        The computer is a part of the following security groups:
            BUILTIN\Administrators
            Everyone
            Debugger Users
            BUILTIN\Users
            NT AUTHORITY\NETWORK
            NT AUTHORITY\Authenticated Users
            MACHINENAME$
            Domain Computers
            CERTSVC_DCOM_ACCESS
        Resultant Set Of Policies for Computer:
            Software Installations
                N/A
            Startup Scripts
                GPO: Desktop Background & Home Page
                    Name:         image.bat
                    Parameters:  
                    LastExecuted: 7:55:34 PM
                    Name:         swiftdesktop.vbs
                    Parameters:  
                    LastExecuted: 7:55:35 PM
            Shutdown Scripts
                N/A
            Account Policies
            Audit Policy
            User Rights
            Security Options
            Event Log Settings
            Restricted Groups
            System Services
            Registry Settings
            File System Settings
            Public Key Policies
                N/A
            Administrative Templates
                GPO: Allow Remote Assistance
                    Setting: Software\policies\Microsoft\Windows NT\Terminal Services
                    State:   Enabled
                GPO: AU-WSUS
                    Setting: Software\Policies\Microsoft\Windows\WindowsUpdate\AU
                    State:   Enabled
                GPO: Allow Remote Assistance
                    Setting: Software\policies\Microsoft\Windows NT\Terminal Services\RAUnsolicit
                    State:   Enabled
                GPO: Allow Remote Assistance
                    Setting: Software\policies\Microsoft\Windows NT\Terminal Services
                    State:   Enabled
                GPO: Allow Remote Assistance
                    Setting: Software\policies\Microsoft\Windows NT\Terminal Services\RAUnsolicit
                    State:   Enabled
                GPO: Allow Remote Assistance
                    Setting: Software\policies\Microsoft\WindowsFirewall\DomainProfile\GloballyOpenPorts
                    State:   Enabled
                GPO: Allow Remote Assistance
                    Setting: Software\policies\Microsoft\WindowsFirewall\DomainProfile\GloballyOpenPorts\List
                    State:   Enabled
                GPO: Allow Remote Assistance
                    Setting: Software\policies\Microsoft\WindowsFirewall\DomainProfile\AuthorizedApplications\List
                    State:   Enabled
                GPO: AU-WSUS
                    Setting: Software\Policies\Microsoft\Windows\WindowsUpdate\AU
                    State:   Enabled
                GPO: Allow Remote Assistance
                    Setting: Software\policies\Microsoft\Windows NT\Terminal Services\RAUnsolicit
                    State:   Enabled
                GPO: Allow Remote Assistance
                    Setting: Software\policies\Microsoft\WindowsFirewall\DomainProfile\AuthorizedApplications\List
                    State:   Enabled
                GPO: Allow Remote Assistance
                    Setting: Software\policies\Microsoft\Windows NT\Terminal Services\RAUnsolicit
                    State:   Enabled
                GPO: Allow Remote Assistance
                    Setting: Software\policies\Microsoft\Windows NT\Terminal Services\RAUnsolicit
                    State:   Enabled
                GPO: AU-WSUS
                    Setting: Software\Policies\Microsoft\Windows\WindowsUpdate\AU
                    State:   Enabled
                GPO: Allow Remote Assistance
                    Setting: Software\policies\Microsoft\Windows NT\Terminal Services
                    State:   Enabled
                GPO: au-mdwsus
                    Setting: Software\Policies\Microsoft\Windows\WindowsUpdate
                    State:   Enabled
                GPO: Allow Remote Assistance
                    Setting: Software\policies\Microsoft\Windows NT\Terminal Services\RAUnsolicit
                    State:   Enabled
                GPO: Allow Remote Assistance
                    Setting: Software\policies\Microsoft\Windows NT\Terminal Services\RAUnsolicit
                    State:   Enabled
                GPO: au-mdwsus
                    Setting: Software\Policies\Microsoft\Windows\WindowsUpdate\AU
                    State:   Enabled
                GPO: Allow Remote Assistance
                    Setting: Software\policies\Microsoft\Windows NT\CurrentVersion\Winlogon
                    State:   Enabled
                GPO: Allow Remote Assistance
                    Setting: Software\policies\Microsoft\Windows NT\Terminal Services
                    State:   Enabled
                GPO: Allow Remote Assistance
                    Setting: Software\policies\Microsoft\WindowsFirewall\DomainProfile\AuthorizedApplications\List
                    State:   Enabled
                GPO: AU-WSUS
                    Setting: Software\Policies\Microsoft\Windows\WindowsUpdate\AU
                    State:   Enabled
                GPO: Allow Remote Assistance
                    Setting: Software\policies\Microsoft\Windows NT\Terminal Services\RAUnsolicit
                    State:   Enabled
                GPO: Allow Remote Assistance
                    Setting: Software\policies\Microsoft\WindowsFirewall\DomainProfile\AuthorizedApplications
                    State:   Enabled
                GPO: AU-WSUS
                    Setting: Software\Policies\Microsoft\Windows\WindowsUpdate\AU
                    State:   Enabled
                GPO: au-mdwsus
                    Setting: Software\Policies\Microsoft\Windows\WindowsUpdate
                    State:   Enabled
                GPO: Allow Remote Assistance
                    Setting: Software\policies\Microsoft\Windows NT\Terminal Services
                    State:   Enabled
                GPO: Desktop Background & Home Page
                    Setting: Software\Policies\Microsoft\Internet Explorer\Security
                    State:   Enabled
                GPO: Allow Remote Assistance
                    Setting: Software\policies\Microsoft\Windows NT\Terminal Services
                    State:   Enabled
                GPO: AU-WSUS
                    Setting: Software\Policies\Microsoft\Windows\WindowsUpdate
                    State:   Enabled
                GPO: AU-WSUS
                    Setting: Software\Policies\Microsoft\Windows\WindowsUpdate\AU
                    State:   Enabled
                GPO: Allow Remote Assistance
                    Setting: Software\policies\Microsoft\Windows NT\Terminal Services\RAUnsolicit
                    State:   Enabled
                GPO: Allow Remote Assistance
                    Setting: Software\policies\Microsoft\WindowsFirewall\DomainProfile\AuthorizedApplications
                    State:   Enabled
                GPO: Allow Remote Assistance
                    Setting: Software\policies\Microsoft\WindowsFirewall\DomainProfile\RemoteAdminSettings
                    State:   Enabled
                GPO: Allow Remote Assistance
                    Setting: Software\policies\Microsoft\Windows NT\Terminal Services
                    State:   Enabled
                GPO: AU-WSUS
                    Setting: Software\Policies\Microsoft\Windows\WindowsUpdate\AU
                    State:   Enabled
                GPO: au-mdwsus
                    Setting: Software\Policies\Microsoft\Windows\WindowsUpdate
                    State:   Enabled
                GPO: AU-WSUS
                    Setting: Software\Policies\Microsoft\Windows\WindowsUpdate\AU
                    State:   Enabled
                GPO: Allow Remote Assistance
                    Setting: Software\policies\Microsoft\WindowsFirewall\DomainProfile\RemoteAdminSettings
                    State:   Enabled
                GPO: Allow Remote Assistance
                    Setting: Software\policies\Microsoft\Windows NT\Terminal Services\RAUnsolicit
                    State:   Enabled
                GPO: au-mdwsus
                    Setting: Software\Policies\Microsoft\Windows\WindowsUpdate
                    State:   Enabled
                GPO: Allow Remote Assistance
                    Setting: Software\policies\Microsoft\WindowsFirewall\DomainProfile\AuthorizedApplications\List
                    State:   Enabled
                GPO: Allow Remote Assistance
                    Setting: Software\policies\Microsoft\WindowsFirewall\DomainProfile\AuthorizedApplications\List
                    State:   Enabled
                GPO: Allow Remote Assistance
                    Setting: Software\policies\Microsoft\Windows NT\Terminal Services
                    State:   Enabled
    USER SETTINGS
        CN=Matthew Luhrs,OU=Users,OU=SITECODE,DC=DOMAIN,DC=com,DC=au
        Last time Group Policy was applied: 10/02/2010 at 1:54:53 PM
        Group Policy was applied from:      XXXXXADC.DOMAIN.com.au
        Group Policy slow link threshold:   500 kbps
        Applied Group Policy Objects
            Allow Remote Assistance
           **** SITECODE Mapped Drives/ Printers - has Gp Pref's that should apply
            Default Domain Policy
            Proxy Settings
            **** Desktop Background & Home Page - has Gp Pref's that should apply
            Local Admin & Local Power Users
        The following GPOs were not applied because they were filtered out
            AU-WSUS
                Filtering:  Not Applied (Empty)
            Legal Notice
                Filtering:  Disabled (GPO)
            Reg Permissions for default desktop
                Filtering:  Not Applied (Empty)
            Logon as service, operating system
                Filtering:  Not Applied (Empty)
            Local Group Policy
                Filtering:  Not Applied (Empty)
            au-mdwsus
                Filtering:  Not Applied (Empty)
            AVD Rollout
                Filtering:  Disabled (GPO)
        The user is a part of the following security groups:
            Domain Users
            Everyone
            Offer Remote Assistance Helpers
            BUILTIN\Administrators
            BUILTIN\Users
            NT AUTHORITY\INTERACTIVE
            NT AUTHORITY\Authenticated Users
            LOCAL
            Computer Account Operators
            Internet Users
            SITECODE Users
            DOMAIN-Public Folders Administrators
            All Email Users
            DOMAINSWIFTEMAIL
            Domain Admins
            Offer Remote Assistance Helpers
            WSUS Administrators
            DHCP Administrators
            CERTSVC_DCOM_ACCESS
        Resultant Set Of Policies for User:
            Software Installations
                N/A
            Public Key Policies
                N/A
            Administrative Templates
                N/A
            Folder Redirection
                N/A
            Internet Explorer Browser User Interface
                GPO: Proxy Settings
                    Large Animated Bitmap Name:      N/A
                    Large Custom Logo Bitmap Name:   N/A
                    Title BarText:                   N/A
                    UserAgent Text:                  N/A
                    Delete existing toolbar buttons: No
            Internet Explorer Connection
                HTTP Proxy Server:   Proxy:port
                Secure Proxy Server: Proxy:port
                FTP Proxy Server:    Proxy:port
                Gopher Proxy Server: Proxy:port
                Socks Proxy Server:  Proxy:port
                Auto Config Enable:  Yes
                Enable Proxy:        Yes
                Use same Proxy:      Yes
            Internet Explorer URLs
                GPO: Proxy Settings
                    Home page URL:           N/A
                    Search page URL:         N/A
                    Online support page URL: N/A
            Internet Explorer Security
                Always Viewable Sites:     N/A
                Password Override Enabled: False
                GPO: Proxy Settings
                    Import the current Content Ratings Settings:      No
                    Import the current Security Zones Settings:       No
                    Import current Authenticode Security Information: No
                    Enable trusted publisher lockdown:                No
            Internet Explorer Programs
                GPO: Proxy Settings
                    Import the current Program Settings: No

Maybe you are looking for

  • How can I turn off the iCloud password prompt?

    Running OS X 10.10.1, on each login I'm prompted twice for an iCloud password. How can I turn this off? iCloud is not listed at system preferences / users and groups / login items, which is where I expect to see apps selected as startup apps. See the

  • Table in smart form

    hi abapers i have one small doubts is it necessary to maintain an internal table in data tab of tables(in smart forms). it doesnot give error in activation but give dump while running. pls clarify madhu

  • Apple Magic Mouse and Headset

    As soonas i run my Apple Magic Mouse together wit my samsung hm3100 my mouse is loosing the connection as soon as i switch of muy head set everything is fine Macbook Pro 17 inch snow 10.6.8 Any idea Thanx Frank

  • Invoice price

    Hi how to create invoice price more than grn price.which place settings available,plz help, Regards mohan

  • How can we serialize a c++ structure with an vector inside it in coherence using PofWriter?

    How can we serialize a c++ structure with an vector inside it in coherence using PofWriter? Any help is appreciated. Thanks.