Roaming Profiles

First sorry if this is in the wrong folder. I was asked a question today that I don't quite know the answer to. If someone is running a full mac shop from server to client machines and using roaming profiles, do the full roaming profiles actually get downloaded to the client machine every time, or do they stay local to the server as they do in a windows environment. Or is it a preference for the admin to setup as to whether they stay local or push down to the client when a user logs in?

Network home directories stays on the server but you can make it a portable home directory/account that will be copied to the client/user machine the next time you log in from that machine. Any change to that portable account will be copied back to the server (you choose what folders).
You make it a portable account on the client machine (can maybe be setup from/on the server if bound to OD/AD?).

Similar Messages

  • How to set up roaming profile on Macs using AD like in windows

    I can bind the workstations to the domain fine.. But can someone direct me to instructions of how to set up the roaming profiles ?
    What steps do I need on the server ? This is what I've done so far.
    I already have OU's for the departments and the users have a shared folder inside their department folder.... \\server\shared_folder\user
    I have done the usual things with AD as far as the profile settings on the windows server.
    Am currently running Mac OS 10.5 and above
    My windows AD runs on windows server 2008
    All my windows workstation are able to use roaming profile without a problem.
    So far i have tried the so many avenues including..
    Make sure the Mac systems are joined to the domain controller and an ADS user can log on successfully. Use "Directory Utility" under "Utilities" menu to join the system to the domain.
    Backup all the contents from /Users to the storage or somewhere locally.
    Configure automount - Go to "Utilities" -> "Directory Utility" - Select the domain and click "Show advanced options" - Click "Mounts" tab and add automount as mentioned below. Remote NFS URL: nfs://server_name/share_name/path/to/profile/directory Mount location: /Users Additional mount parameters: -P,-T Apply the settings and this will mount the remote shared folder or we can name it as Roaming Profile Space - under /Users directory
    Enable roaming profile - Go to "Utilities" -> "Directory Utility" - Select the domain and click "Show advanced options" - Click "Services" -> Select "Active Directory" and click "Show advanced option" - Click "User experience" tab and select the option "Create mobile account at login".
    Reboot the system and log in as any ADS user. The Roaming shared folder will be mounted and the user profile will be created on the shared folder
    Can anyone kindly assist me

    Hi Guys, anyone with the Soln...or Tips..Am waiting

  • Tablet 2 won't upload roaming profile

    Tablet 2, Windows 8 Pro (factory installed), AD domain member, user account with roaming profile.
    The OS will download my roaming profile when I log in, but refuses to upload it back to the server when I log off. I've installed Windows 8 (Enterprise) from scratch on two other computers (a Dell laptop and a Lenovo W500 laptop), and on those machines, the roaming profile works correctly. Has anybody else seen this behavior?
    Bob

    Have you tried to export to the "camera roll", and then try to export to you tube from the photos app?

  • Windows Domain Controller on Windows Server 2012 R2: Hyper-V roaming profiles not loading due to slow connection

    I have racked my brain and done everything that I know to do for about two weeks now.  I am setting up a new system at our fire department and I am having the worst luck with getting the workstations to login to the domain controller with roaming
    profiles.  It keeps telling me that the roaming profile could not be loaded because of a slow connection.  These are workstations that are connected directly to the switch that the DC is connected to.  I have tried multiple connections regarding
    the layout (DC into the router, router into the switch).  The router is a Cisco RV220W.  I have two VLANS, one for public and one for private domain.  The Private VLAN has DHCP turned off since I am providing it through the DC.  I currently
    have a connection from the Private VLAN going to the unmanaged switch that the workstations and server are plugged into.
    The server is a Dell PowerEdge R420 that has 6 NIC ports (1 dual port and 1 quad port).  I have a virtual switch setup on Hyper-V for an external port (let's say Card 2 Port 3) that is assigned to the WS 2012R2 Domain Controller.  The DC can see
    the internet fine and the workstations can connect to the shared folders on the server.  I can retrieve files by just using the computer name or FQDN.  The DC is also running DNS and DHCP.  The DNS has the _msdcs setup from when I installed
    the active directory role.  I have attempted to assign static IP addresses to the workstations:
    IP:                     10.0.0.80
    Subnet:             255.255.255.0
    IPV4 Gateway:  10.0.0.1
    IPV4 DNS:        10.0.0.12
    I've attempted "append the specific DNS suffix", I've "registered the connection in DNS", I've used "use this connections suffix in DNS registration".
    The server is assigned:
    IP:                     10.0.0.12
    Subnet:             255.255.255.0
    IPV4 Gateway:  10.0.0.1
    IPV4 DNS:         10.0.0.12
    The DNS entries have forwarders that forward to my ISP DNS servers for lookup
    I've enabled and disabled DHCP, I've installed a new VM just to create another DC to make sure that I didn't goof up when I created it.
    I've lost my patience with this project and am sinking fast.  Can someone please offer some advice as to what I've done wrong?  I've created this exact scenario at work many times but, I've never done it with Windows Server 2012.  Is this
    possibly something to do with the Dell PowerEdge server (Generation 12) with the SR-IOV?  I am going to attempt to work on it some more tomorrow when I get over there.  I think there may be an issue with the SR-IOV not being enabled on the machine
    through the Dell Bios.  Would the SR-IOV really cause the workstations to report a slow connection?  When I login at the domain controller the roaming profiles and folder redirection work fine so, I know the GPO settings are correct.  I don't
    have "ignore slow connections" or any of those GPO's set.  I need to get it working the correct way so, I didn't want to fool the server when there is another underlying problem.  Any help that someone can offer, I am more than willing
    to listen.  If you need more information, please ask.
    Thanks,
    Jay

    So, I've managed to research this some more since Thursday and I've come to the conclusion that Hyper-V does a horrible job of supporting Qualcomm NIC cards. That's the only thing I can conclude as far as where the issue is originating. I've read many
    post and walkthroughs but nothing that has helped. The issue wasn't with any settings in the domain controller. The issue was that there really is a slow connection originating at the domain controller that is a VM and has network connectivity through the
    virtual switch from Hyper-V. So, next question is, how do I get the DC to have better connectivity through the NIC that Hyper-V won't give it? If hyper-v would allow passthrough, this would be so much simpler. VM-ware is looking really good at this point.
    Im disappointed in MS right now.

  • AppV 5 slow to refresh with roaming profile (no redirects) but fast with local profile

    Hi,
    I have an issue I can't get thought out. I have an AppV5 SP3 full infra, with SMB share and local caching of packages enabled. Everything works from a functional level. However I have an issue where users with a roaming profile get a very slow AppV refresh
    during login.
    I created a few testaccounts, a few with local profile and a few with roaming profiles. For these testusers there are NO folder redirects. The only difference between them is local profile or roaming profile.
    When I login with a local-profile user initially, the AppV client rather slowly refreshes the applications and shortcuts. It generates quite some CPU load on the RDS host, but as soon as the shortcuts are placed everything is fine. When I log that user off,
    and log in again, the shortcuts are there immediately and I can immediately start the applications (Office 2010 for example). Blazing fast. Also when logging in, the refresh-UI is there for about half a second, it really flashes and it's done.
    Then with a testuser with roaming profile, the initial refresh is about the same. But when I logoff that user and login again, it's all very slow. The shortcuts are there but blank initially, it takes about 5-10 seconds to get the correct icon. It takes
    much longer before the refresh actually starts (sometimes up to 30 seconds after login), and it takes 5-10 seconds to do the refresh, with 100% cpu load on the thread AppVclient.exe is running on. Also right after loging in when the shortcuts are blank they
    don't work until they get the proper icon. WHen everything is refreshed it works all fine though. It's just painfully slow at start.
    I don't understand this. I can reproduce this every single time. Without folder redirects I don't see the difference between roaming and local profile from AppV perspective, as the roaming profile is of course copied to the server and in that sense the server
    just works with a local copy anyway.
    Anyone encountered this, and how to troubleshoot, or better fix this?

    So is the fact that there is a 5-10 second delay during refresh actually an issue? What I mean by that is - are any users comparing the local profiles with roaming profiles experience, or complaining that the delay is there?
    Roaming profiles and Folder redirection are of course very simple to configure; however for the best user experience I recommend managing profiles with a real profile management solution.
    If you have MDOP, then you'll also have access to UE-V. You've mentioned your environment is RDS, which sadly doesn't get UE-V, even though you have App-V.
    Here are some resources on UE-V + App-V and what's required when managing App-V with roaming users:
    How To Use Microsoft User Experience Virtualization With App-V Applications
    Application Publishing and Client Interaction: Roaming registry and data
    Here's also some resources on App-V performance worth looking at:
    Performance Guidance for Application Virtualization 5.0
    App-V Performance Best Practices: New Project VRC White Paper
    Please remember to click "Mark as Answer" or "Vote as Helpful" on the post that answers your question (or click "Unmark as Answer" if a marked post does not actually
    answer your question). This can be beneficial to other community members reading the thread.
    This forum post is my own opinion and does not necessarily reflect the opinion or view of my employer, Microsoft, its employees, or other MVPs.
    Twitter:
    @stealthpuppy | Blog:
    stealthpuppy.com |
    The Definitive Guide to Delivering Microsoft Office with App-V

  • How do I use long path names ("\\?\UNC\...") with Server 2008 roaming profiles?

    Hey folks!
    I administrate a Windows Server 2008 R2 SP1 Domain with about 40 users on
    Windows 7 SP1 clients. Because the users often switch between the many PCs, I am using Roaming Profiles which tend to produce errors with different application-specific paths and files inside the users profiles.
    As one of many example, our standard mail application Thunderbird produces paths and files according to folders/subfolders and mails in a user's mailbox. Another one is Microsoft Office's Auto Recovery files which reside in a user's profile and can
    get very long.
    These paths and filenames often extend the allowed max. path of about 256 characters, when (on log on or off) the synchronization process between the client and the server takes place, leading to errors in the event log and a notification to the user about
    the conflict:
    "Event ID 1509 - Windows cannot copy file \\server\share\users\user123.v2\AppData\Roaming\looooong to location C:\Users\user123\AppData\Roaming\looooong. DETAIL - The filename or extension is too long."
    In the long run this leads to different file versions on different clients which - in the case of Thunderbird - leads to missing mails.
    After extensive searches and lectures of forums - including this - I haven't found a solution for this problem.
    So my question is if there's a way to use the extended max path with roaming profiles and if so how do I get it to work?
    I tried changing the profile path of a test user in the Active Directory user preferences from "\\server\share\profiles\test_user" to something like "\\?\UNC\server\share\profiles\test_user" without any changes in the system's behavior.
    Also I think that because this is such a fundamental problem somebody must have come up with a solution for it...
    Thanks in advance,
    Nico

    Hi,
    Thanks for your posting.
    The Event 1509 can happen if the destination path of the users profile is on a server with a long name and share folder name. For detail information, please refer to:
    User profile cannot be loaded with Event ID 1509, DETAIL - The filename or extension is too long
    http://blogs.technet.com/b/win7/archive/2011/02/15/user-profile-cannot-be-loaded-with-event-id-1509-detail-the-filename-or-extension-is-too-long.aspx
    User profile cannot be loaded with Event ID 1509, DETAIL - The filename or extension is too long
    http://support.microsoft.com/kb/2536571
    Hope this helps.
    Regards.
    Vivian Wang
    TechNet Community Support

  • How can we reset the SAP cache for users roaming profile in a d?

    Our active directory is on windows server 2003.
    SAP version 6.40
    users work from different workstations in our company with their roaming profile.
    printouts are defined by assigning a printer to the terminal (usually the closest terminal to theprinter)
    we have some users who have logined to windows, are unable to print to the assigned printer, because the name of the terminal is stuck on another terminal they worked on before.
    we think that the the cache in SAP does not update properly.
    Where is the SAP cache, is it in the server, or the workstation, or the user profile?
    Can anyone help?
    Robyn

    all configurations of the printers are correct.
    I will try and explain the problem differently:
    In general If a user logs on to SAP, we will see in tc al08 the username and terminal the user is working from. (The terminal is the full computer name e.g. WS-KITCHEN).
    When a user with the problem logs on to SAP, we will see in tc al08 the username and the name of a terminal he worked from in the past and not the work station he is at present. Therefore his printouts go to the printer that is allocated to the terminal that he worked on before and not the WS-KITCHEN he is working on now.
    Thanks
    Robyn

  • App-v 5.0 sp3 Publish application icons/ shourtcut missed on 2nd time logon on terminal server 2012 r2 with roaming profile with folder redirection

    1. I updated app-v 5.0 sp3 environment on 2012 R2. Roaming profile users with folder redirection logon fine at first time applications icons available but at 2nd logon applicaitons icons are missed while packages are available. we are using existing
    roaming profiles with folder redirection which are running in current environment through APP-V 4.6 2008 R2. Please suggest work around to resolve this issue.
    2. TS Nodes of 2008 R2 with App-v 4.6 running fine on Microsoft 2012 private cloud but we are facing performance issue (stuck, slow logon, slow performance etc) when we are moving in new 2012 R2 private cloud. SAP, SCSM and other sevices are running
    fine, please provide solution.
    Thanks

    1.) What are you doing with the App-V Icon path? e.g. %LOCALAPPDATA%\Microsoft\AppV\Client\Integration\<GUID>\Root\AppVClientUX.exe.0.ico ?
    I guess you could workaround it with deploying the icons to a central location and then pointing to the icon out on a central share. Or put the icons in a machine location...I haven't had this issue but that's just off the top of my head.
    2.) I have not used App-V 4.6 in an environment like yours BUT would pre-caching the applications be possible? Any chance you'll be moving those apps into App-V 5.0 soon?
    PLEASE MARK ANY ANSWERS TO HELP OTHERS Blog:
    rorymon.com Twitter: @Rorymon

  • Issue with offline availability of roaming profiles in Server 2012

    I've recently stood up a Windows 2012 R2 server. I set up folder redirection using the guidelines
    here and roaming profiles using Group Policy. All is well except for the fact that if the client is physically disconnected from the network then the profile isn't available.
    I've set up folder redirection/roaming profiles on many different version of Windows Server and this is the first time I can remember that the files weren't available offline without further intervention from me. Is there some new setting or default on 2012
    R2 that I'm running afoul of?
    I note the following screen on the share properties but don't want to go at it until I know more
    Location of image in case of no display
    Sunt ludi et ioci dum aliquis oculo nocet.

    Shaon,
    No problem at all, I'm delighted that someone is answering at all! :-)
    The answers to your points/questions are as follows:
    1. The issue persists after a reboot
    2. All computers in the OU are experiencing this issue along with all users affected by these group policy items
    3. There is only one group policy applied here and in relation to the three items you've mentioned:
    Action on server disconnect [Not configured]
    Non-default server disconnect actions [Not configured]
    Do not automatically make redirected folders available offline [Not visible]
    All the relevant group policy objects (on the server) are at their default "Not configured" value. I've filtered by Windows 7 and Windows 8 as I have nothing below that. I've checked both locations viz.:
    Computer Configuration\Policies\Administrative Templates\Network\Offline Files
    User Configuration\Policies\Administrative Templates\Network\Offline Files
    The same is true for Local Computer Policy, all are set to "Not configured". In Explorer on the client under the Easy Access option all of the salient settings are greyed out.
    - Derek
    Sunt ludi et ioci dum aliquis oculo nocet.

  • Slow logon for roaming profiles on Server 2012 R2.

    Hey all,
    We have migrated Windows Server 2008 R2 to 2012 R2. After this, roaming profiles began to take 7-8 mins to 15-16 mins to logon to the 2012 R2 RDHS. Same roaming profiles have no problems logging on other RDS servers running Server 2008 R2.
    All updates are installed. All RDS related HotFixes have been applied. Server 2012 R2 only got RDSH role activated. It's a domain environment and AD role is on a physical DC. This is a mixed OS environment for clients.
    Local users have no problems logging on. Roaming profiles have no problems logging back in day after the first logon - The very first logon took a long time for them.
    Profiles stored on an SSD NAS device. The device doesn't support SMB3 protocol. Could this be why?
    Also when we check Event Viewer, we see "Event ID 5: Kernel-General :: {Registry Hive Recovered} Registry hive (file): '\........\NTUSER.DAT' was corrupted and it has been recovered. Some data might have been lost." But again,
    same profiles have no problem logging on Server 2008 R2.
    Looking forward to hearing your thoughts and advices.
    Thanks in advance.

    Hi Bruce,
    >>After this, roaming profiles began to take 7-8 mins to 15-16 mins to logon to the 2012 R2 RDHS.
    Before going further, I want to further confirm if this happens when the users log onto the server first time or all the time.  Besides, does this happen to all domain users logging onto the server?
    >>"Event ID 5: Kernel-General :: {Registry Hive Recovered} Registry hive (file): '\........\NTUSER.DAT' was corrupted and it has been recovered. Some data might have been lost."
    For this event, we can refer to the solution provided by Justin in the following thread to tackle the issue.
    Registry Hive Corrupted - Event ID 5: Kernel-General
    http://answers.microsoft.com/en-us/windows/forum/windows_7-system/registry-hive-corrupted-event-id-5-kernel-general/275d080b-4d29-4eed-887d-bee55725c602?page=1
    Best regards,
    Frank Shen

  • NAC and AD, Machine GPOs, Roaming Profiles = Chaos

    I've just observed a hapless Cisco consultant try to make NAC 4.1 work on computers with machine GPOs, roaming profiles, logon scripts within user GPOs, and for that matter legacy logon scripts with "run logon scripts synchronously" enabled. All of these technologies seem to fail on a NAC-enforced connection.
    We assign software on machine GPOs and we use roaming user profiles, and it seems we either need to have a domain controller and profile share on the isolation VLAN, which defeats the purpose of NAC, or perform some kind of machine authentication, which can occur before GPO processing and net logons can happen.
    While I'm not the Cisco consultant, it wasn't hard to recognize this problem.
    Everything I've read about NAC and CAA suggests this is a per-user compliance solution and not a per-machine solution. Surely others have observed this, and I think this is what machine authentication (802.1x) NAC, as opposed to user authentication NAC, is all about. At the risk of sounding like a total n00b, where can I start researching a NAC solution that supports what I want and lets us use the Cisco NAC gear we've already invested in?

    I have had similar issues and have solved many with a custom script that runs at log on. It is a compiled script and works great, AutoIT3.
    The policy part takes care of itself if you leave machines logged in long enough or do a gpupdate /force. This will force the group policy to synchronize but you will need to log off and on again.
    The roaming profile is much tougher. I am still trying to get this working. If anyone has any info on EXACTLY what takes place on a roaming profile synchronization, I would be grateful. If I can I will replicate that process in my script and solve this issue also.
    I have fixed the log in script stuff with a delayscript that I use (ironically) clean access to install. You have to launch it with the users credentials, though and not from Clean Access which uses the SYSTEM users credentials in its stub agent!
    This is a known issue to Cisco but any prodding of them to get it working would help. Their solution is braindead, just give unremediated machines full access! If they fail remediation, kick them off then. Gee, that gives the unremediated machine a mere two to three minutes to attack your AD DCs on each log in attempt. Not good.
    Anyway, that's where I am at. Most of this can be dealt with, some is still problematical.
    Dan S.

  • Roaming Profile Folder Creation Immediately Inaccessible

    Set up is AD 2008.  Terminal 2012 R2, Fileserver 2012.
    Before we've had it set so we could create a user in AD, log them onto the Terminal, it creates the profile, which on log out is saved to its roaming location on the Fileserver with a V2 after it.  In their profile field in AD, that Fileserver location
    was given as well.
    Something changed recently and we're not sure what.  Now if I create a user in AD, and log them into the Terminal, it gives me a message that a temporary profile is being used for this log on.  When I log out, it creates the V2 on the Fileserver,
    but I'm unable to access it even with admin credentials.  I've been able to change the owner, but it doesn't allow me to delete that folder and try again.  I have been able to run this
    SET DIRECTORY_NAME="C:\profilelocation"
    TAKEOWN /f %DIRECTORY_NAME% /r /d y
    ICACLS %DIRECTORY_NAME% /grant administrators:F /t
    PAUSE
    where the profile location is the folder in question and have it open it up enough to delete so we can troubleshoot.  But doing that doesn't change the initial Terminal status of using a roaming profile and it using a temporary profile.
    On the terminal server, I have also found the registry setting for that user and deleted it (the one with the .bak ending).  That allows a good logon if I remove the profile location setting in AD.  But when I move the folder to the fileserver,
    and then add the location back in AD, I get the Temporary Profile error again.
    Any ideas where to start looking?  I don't think we've changed any GPs that affect our terminal users.  Current users are fine, but I won't be able to create any new users and have them use a roaming profile.
    Ben Rollman

    Well, I'm still not sure what changed.  Here's what I've done so far.  (Email to my boss yesterday.)
    I set up a test container under States and moved all the state user, test user, etc into it.  Then I backed up the current ExtUsers_UsersGPO settings and imported them
    into a new GPO called TextExt… and enabled the computer settings.  It had the following but the Computer Setting wasn’t enabled so it wouldn’t have done that.
    Policy
    Setting
    Comment
    Add the Administrators security group to roaming user profiles
    Enabled
    I deleted the local and roaming file, and for good measure the registry entry.  I logged in as “testuser” and didn’t receive any problems.  Created a test folder,
    test file, logged off.  I see the testuser.V2 on the FS, but I can’t access it, like before.
    I run the following script to change it so I can access it.
    SET DIRECTORY_NAME="C:\Files\Profiles\testuser.v2"
    TAKEOWN /f %DIRECTORY_NAME% /r /d y
    ICACLS %DIRECTORY_NAME% /grant administrators:F /t
    PAUSE
    The FS profile is set for full rights for domain and local admin, but no user.  So I add the user as the owner, and give the user full rights.  Log in, and I get
    this.
    Your roaming profile is not synchronized correctly with the server. Windows will load your previously-saved local profile instead. See the previous events for details.
    And these in event viewer.
    Windows cannot copy file
    \\statefs\Profiles\testuser.V2\ntuser.ini to location C:\Users\testuser\ntuser.ini. This error may be caused by network problems or insufficient security rights.
    DETAIL - The system cannot find the file specified.
    Windows could not load your roaming profile and is attempting to log you on with your local profile. Changes to the profile will not be copied to the server when you log off. Windows could
    not load your profile because a server copy of the profile folder already exists that does not have the correct security. Either the current user or the Administrators group must be the owner of the folder.
    I had put the icons on the FS folder just to see if it would show up.  I saw the test folder okay in both.  But when I logged back in, the shortcut icons weren’t
    there.  AND when I logged off, it overwrote the FS folder, removing the icons.
    From there I checked the TS local profile folder (just in case) and saw it had no testuser rights at all.  The owner of that folder was SYSTEM.  So just for fun I
    changed the owner to testuser, made sure to set it for all subfolders, logged in, no error message.  Logged out, put shortcuts into the desktop folder on FS, logged back in, no errors and the shortcuts are there.
    So.
    I don’t know if it’s the GP or the fact that maybe the TS folder wasn’t getting the right permission to allow the roaming process to write to it or both.  I’m going to
    try to recreate this, see if there’s a way to shorten the process or create a template like before.
    Ben Rollman

  • Roaming profiles not created while the creation of user account

    Hello,
    Our file server (running windows server 2003) is hosting Roaming profiles for users (in active directory running 2003). And that worked just fine till this week, when trying to create some users, we figured out that their roaming profiles are not created
    (after their first logon the the domain of course)
    We checked out the NTFS permissions and the SMB share permissions, and everything looks correct.I have even modified the permissions as Microsoft recommands. But still nothing has changed.
    What could be the problem? or where to look for some paths to troubleshoot this problem??
    Thanks in advance!
    Lotfi BOUCHERIT

    Hi Lotfi B,
    According to your description
    the user, is not able to access the share from the Explorer, as Awinish said, there may be a network or Firewall issue.
    Please try to troubleshoot the network issue referring to the following article:
    Troubleshoot network connection problems
    In addition, it would be helpful if you could help to collect the following information:
    Could the old users access the share?
    Did the GPResult show the GPO had applied successfully? Please run
    Gpresult /h > C:\temp\gpresult.html  (“C:\temp\”is the path of the gpresult.html,
    you can set it yourself) in Command Prompt, the file gpresult.html is used for checking the resultant of Group Policy information.
    Regards,
    Lany Zhang

  • Roaming Profile issues

    Hi all,
    Since we migrated the infrastructure of our client to Win 8.1 and Server 2012 we are experiencing issues with roaming profiles. Before they had Win 7 and SBS Server 2003. The users have different problems:
    RemoteApps are not working anymore (error 0x80070003), means we need to delete the contents of "HKEY_CURRENT_USER\Software\Microsoft\workspaces\Feeds\" and "%USERPROFILE%\AppData\Roaming\Microsoft\Workspaces\"
    The computer does not download the profile from the server so that the most recent local profile will be loaded. Events: "User Profiles General - 1509" and "User Profile Service - 1540" (I don't have the English error message available).
    When this happens once, it never will work again even after days. Only deleting the local profile and re-login will solve the issue 
    And then there is the next problem! After deletion of the local profile and  re-login with the users profile, the profile will be downloaded from the server. But there are always two things missing:
    %USERPROFILE%\AppData\Local\Microsoft\Windows\WinX: No right-click-menu on the start button available
    %USERPROFILE%\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\[Default-Icons]: There are no standard programs available in the start menu, such as explorer, IE, Calc, etc because of the missing shortcuts. When I checked the server I saw that the shortcuts
    disappeared some days ago (previous versions)
    So my questions here are
    Why isn't the WinX folder being created? The local Default profile does contain it.
    Where are the start menu shortcuts gone? I don't think it's caused by the user because it already happened 4 or 5 times. 
    This applies to migrated users but also to newly created users in the WIn8 environment and on different machines. I hope anyone had similar issues and was able to solve it..?
    Thanks a lot

    Hi,
    Would you please check the post from Rainer Meier and
    Sean Maisonneuvein this thread? Hope this can also help you:
    http://social.technet.microsoft.com/Forums/windows/en-US/161692bf-fa57-4ac1-b9b8-4e550ad9c987/windows-key-x-does-not-work-in-windows-8
    Kate Li
    TechNet Community Support

  • Windows 7 / Server 2003 Roaming profile synchronization error at logoff (ntuser.pol)

    Hi all,
    I have implemented Roaming Profiles for a few test users on Windows 7 PC's (Windows Server 2003) and everything is working well aside from one error I'm seeing at logoff ('Your roaming user profile was not completely synchronized.  See the event log
    for details or contact your administrator.')
    The event log reveals event ID's 1504 and 1509.  1504 is flagging the fact that Windows cannot update the roaming profile completely.  1509 shows the following:
    'Windows cannot copy file C:\Users\jtest\ntuser.pol to location \\server\Profiles$\jtest.V2\ntuser.pol.  This error may be caused by network problems or insufficient security rights.
    DETAIL - Cannot create a file when that file already exists.
    Other observations:
    This issue occurs with all test users upon each logoff attempt except for the very first logoff, where there is no network share copy of ntuser.pol to get in the way.
    Prior to logoff, the network share copy of ntuser.pol has an older timestamp than the local copy.  This is not a cause or symptom but it leads me to believe updating the network copy of the file at logoff is normal/required behavior.
    If I delete the network share copy of ntuser.pol prior to logoff the error does not occur.  I don't suspect file permissions are the cause since I used the same user having difficulty logging off to delete the network share copy of the file.
    ntuser.dat has no problem overwriting itself upon logoff.
    I was able to repeat the problem with two windows 7 clients.
    I've been all over the usual suspects (i.e. group policies affecting roaming profiles, file/folder permissions, installed every hotfix relating to roaming profiles and folder redirection, and googled every keyword) and came up empty.  I confirmed offline
    caching for the profile share is disabled.
    Does anyone know what may be going on here?  I'd greatly appreciate a point in the right direction.  Thanks in advance.

    You could too run a process monitor to watch what happen. With filter you can easilly configure it on the server to not log everything except read|write on the profile.
    Regards, Philippe
    Don't forget to mark as answer or vote as helpful to help identify good information. ( linkedin endorsement never hurt too :o) )
    Answer an interesting question ? Create a
    wiki article about it!

  • 7310 - Problem with CIFS and Roaming Profiles since upgrade to 2010.Q1.0.2

    We have developed a strange problem with our environment which I'm pretty sure is down to the upgrade to 2010.Q1.0.2 from 2009.Q3.4.1 on our 7310 (all the previous 2009 releases had been fine) since nothing else has changed in our environment. I suspect some changes to the underlying CIFS server causing this?
    We have virtual Windows servers hosted on a VMWare VSphere cluster which are stored on the 7310 via iSCSI LUNs and also CIFS shares on the 7310 for home directories and separate CIFS shares for roaming profiles - all paths are correct in AD for each user - we also use folder redirection for XP Pro clients to force things like "Application Data", "My Documents" etc. onto the Homedir share.
    What we've been seeing recently (which only started happening after the upgrade) is a lot of failed logons to the domain for users. It looks like the usual corrupted profile problem that has plagued Windows forever ...the usual messages that it cannot log the user on with a copy of their roaming profile, and that it will use a temporary one. Some folder redirections (that are initiated via Group Policy) also don't get applied. Users don't see errors when logging off from a "good" profile, and NTUSER.DAT etc. seemingly gets written correctly - the next time they log on, around half the time the users will get these errors as described below:
    Event viewer logs show "cannot find the file specified" errors for NTUSER.DAT, along with "directory name is invalid" errors for some of the folder redirections.
    More worrying (and what I think might be the real reason for these failures) are the "offline caching is enabled on the roaming profile share" errors. I think that the client-side caching might not be working - possibly the profiles aren't getting flushed and written correctly upon logout?
    Now, unfortunately the MMC snap-in for managing shares doesn't seem to support changing the behaviour for client-side caching on the CIFS shares (as confirmed in the latest 7000-series Admin Guide on page 198).
    I've been thinking about unchecking the "Enable Oplocks" box which from the CIFS side would completely stop all client-side caching I presume?
    Is this likely to be the culprit here, or is there any other known behaviour that could be causing these errors? Is it also worth disabling "Cache device usage" altogether for the Profiles share itself?
    Can anyone help? It's a bit of a strange problem, and something I don't want to raise with Sun on our support contract just yet, since at first glance it looks like a Windows problem, but I suspect the storage could well be to blame...

    Unfortunately, this is still not working correctly...
    So, it looks like it's not related to the offline caching seeing as it all works on the Q2009 despite the warnings...
    Some more errors coming out of userenv.log on the affected Windows machines:
    USERENV(280.284) 10:07:33:230 ReconcileFile: GetFileAttributes on the source failed with error = 2
    USERENV(280.284) 10:07:33:230 CopyProfileDirectoryEx: ReconcileFile failed with error = 2
    and later:
    USERENV(280.284) 10:07:33:245 GetShareName: WNetGetConnection initially returned error 2250
    USERENV(280.284) 10:07:33:245 CopyProfileDirectoryEx: Leaving with a return value of 0
    USERENV(280.284) 10:07:33:245 RestoreUserProfile: CopyProfileDirectory failed. Issuing default profile
    ...which then forces the TEMP profiles.
    All other errors linked to this look like "file not found", "invalid path" etc. when the files are present and the paths are correct.
    Manually mapping drives using CIFS with UNC paths sporadically fails too now. We have a bunch of GPOs that map shares to users depending on their group memberships - these too are sporadically failing.
    It certainly looks to me like it could be a CIFS problem introduced in the Q2010 release.
    I'm going to raise a ticket with Sun...

Maybe you are looking for