User Profile issues

In ECC Prod,  When using the tcode ZFBSET, user A is not able to see the buttons or menu option to Choose Layout, Change Layout or Save Layout.  and User B, received the tcode at the same time as user 'A' and is able to see the layout buttons.  why User 'A' can't customize his layout but user B can.
for this I did user comparision through SUIM and found some Auth Object missing in user A
S_BDC_MONI
K_KA_RCS
Grcff_0001
C_PSTX_ART
C_MLST_BGR
B_SMAN_WPL
when i added missing auth objects manually issue is still the same.
CB

Hi Chandresh Bajpai,
You should work with your developer to make sure that  and authroization field and object is enabled for authority check for the userA and USER B.
What it means is the  custom transaction code should include a custom authority field and custom authority object to make this happen. so that you can permit one userA and restrict the other(UserB) in your case.
I think the Ztcode created is not performing the authority check.
Next put your trace on to find out for each user to restrict or based based on your trace result.
Respectfully

Similar Messages

  • Strange user profile issue

    Just visted the user discussions (as normal) and noticed that I was apprantly logged in with an account name unknown to me.
    Clicked the account name and was able to see the account properties such as email address, products and discussion activity of this other person.
    Spoke with Apple telephone support  and they directed me to leave feedback via the website. Therefore have notified Apple of this via the website feedback page.
    Anyone else see this glitch? Anyone else I ought to notify?

    Hi nzh99!
    Additional discussion in this Thread Has anyone else got signed in as someone else?
    ali b

  • Use old domain controller AD user profile with new domain (profile changed)

    Dear All,
    I have built Win Server 2012 for Domain migration from Windows Server 2003 to Windows Server 2012. I have tested all thing on VMware including user creation and tested Domain join using power shell for Win 7 and .VBs batch file for Win XP computers all thing
    are working fine.
    Let 1st I introduce my current environment. I have existing Win Server 2003 domain controller (abc.com) with 130 client computers and 200 users I am going to plan migrate my current environment to Win server 2012 Domain (xyz.com) Keep in mind that Domain
    name is changed but Domain Controller (Server) names are same i.e MY-PDC . I have tested domain join on multiple computers using existing clone of client computers and create all existing users using .csv file and power shell with required
    credentials and OU.I am facing the user profile issue when I join domain and login with existing user which was previously the user of same computer the required profile does not login and computer creates new user profile in Document and Settings section
    of Win XP.
    I need your expert opinions because copy old profile data and create new outlook profile for each user is a big headache for any one. Hope you people can understand and help me in this issue.
    Please provide best answer and result on priority I will be thankful to all of you.
    Regards,
    Arsalan

    Hi Arsalan,
    Please check if USMT can help you to achieve this target.
    User State Migration Tool 4.0 User's
    Guide
    Meanwhile, please also refer to following articles and check if can help you.
    How
    to Migrate Windows User Profile to New Account
    Keeping user old domain profile
    Please Note: Since the web site is not hosted by Microsoft, the link may change without notice. Microsoft
    does not guarantee the accuracy of this information.
    If anything I misunderstand or any update, please don’t hesitate to let us know.
    Hope this helps.
    Best regards,
    Justin Gu

  • User Profile Restriction

    Hi,
    I am currently working with a small company (around 100 users), windows 8.1 are being deployed via SCCM.
    Users will have a fresh Windows 8.1, with C: and D: (where user profiles are located), and login with their Domain Account (Domain users rights).
    We decided to allow users to install/uninstall software of their own, and take advantage of Software Center from SCCM and being able to run program as admin.
    Therefore, we implemented a GPO which push a "Local Admins" groups on AD into Local Administrators on local clients. This allows users to have all kinds of control but there is the issue.
    A new users could essentially login to an other employees computer and take control of their user profile.
    I have tried pushing "Local Admins" into Power Users on local client instead, this solves the user profile issues but at the same time limits alot of install/uninstall features, while office 365 deployment from sccm stops working.
    My question is:
    Is there a way to stop users from gaining access to other users' profile while users are part of "Local Admins" which is a member of Local Administrators ? (I could remove Local Administrators from my Profile Folder Permission but I doubt this
    is a good practice)
    Thank you in advance.
    Jono

    Thanks Jesper, that is exactly what I was going at.
    I would like to leave profile with just System and Creator with full access.
    Just had a look at GPO for filesystem, seems like its computer based not user based, also I cant apply to general users but only specific users folder e.g. firstname.lastname.
    Say if I have
    D:\Profiles\Default
    D:\Profiles\User1
    D:\Profiles\User2
    etc
    Would I be able to enforce a GPO which removes Administrator access (leaving System and Creator only) on each user profile but default ?
    Sorry I cant seems to find a way to do that.
    Regards,
    Jono
    Jonathan

  • I am having a serious issue with all my apps disappearing/not working- user profiles

    i will list the things i have done in the past 24 hours, hopefully one of you knows what happened...thank you in advance
    first off, my situation- was that i bought a macbook pro(about a year ago) with lion or snow leopord it is software 10.7.5 i dont know what the guy did but when he sent me the computer the username was off and so was the home folder, i changed the username with ease but the home folder stayed tbd and i couldnt figure out how to change it. well it finally got on my nerves enough from looking at it that i wanted to change it today that put me into the situation i am in. Here is what i have changed:
    -I added a second profile as to see if i could change the home emblem file named tbd to what i wanted.  This worked or so i thought. 
    - then shared and permissions showed tbd(me) so i wanted to change that also so i went into systempreferences>users and groups>login options>network account server and clicked join/open directory utility.  this is where i believe i went wrong i read in a forum that this is what you needed to change to make it look how i wanted it to.   under active directory it still had this guys name gtmb04_evan so i changed it to my name like the forum said, well his name is back up even though i changed it. and this is when everything stopped working.
    symptoms:  all my applications act like they are newly downloaded and make me set them up. 
    - my home screen is nothing like it was before, no apps are on the desktop and the bar along the bottom only has the basic ones
    - i tried to take the second username off of administrater which made me restart my cp(all my stuff looked normal until this, but didnt work) 
    -my launchpad wasnt showing any apps they simply looked blank
    - my firefox along with many other apps wouldnt even start prior to reseting and gave me a message with something like couldnt find or access user profile( i forget the entire message)
    please please help me, i hate this right now and have no idea what to do, all my files are still under my name, that when i thought i changed tbd- it apparently just made a new folder under users which didnt show up until the restart, i do not have a time machine set up on this computer because i hated the lion setup and couldn't get it to operate correctly

    i had one mac and spilt water on it, the motherboard fried so i had to buy a used one...being in school and all. it is a MC375lla
    Model Name:
    MacBook Pro
      Model Identifier:
    MacBookPro7,1
      Processor Name:
    Intel Core 2 Duo
      Processor Speed:
    2.66 GHz
      Number of Processors:
    1
      Total Number of Cores:
    2
      L2 Cache:
    3 MB
      Memory:
    8 GB
      Bus Speed:
    1.07 GHz
      Boot ROM Version:
    MBP71.0039.B0E
      SMC Version (system):
    1.62f7
      Hardware UUID:
    A802DE22-1E57-5509-93C5-27CEF01377B7
      Sudden Motion Sensor:
      State:
    Enabled
    i do not have a backup of it, so i am thinking about replacing my old hard drive from the water damaged into this one, not even sure if that would work, but it did not seem to be damaged, as i recovered all the files i wanted off of it to put onto this mbp
    the previous owner didnt have it set to boot, they had all their settings left on it and tried to edit all the names on it, had a bunch of server info and printers etc crap on it.  i do not believe he edited the terminal system though--he doesnt seem to terribly bright(if thats possible)
    tbh i hate lion compared to the old one i had, this one has so many more issues-overheating,fan noise, cd dvd noise
    if you need screenshots or data of anything else as away
    [problem is i do not want to start from scratch if there is a chance of fixing it, this one did not come with disks or anything like my first. so i dont even know if i could, and how it sets now i am basically starting from scratch, because now all my apps are reset but working, i am hoping to get my data back somehow though, i lost all of my bookmarks and editing all my apps and setting again would be a pain

  • Windows Server 2012 Login Issue "The User Profile Service service failed the sign-in. User profile cannot be loaded."

    Whenever I try to login to our Exchange Server, I receive the following error:
    "The User Profile Service service failed the sign-in. User profile cannot be loaded."
    The issue affects more than one user.
    Relevant Info:
    Server Version: 2012 Datacenter
    Exchange Version: 2013
    The Exchange server is virtualized.
    What I've tried:
    1) Remote Desktop from a workstation on the network
    2) Remote Desktop from Virtual Machine Manager
    3) Connect via console from Virtual Machine Manager
    4) Accessing the server via Computer Management and adding my user account to Allow Login via Remote Desktop
    5) Creating a new user account for myself by copying the account of a user who can get in
    6) Rebooting
    I'd appreciate any suggestions.

    Hi Aaron,
    I would suggest you to check the event log .
    Maybe this issue due to the permission of profile folder , please refer to the following link :
     http://helgeklein.com/blog/2013/09/error-message-explained-user-profile-service-failed-logon/
    Best Regards
    Elton Ji
    We
    are trying to better understand customer views on social support experience, so your participation in this
    interview project would be greatly appreciated if you have time.
    Thanks for helping make community forums a great place.

  • Windows 7 Event ID 1530 User Profile Service Issues

    I have a new Lenovo Thinkpad W510 running W7 32-bit.
    I get Event ID 1530 warnings at every shutdown.  Twice I have not been able to boot into my user profile and I get a "Configuring your desktop" message and put into a termporary profile and Event Viewer shows Errors for Event ID's 1508, 1511, 1515 and 1502.  In each of the two cases, when I rebooted, I was able to get into my regular user profile.  However, I take this issue seriously and would like to resolve it.
    First of Two Event ID: 1530 Warnings:
    Description:
    Windows detected your registry file is still in use by other applications or services. The file will be unloaded now. The applications or services that hold your registry file may not function properly afterwards. 
     DETAIL -
     10 user registry handles leaked from \Registry\User\S-1-5-21-576122558-3429696690-2773284673-1004:
    Process 6204 (\Device\HarddiskVolume2\Program Files\Common Files\Lenovo\tvt_reg_monitor_svc.exe) has opened key \REGISTRY\USER\S-1-5-21-576122558-3429696690-2773284673-1004
    Process 6204 (\Device\HarddiskVolume2\Program Files\Common Files\Lenovo\tvt_reg_monitor_svc.exe) has opened key \REGISTRY\USER\S-1-5-21-576122558-3429696690-2773284673-1004
    Process 1752 (\Device\HarddiskVolume2\Windows\System32\spoolsv.exe) has opened key \REGISTRY\USER\S-1-5-21-576122558-3429696690-2773284673-1004\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings
    Process 1352 (\Device\HarddiskVolume2\Windows\System32\svchost.exe) has opened key \REGISTRY\USER\S-1-5-21-576122558-3429696690-2773284673-1004\Software\Policies\Microsoft\Windows\CurrentVersion\Internet Settings
    Process 1752 (\Device\HarddiskVolume2\Windows\System32\spoolsv.exe) has opened key \REGISTRY\USER\S-1-5-21-576122558-3429696690-2773284673-1004\Software\Policies
    Process 1752 (\Device\HarddiskVolume2\Windows\System32\spoolsv.exe) has opened key \REGISTRY\USER\S-1-5-21-576122558-3429696690-2773284673-1004\Software\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN
    Process 1752 (\Device\HarddiskVolume2\Windows\System32\spoolsv.exe) has opened key \REGISTRY\USER\S-1-5-21-576122558-3429696690-2773284673-1004\Software
    Process 1752 (\Device\HarddiskVolume2\Windows\System32\spoolsv.exe) has opened key \REGISTRY\USER\S-1-5-21-576122558-3429696690-2773284673-1004\Software\Microsoft\Windows\CurrentVersion\Internet Settings
    Process 1752 (\Device\HarddiskVolume2\Windows\System32\spoolsv.exe) has opened key \REGISTRY\USER\S-1-5-21-576122558-3429696690-2773284673-1004\Software\Microsoft\Windows\CurrentVersion\Internet Settings
    Process 1352 (\Device\HarddiskVolume2\Windows\System32\svchost.exe) has opened key \REGISTRY\USER\S-1-5-21-576122558-3429696690-2773284673-1004\Software\Microsoft\Windows\CurrentVersion\Internet Settings
    Second of Two Event ID: 1530 Warnings:
    Description:
    Windows detected your registry file is still in use by other applications or services. The file will be unloaded now. The applications or services that hold your registry file may not function properly afterwards. 
     DETAIL -
     1 user registry handles leaked from \Registry\User\S-1-5-21-576122558-3429696690-2773284673-1004_Classes:
    Process 1752 (\Device\HarddiskVolume2\Windows\System32\spoolsv.exe) has opened key \REGISTRY\USER\S-1-5-21-576122558-3429696690-2773284673-1004_CLASSES
    I don't have any applications open at shutdown per Windows Explorer.  tvt_reg_monitor_svc.exe is a Lenovo application for monitoring registry activities.  I don't know if that application is involved with my problems, but am suspicious.
    Any assistance would really be appreciated.

    I have a solution. It's not pretty!
    In the process I lost some user data (recent docs) + the ability to create recent docs... I ticked and unticked the relevant checkboxes, restarted, and the 'recent programs' list began to re-populate.
    There are some people who are having issues with auto-reconnection failing - this is not for you.
    This is for people that don't like to see information events arguably incorrectly
    identified as warnings.
    The fix?
    Computer mgmt has the data collector sets (under performance). 
    Under Event Trace Sessions you'll find EventLog-System, containing all the event log 'system' sources (I think).
    You won't have permission to change this as an admin. You need to be the sys. I achieved this by using the sticky keys event-handler to launch taskmgr (I was testing alternatives to diskpart scripts to load a VHD @ startup)
    REG ADD "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\sethc.exe" /v Debugger /t REG_SZ /d "c:\windows\taskmgr.exe"
    running that at a cmd prompt will allow you to 5-tap shift to load taskmgr- as SYSTEM (god).
    from here run compmgmt.msc, stop eventlogsys, remove the wlan-autoconfig source, et voile.

  • User profile cannot be loaded (not same as similar-sounding issues)

    First, I have read other posts with similar-sounding problems, but they are different. . . .
       We have a new Lenovo ThinkPad T510 laptop running Windows 7 and connected to a network domain.  A new user usually
    can log into our network on a new computer, and a new account is created for them. 
        On this computer, users whose accounts were set up initially (first day) can log in just fine.  However, no user
    that does this after the initial setup (e.g., a couple of days later) can log in.  We get the following error: "User
    Profile Service service failed the login.  User profile cannot be loaded." 
        We have other, identical laptops also running Windows 7 that do not have this problem.  We tried restoring and
    then reinstalling from scratch.  Nothing changed.  The weird thing is that it appears to be time-related, in that
    users who log in for the first time early-on are fine; ones that login after that run into the problem. 
         I have read many articles on this error message, but none of them seem to apply.  For example, we are not
    logging on for a second time (issue with temporary profile, need to delete bad one). 
        Lenovo support will not help, because it does not appear to be hardware-related. 
         Does anyone know how to fix this?
                     Thanks, Alan

    http://www.vistax64.com/tutorials/130095-user-profile-service-failed-logon-user-profile-cannot-loade...

  • MS14-022 and User Profile related issues

    Hi all.
    Since applying the patches in MS14-022 on Friday I've been having issues with certain aspects of two specific web applications.
    Our intranet home page will not load and generates a large number of the following entries in the ULS log...
    05/20/2014 07:53:36.54 
    w3wp.exe (0x146C)                       
    0x1504
    SharePoint Server             
    General                       
    0
    Medium  
    Constructed a new async cache named Profile Property Cache
    0f15c23c-64b1-42bc-bdd8-f0a84cf358ba
    05/20/2014 07:53:36.60 
    w3wp.exe (0x146C)                       
    0x1504
    SharePoint Portal Server      
    User Profiles                 
    g11n
    High    
    UserProfileApplicationProxy.InitializePropertyCache: System.Security.Cryptography.CryptographicException: Object already exists.       at Microsoft.Office.Server.UserProfiles.MossClientBase`1.ExecuteOnChannel(String operationName,
    CodeBlock codeBlock)     at Microsoft.Office.Server.UserProfiles.ProfilePropertyServiceClient.ExecuteOnChannel(String operationName, CodeBlock codeBlock)     at Microsoft.Office.Server.UserProfiles.ProfilePropertyServiceClient.GetProfileProperties()    
    at Microsoft.Office.Server.Administration.UserProfileApplicationProxy.RefreshProperties(Guid applicationID)     at Microsoft.Office.Server.Utilities.SPAsyncCache`2.GetValueNow(K key)     at Microsoft.Office.Server.Utilities.SPAsyncCache`2.GetValue(K
    key, Boolean asynchronous)     at Microsoft.Office.Server.Adminis...
    0f15c23c-64b1-42bc-bdd8-f0a84cf358ba
    05/20/2014 07:53:36.60*
    w3wp.exe (0x146C)                       
    0x1504
    SharePoint Portal Server      
    User Profiles                 
    g11n
    High    
    ...tration.UserProfileApplicationProxy.InitializePropertyCache()
    0f15c23c-64b1-42bc-bdd8-f0a84cf358ba
    05/20/2014 07:53:36.60 
    w3wp.exe (0x146C)                       
    0x1504
    SharePoint Portal Server      
    User Profiles                 
    cm6y
    High    
    User Profile Application Proxy failed to retrieve partitions from User Profile Application: Microsoft.Office.Server.UserProfiles.UserProfileApplicationNotAvailableException: No User Profile Application available to service the request. Contact your farm administrator.    
    at Microsoft.Office.Server.Administration.UserProfileApplicationProxy.get_ApplicationProperties()     at Microsoft.Office.Server.Administration.UserProfileApplicationProxy.get_PartitionIDs()     at Microsoft.Office.Server.Administration.UserProfileApplicationProxy.IsAvailable(SPServiceContext
    serviceContext)
    0f15c23c-64b1-42bc-bdd8-f0a84cf358ba
    The same is logged when trying to view the PWA site of our Project Server 2010 web app.
    All other web apps are responding as expected and, strangely enough, other pages and sites in the intranet and PWA Site Collections are fine too.
    Has anyone any ideas as to why this problem exists and why only certain pages/sites are affected?
    The User Profile Service is responding on all 4 servers in the farm and User Profile Sync's are running on time with no issues.
    I've searched and found similar issues but there are no issues with our SharePoint Web Services site authentication settings which is proposed as a resolution in the following article even though our User Profile Services all seem fine...
    http://blogs.technet.com/b/manjesh/archive/2011/02/06/sharepoint-2010-unable-to-start-the-user-profile-synchronization-service.aspx
    Thanks in advance.

    Try below:
    http://torydouglas.com/?p=88
    http://blogs.technet.com/b/steve_chen/archive/2010/10/13/troubleshooting-user-profile-sync-issues-on-sharepoint-2010.aspx
    http://technet.microsoft.com/en-in/library/gg750254%28v=office.14%29.aspx
    http://technet.microsoft.com/en-in/library/gg750257%28v=office.14%29.aspx

  • Issue in mapping custom user profile property with AD field in SharePoint 2013

    Hello,
    I am trying to map a custom user profile property i created "ADSecurityGroups", type - String, Multivalue with the AD propoerty named "memberOf" via powershell.
    UserProfile Service is up and running, and so is the Synchronization Service. User executing the powershell has full control on the User Profile Service and is the farm administrator.
    Following is the code snippet i grabbed from the internet which i am trying to execute.
    Add-PSSnapin Microsoft.SharePoint.Powershell -ErrorAction "SilentlyContinue" 
    $url = "http://<servername:port>/" #URL of any site collection that is associated to the user profile service application. 
    $spsProperty = "ADSecurityGroups" #Internal name of the SharePoint user profile property 
    $fimProperty = "memberOf" #Name of the attribute in FIM/LDAP source 
    $connectionName = "UserProfileSyncConnection" #Name of the SharePoint synchronization connection
    $site = Get-SPSite $url
    if ($site) 
        Write-Host "Successfully obtained site reference!"
    else 
        Write-Host "Failed to obtain site reference"
    $serviceContext = Get-SPServiceContext($site)
    if ($serviceContext) 
        Write-Host "Successfully obtained service context!"
    else 
        Write-Host "Failed to obtain service context"
    $upManager = new-object Microsoft.Office.Server.UserProfiles.UserProfileConfigManager($serviceContext)
    if ($upManager) 
        Write-Host "Successfully obtained user profile manager!"
    else 
        Write-Host "Failed to obtain user profile manager"
    $synchConnection = $upManager.ConnectionManager[$connectionName]
    if ($synchConnection) 
        Write-Host "Successfully obtained synchronization connection!"
    else 
        Write-Host "Failed to obtain user synchronization connection!"
    Write-Host "Adding the attribute mapping..." 
    $synchConnection.PropertyMapping.AddNewMapping([Microsoft.Office.Server.UserProfiles.ProfileType]::User, $spsProperty, $fimProperty) 
    Write-Host "Done!"
    The script is failing with the following error - 
    new-object : Exception calling ".ctor" with "1" argument(s): "UserProfileApplicationNotAvailableException_Logging :: 
    UserProfileApplicationProxy.ApplicationProperties ProfilePropertyCache does not have 2f9bece3-f39a-498d-874f-145b1470e49c"
    At E:\ADSync.ps1:29 char:14
    + $upManager = new-object Microsoft.Office.Server.UserProfiles.UserProfileConfigMa ...
    + ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
        + CategoryInfo          : InvalidOperation: (:) [New-Object], MethodInvocationException
        + FullyQualifiedErrorId : ConstructorInvokedThrowException,Microsoft.PowerShell.Commands.NewObjectCommand
    Please let me know if i am missing anything.
    Also advise if this is the correct way to map user profile attribute in SP 2013 ?
    Thanks -
    Girish

    ok no worry,
    try to run the below as it is, i m just copying code from your post.
    Add-PSSnapin Microsoft.Sharepoint.Powershell
    [System.Reflection.Assembly]::LoadWithPartialName("Microsoft.Office.Server")
    [System.Reflection.Assembly]::LoadWithPartialName("Microsoft.Office.Server.UserProfiles")
    #Function to get servicecontextfunction Get-SPServiceContext([Microsoft.SharePoint.Administration.SPServiceApplication]
    $profileApp)
    $profileApp = @(Get-SPServiceApplication | ?
    {$_.TypeName -eq "MR_DEV_UserProfileServiceApplication"})[0]
    return [Microsoft.SharePoint.SPServiceContext]::GetContext
    ($profileApp.ServiceApplicationProxyGroup,
    [Microsoft.SharePoint.SPSiteSubscriptionIdentifier]::Default)
    $url = "http://sp-appdev:2013" #URL of any site collection that is associated to the user profile service application.
    $spsProperty = "RoomNumber" #Internal name of the SharePoint user profile property
    $fimProperty = "extensionAttribute2" #Name of the attribute in FIM/LDAP source
    $connectionName = "LDAP Sync" #Name of the SharePoint synchronization connection
    #Get UserProfileManager
    $serviceContext = Get-SPServiceContext
    if ($serviceContext)
    {Write-Host "Successfully obtained service context!"}
    else
    {Write-Host "Failed to obtain service context"}
    $upManager = new-object Microsoft.Office.Server.UserProfiles.UserProfileConfigManager($serviceContext)
    if ($upManager)
    {Write-Host "Successfully obtained user profile manager!"}
    else
    {Write-Host "Failed to obtain user profile manager"}
    $synchConnection = $upManager.ConnectionManager[$connectionName]
    if ($synchConnection)
    {Write-Host "Successfully obtained synchronization connection!"}
    else
    {Write-Host "Failed to obtain user synchronization connection!"}
    Write-Host "Adding the attribute mapping..."
    $synchConnection.PropertyMapping.AddNewMapping([Microsoft.Office.Server.UserProfiles.ProfileType]::User, $spsProperty, $fimProperty)
    Write-Host "Done!"
    Please remember to mark your question as answered &Vote helpful,if this solves/helps your problem. ****************************************************************************************** Thanks -WS MCITP(SharePoint 2010, 2013) Blog: http://wscheema.com/blog

  • User Profile Service Application Sync issue.

    Hi,
    I have created user profile in two different environment and uses the same account ,same ou is selected and same filter is set.
    but the no of user profile in each environment is different from the other.
    I have checked the filter order also.
    Is there any way to check why it is different from different environment.
    Thanks
    Sudan

    You'll get some differences based on which service accounts have logged on. Anyone who isn't included in the filter but does log onto SharePoint will also get an entry in the sytem.
    Your best shot on a definitive answer is to export the list of profiles from the UPS using powershell from both environments and then compare the lists for additions/omissions.

  • I have a seemingly endless number of user profiles in my manager, when there should be the default, they all have some random hash and finish in "....hat" is this an issue?

    Ran my profile manager to create a second user profile for work and noticed there were a ton of profiles in there. all with seemingly random hashes, they all finished in |....hat| not sure what to make of it.

    Marcelo,
    I've been trying to load hundreds of pictures onto an SD card for digital photo frame and have the exact same problem. This also happens with a USB flash drive.
    Found a solution - stuff the files - copy the stuffed file onto card and unstuff at destination. Give it a try - would love to know if it works for you as well.

  • Huge ntuser.dat.LOG1 since upgrade to Windows 8.1 prohibits roaming of user profile

    Hello,
    a few days ago my PC (part of our domain) first started to have problems with my user profile. Our domain uses roaming profiles with a size limit of 30MB. My user.dat has a size of 12.5MB. Up to now this did not cause any problems (and does not cause any for
    most users of our domain having a user.dat of similar size). However, after upgrading to Windows 8.1 I repeadly have problems with my profile exceeding its maximum size. After checking my profile, I found a ntuser.dat.LOG1 with 12,5MB in size and a ntuser.dat.LOG2
    of 2MB. As far as I know these files are used to store temporary transactions for the user.dat. But why are they this large? Together they almost completely fill the profile. As an interesting side node the last modification of ntuser.dat.LOG1 dates back more
    then seven days.
    What is further puzzling me: ntuser.dat.LOG1 and ntuser.dat.LOG2 are not synchronized with the roaming profile on the server. At least they are not on the server. However there used to be much smaller versions of these files which could have been transfered
    before the profile size exceeded its limit. Since these file seem not to be part of the roaming part of the profile, they should not count for the roaming profile size. However, they definitely do. Neglecting the registry files the largest file in my profile
    is less than 500kb and there are very few files of this size. I checked locally as well as on our server.
    Deleting the local profile and starting fresh using the roaming profile from our server does work for a day or two but then I run into the same problem. Especially, loosing all local profile data is inconvenient. I could start a new with a completely new
    profile, but I am not convinced that it is a profile issue. In our organisation my computer is one of the first to move to Windows 8.1. Since my profile worked without problems for years now, I am worried that I ran into a Windows 8.1 issue. As users normally
    start to complain about a roaming profile not synchronizing only after their local copy broke, I'd like to make sure that this is a isolated issue.
    Anyone else experiencing similar issues? Any hint on how to solve the problem?
    Regards,
    Oliver

    No, I did not find a solution. However, we moved away from roaming profiles and rely on folder redirection only. That works for us. Since we can redirect the most important folders there is no more need for roaming profiles (at least in our case).

  • Unable to push user profiles to AD groups with Profile Manager since upgrade to Server v3

    Since upgrading our OS X Mac server from 10.8.5 to 10.9.1, and OS X Server app to v3 (now 3.0.2) I have been unable to push or modify user profiles to AD groups (or AD users) using Profile Manager. This was working fine on OS X 10.8.5. Pushing device profiles is still working OK after the upgrade.
    From what I can see from the logs on the client side and server side, it seems related to a problem with the mdm authtoken.
    In the client console I can see this entry:
    27/01/14 14:30:15.844 mdmclient[38557]: *** ERROR *** [Agent:636102071] Unable to proceed with connection to: https://ourserver.ourdomain/devicemanagement/api/device/mdm_connect (com.apple.mdmconfig.mdm) because don't have valid MDM AuthToken
    On the server, in the php.log I can see the corresponding attempt to authenticate:
    1::Jan 27 14:29:50.930 [158] <192.168.28.171> {require_once (mdm_checkin.php:11)} vvvvvvvvvvvvvvvvvvvvvvvvvvvvvvv - PUT mdm_checkin
    0::Jan 27 14:29:50.931 [158] <192.168.28.171> checkin: 'UserAuthenticate'
    1::Jan 27 14:29:50.936 [158] <192.168.28.171> {Target_for_incoming_request (target.php:209)} Found target NETWORK LS: <User[156]@ourclientmachine>
    0::Jan 27 14:29:50.937 [158] <192.168.28.171> {LabSession_validate_auth_token (mdm_checkin.php:22)} Failed auth for target NETWORK LS: <User[156]@Device[1697]>, incoming_request={
    0::Jan 27 14:29:50.937 [158] <192.168.28.171>   'MessageType'=>'UserAuthenticate',
    0::Jan 27 14:29:50.937 [158] <192.168.28.171>   'UDID'=>'17aff5c5a40f51acbbd78023d0028c80',
    0::Jan 27 14:29:50.937 [158] <192.168.28.171>   'UserID'=>'A5EA25B7-7CCD-4EF4-B240-F23DED275EEC'
    0::Jan 27 14:29:50.937 [158] <192.168.28.171> }
    1::Jan 27 14:29:50.965 [158] <192.168.28.171> {SendFinalOutput (mdm_checkin.php:145)} Sent Final Output (407 bytes)
    1::Jan 27 14:29:50.965 [158] <192.168.28.171> ^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^ - /devicemanagement/mdm/mdm_checkin
    0::Jan 27 14:29:50.965 [158] <192.168.28.171> {SendFinalOutput (mdm_checkin.php:145)} Completed in 34ms | 200 OK [https://ourserver.ourdomain/devicemanagement/api/device/mdm_checkin]
    So I can see there is a failure to authenticate, but don't really know how to troubleshoot this further. Or maybe this is just a bug in the new server app?
    I have tried to remove and re-enroll clients in Profile Manager but no joy there.
    In the client's Keychain I can see an MDM user AuthToken linked to the correct user account.
    Thanks in advance for any help or suggestions

    I just wanted to update my post, as this issue for me is resolved.
    I uninstalled and reinstalled the Server.app on our Mac server, since then I've been able to push profiles to AD Users and Groups. I guess that in my case the Server app got into a bit of a mess when it was upgraded to v3.
    Now the next headache I have is that my AD Groups which are displayed in Profile Manager are not syncing any recent changes. I think I'm probably seeing the same issue as described in this post
    https://discussions.apple.com/message/25420919#25420919

  • How To Properly Delete a User Profile on Windows 7 in a Domain environment

    I have not been able to find an answer that matches the issue I'm facing. I had recently setup a laptop for a user and soon after, he was experiencing issues that I thought might be profile related. So, I did what always worked for me on prior versions of
    Windows without any fuss or side affects.
    Logged in under the local Administrator account, I went into: System Properties>User Profiles>Settings and removed the user profile from their. When I do that, I get an error message:
    Profile Error
    Profile not deleted completely. Error - A required privilege is not held by the client
    Ok, no problem I think. I just need to delete the user's profile directory under the users folder right? So I do this and figure when I try to log in again as the user that a new profile will be created. However, this is not what happens exactly. I login
    with the user credentials and it logs in successfully. However, I get a pop saying:
    You have been logged on with a temporary profile
    You cannot access your files and files created in this profile will be deleted when you log off. To fix this, log off and try logging on later.
    Please see the event log for details or contact your system administrator
    So my question is; why did the profile not delete completely after both deleting the user profile under System Properties and after deleting the actual profile directory? What did I miss and what is the proper method of deleting a user profile completely
    without running into these other issues?

    Hi Womprat,
    According to your description, I understand that you want to delete user profile but display an error in Windows 7.
    Please use other user (with administrator privileges) login this computer, then open Properties for Computer--->Advanced system setting--->Settings for User Profiles, then select the profile you want to delete.
    More details about Delete a user account, please refer to:
    http://windows.microsoft.com/en-us/windows7/delete-a-user-account
    Additional, please contact Windows 7 IT Pro Team so that you can get more professional suggestions. For your convenience:
    https://social.technet.microsoft.com/Forums/en-US/home?category=w7itpro&filter=alltypes&sort=lastpostdesc
    Best regards,
    Allen Wang

Maybe you are looking for

  • Scheduling a web intelligence report with year and month in report name

    How to schedule a webi report so that it's name contains the schedule date in format "Reportname_YYYY_MM".I selected the option Date And Time in Formats and destinations tab under scheduling options but it displays system time as well.I need only in

  • DVD remote controls work differently on a Mac?

    I created an SD DVD in DVD Studio Pro 4, and when I tested it on a standard TV DVD player, the remote controls work just as they should. But, when I play it on a Mac computer using a remote, it doesn't work the same. For example, if I have a video tr

  • How to connect from sql*plus to Sql Server

    Dear Profs. How I can connect from sql*plus v8 on my local pc(Win XP) to Sql Server Express 2005 light weight installed in same local pc ? Thanks, Ahmed.

  • Apply Template to existing page problems

    I've coinstructed a Dreamweaver Template (dwt) that I want to apply to existing pages in a web site.  I have onle two editable regions defined right now, "doctitle" and "propertyinfo".  When I try to attach my template to a page,  [modify, templates,

  • Sql Error in Select statement when doing subquery

    Hi, I am trying to see what the error is in the subquery part of the select statement. Subquery should be fetching the safety_stock_quantity based on the MAX(effectivity_date). Any suggestions? SELECT kbn.last_update_date,itm.segment1,itm.description