Using Windows Group Policies in User policy package

I've been using the gp under User Config > Windows Settings > Internet Explorer Maintenance > Connection > Proxy Settings in the User policy Package for a while now to prevent students from getting to https sites.
There are some sites though that we had to the Exception list which has worked fine until I added a new one which is: https://secure.ontariocolleges.ca/sso/auth
When this one is added it seems the gp doesn't work at all, ie students can go to any https site they want, when I remove this exception they're blocked again.
Someone else told me there was a character limit to the exception list so I tried removing all other exceptions except the one above and it still doesn't work.
I am unable to find any other info on this. Does anyone have any ideas?
Thanks.

Thanks for answering your own question :>
I'm sure the answer will help others.
Craig Wilson - MCNE, MCSE, CCNA
Novell Support Forums Volunteer Sysop
Novell does not officially monitor these forums.
Suggestions/Opinions/Statements made by me are solely my own.
These thoughts may not be shared by either Novell or any rational human.
"jdwall" <[email protected]> wrote in message
news:[email protected]..
>
> I think I found the problem, I replaced
> https://secure.ontariocolleges.ca/sso/auth with
> https://*.ontariocolleges.ca and that resolved it.
>
>
>
>
> jdwall;1693410 Wrote:
>> I've been using the gp under User Config > Windows Settings > Internet
>> Explorer Maintenance > Connection > Proxy Settings in the User policy
>> Package for a while now to prevent students from getting to https sites.
>>
>>
>> There are some sites though that we had to the Exception list which has
>> worked fine until I added a new one which is:
>> https://secure.ontariocolleges.ca/sso/auth
>>
>> When this one is added it seems the gp doesn't work at all, ie students
>> can go to any https site they want, when I remove this exception they're
>> blocked again.
>>
>> Someone else told me there was a character limit to the exception list
>> so I tried removing all other exceptions except the one above and it
>> still doesn't work.
>>
>> I am unable to find any other info on this. Does anyone have any
>> ideas?
>>
>> Thanks.
>
>
> --
> jdwall
> ------------------------------------------------------------------------
> jdwall's Profile: http://forums.novell.com/member.php?userid=2475
> View this thread: http://forums.novell.com/showthread.php?t=353133
>

Similar Messages

  • ZENworks 6.5 SP1 - User Policy Package problems

    I have ZENworks 6.5 SP1. I am trying to apply user policy packages to
    control the desktop. We are using Windows XP and from what I can tell,
    everything is setup correct, but it doesn't apply at the desktop. We do not
    have any AD in our system.
    This is the first time we have tried to do this.
    Any ideas would be apprecitated.

    Rhonda Richardson wrote:
    > Jared Jennings wrote:
    >> rrichardson37,
    >>
    >>> I don't want the policies to apply to
    >>> workstaion because when I (admin) login to the workstation, I want to
    >>> have 'Admin' policies not 'User' policies.
    >>
    >> Ok no problem.
    >> Is this with groupPolicies?
    >> You are installing the zfdagent.msi correct?
    >>
    >
    > Yes, this is with group policies. I haven't worked on the W2K side yet,
    > I am just starting with WXP. the ZEN agents are supposed to be
    > installed, I'll have to double check (I didn't build the test network).
    > I'll double check and report back.
    I have double checked, yes, the 6.5 Agents are installed on the box. As
    a little additional information, just to check, I added a Windows
    Desktop Preferences setting to the same policy and those settings are
    getting to the PC with no problem.
    Also, today, when I go in and try to edit the group policy, I get an
    error "The Group Policy that you are attempting to edit is currently
    being edited by another user. Please try again later."
    I deleted the policy today (after I got the error) and tried to
    recreate, just to see if I missed a step. I get this same error when I
    try to edit the group policy. I restarted all workstation on my test
    network, including the management station I am building the policy from.

  • Several Group policies on user

    Is it possible to have several windows group policies on a user?
    If it is a general gpo associated to the container, and a another to a user
    or a group a user is member of, which one will be the effective? The closest
    to the user or a mix of all of them?
    I have done like that and get strange errors.
    /Leif

    Thanks Rolf!
    Exactly the answer I wanted.
    Must also thank you again for the tip on how to distribute certificates with
    GPO.
    It works great!
    Regards
    Leif
    "Rolf Lidvall" <[email protected]> skrev i meddelandet
    news:W1ike.670$[email protected]..
    > Group Policies are additive and they apply in the order
    > you have set in your Search Policy Search Order:
    > http://www.novell.com/documentation/...k.html#a777rvi
    > "Additive Group Policies:
    > Group policies are now additive. This means that settings from multiple
    > Group policies are cumulatively effective, rather than individually.
    > Settings from multiple Group policies can affect users and workstations.
    > Policies start with the local Group policy settings and are applied in
    > reverse of the policy search order. This means that a setting in a policy
    > applied first has lowest priority and its value is overwritten by any
    > other
    > policy with the same setting.
    > Security settings are not additive; they are set by the last effective
    > policy."
    >
    > See also:
    > http://www.novell.com/documentation/...a/a779n8h.html
    >
    > Regards
    > Rolf Lidvall
    > Swedish Radio (Ltd)
    > NSC SysOp
    >
    >

  • Using windows vista with two users and I can only open books with adobe digital editions on one account?

    using windows vista with two users and I can only open books with adobe digital edition

    You must authorize the second computer with the same Adobe ID.
    There are sometimes issues with this registration: if you have them ....
    Sometimes ADE gets its registration/activation confused and in a semi-authorized state.
    Uninstalling and reinstalling does not help.
    Unfortunately, it often then gives misleading error messages about what is wrong.
    A common incorrect message informs you that the ID is already in use on another computer and cannot be reused.
    This can often be resolved by completely removing any authorization using ctrl-shift-D to the Library screen on ADE (cmd-shift-D if on Mac).
    Restart ADE, and then reauthorize with your (old) Adobe ID.

  • Using Windows Server 2012 per-User RDS CAL on Server 2008 R2 Session Host

    I have a Remote Desktop Licensing Server setup on my domain controller running Windows Server 2012 R2. I have installed a
    ’Windows Server 2012 Remote Desktop Services per-User CAL’ there and activated the licensing server already.
    Currently I use ONLY Windows Server 2008 R2 machines as RDS Session Hosts (in the future I plan to transition them to 2012 R2, hence the CAL I bought is
    already in the newest version).
    I have already configured my WS 2008 RDS Session Hosts: set
    Per-User licensing mode and specified license server address. The connectivity between my Session Host(s) and my License Server seems to be ok as the
    Remote Desktop Session Host Configuration window on the Session Host correctly lists the 2012 per-user
    license (CAL installed on server) from the license server.
    On the License Server I can also see event logs entries (in
    Microsoft-Windows-TerminalServices-Licensing/Admin), indicating that the user has been issued a license.
    The issue I am having is that the license being issued is
    2008 Per User CAL license (Build-in OverUsed - temporary) and not the 2012 Per User CAL license which is the only license installed on the server. According to the RDS CAL interoperability matrix at
    social.technet.microsoft.com/wiki/contents/articles/14988.rds-and-ts-cal-interoperability-matrix.aspx, I was expecting the 2012 license to be backward-compatible with 2008 client (and that
    in the absence of legacy licenses, the (only) 2012 license would be used for all clients connecting to the licensing server)
    Before I bought my license, I found this document: 
    download.microsoft.com/download/3/D/4/3D42BDC2-6725-4B29-B75A-A5B04179958B/WindowsServerRDS_VLBrief.pdf 
    which says that - "newer version RDS CALs can be used with an older version of the server software" (In section FAQ, Q4), which means to me that
    the 2012 license would work as-is for the 2008 Server and gives me flexibility when upgrading to the new server version.
    How can I make this CAL work in my environment? 
    Note:
    I have already explicitly disabled
    Prevent license upgrade Group Policy setting which I assumed would fix the issue but nothing has changed.
    Then I have enabled License server security group Group Polity setting
    and added computers from my domain to RDS Endpoint Servers AD group. I have also created new AD group called
    Terminal Server Computers and added the computer accounts there, but it changes
    nothing. Reference - technet.microsoft.com/en-us/library/ee791761.aspx , technet.microsoft.com/en-us/library/cc725704.aspx and blogs.msdn.com/b/rds/archive/2009/09/17/control-the-issuance-of-rds-cals.aspx.
    I found one potential ‘workaround’ which involved manually downgrading my CAL license by calling
    Microsoft Clearinghouse. I am very reluctant do to so because, as I upgrade parts of my infrastructure to Server 2012, I’d need to then ask Microsoft to manually upgrade a part of my license back as well.
    Am I missing something? What should I do to get my 2012 CAL to be issued to 2008 R2 server

    Hi, I have tried several other possibilities.
    I change expire date for my temporary assigned license (2008 CAL overused). It can be done, by changing Active Directory user properties – msTSExpireDate. When I restart my Session Host server and logged again, my license was renewed
    for next 60 days (event ID - 4145).
    I also delete information about license for this user (clear msTSExpireDate and msTSLicenseVersion). And the license was successfully removed from License Manager. After another SH restart it gets the same – 2008 overused – license
    (event ID 4143 - license server has successfully issued …)
    I now, that changing info in AD attributes is a little trick, and this is not a real value - only a reference, but it was useful to delete or change expiration date of license. But it didn’t change type of license as I expected.
    Reference -
    http://discussions.citrix.com/topic/243320-windows-2008-licensing-questions/
    To TP:
    I have found your post with information:
    If you have a Server 2012 RD Licensing server you may install your 2012 RDS CALs on it (no downgrade necessary) and then set your Server 2008 R2 RDSH to
    use the 2012 RDL server.  The 2012 RD Licensing server will automatically issue the CALs as 2008. -
    https://social.technet.microsoft.com/Forums/windowsserver/en-US/6046ded1-96bf-4d79-89ce-38aac2a6694e/can-we-use-windows-server-2012-rds-cal-license-in-rds-2008-r2-server?forum=winserverTS
    And it showing my situation in brief. I also found
    similar problems, but the solutions don’t meet my expectations.
    https://social.technet.microsoft.com/Forums/windowsserver/en-US/dcfb1966-89a8-4b5d-bf5a-ff03ac0b7a66/rds-cal-licenses-not-recognized?forum=winserverTS
    – “sudden all of the CALS were available”
    https://social.technet.microsoft.com/Forums/windowsserver/en-US/f1228599-8452-4a3e-a263-061de14bfcfe/server-2012-rds-builtin-overused-cals-issue?forum=winserverTS
    – “this should go away after a while”
    Is there a way to determine this time you mentioned before? Or should I just wait patiently…

  • Using Win2000 Group Policies to distribute runtime engine

    I have a Win2000 domain and would like to distribute the 7.1 runtime engine using Group Policies for a group of computers in the domain. I created the policy called LVRuntime and tried to add the 7.1 runtime MSI file to the policy under ComputerConfiguration\SoftwareSettings\SoftwareIns​tallation however I get the error message:
    "Add Operation Failed. Unable to extract the deployment information from the package. Run validation on the package to ensure the package is correct."
    MS has an article on this if the package is already installed on the system or if you are using a GPO of a different version, but neither are the case. I am creating the policy right on the Domain Controller just as I have many other policies like it.

    Hi Jordan,
    The MSI deployment through group policies is not supported for LabVIEW RTE. Although MSI is used as the outer layer, we use our own technology inside.
    Regards,
    Ankita A.
    National Instruments

  • TFS 2012 Security, Windows Groups, To many users listed in scroll lists

    Good Day to all,
    I've been asked,  Is it possible to remove windows groups from TFS that are not pertinent. 
    How does TFS obtain windows groups?  We've observed that there are missing groups but there are a significant number that have nothing to do with us.
    And Drop Down lists such as the Task Editor  'Assigned to:'  contain hundreds of names that are not pertinent to our TFS.  Is it possible to limit this list as well.
    Thank you - Covi
    Mark Covian

    Hi Mark, 
    Thanks for your post.
    In TFS Server, there’s the BUILTIN\ Administrators group added in Team Foundation Administrators group(TFS Admin Console) by default, and this BUILTIN\Administrators contains the windows groups. Please open your Team Foundation Administrators group from
    TFS Admin Console to check that, and remove it from there. 
    In you manually added Windows group in other TFS security places, please follow the solutions in this similar
    post to find them and remove them. 
    We are trying to better understand customer views on social support experience, so your participation in this interview project would be greatly appreciated if you have time. Thanks for helping make community forums a great place.
    Click
    HERE to participate the survey.

  • Using LDAP group to autenticate users from inside network to Internet

    Hi team, I got an asa 5510 version 7.2.3 and i need to autenticate my users from inside network to internet using a security group in the Active Directory, anyone can help me with these?

    This might not be complete for your needs but it may give you enough of what you need without having to purchase full url filtering etc.
    Authenticate with LDAP as shown earlier in this thread, then use this aaa ldap with cut-through proxy -
    PIX/ASA : Cut-through Proxy for Network Access using TACACS+ and RADIUS Server Configuration Example
    http://www.cisco.com/en/US/products/hw/vpndevc/ps2030/products_configuration_example09186a00807349e7.shtml
    then do some filtering -
    ASA/PIX 8.x: Block Certain Websites (URLs) Using Regular Expressions With MPF Configuration Example
    http://www.cisco.com/en/US/products/ps6120/products_configuration_example09186a0080940e04.shtml

  • Can I use Windows MFC to develop user interface for Adobe photoshop plug-in?

    Hi I need to have some of the controls like image list ( displaying thumbnail preview) and tree controls. I think it is difficult achieve the same using the ADM controls. I was wondering whether I am able to add winodws MFC class and launch the window from the PlaugInMain() function using DoModal().
    I tried doing it by adding the MFC class into the SDK samples provided with the Photoshop SDK. I got error like "object does not support this property".
    Thanks in advance.

    Right now, we don't have a cross platform answer.
    Most people are writing to the platform native APIs, or using some UI toolkit that works with the platform of choice. Larger plugin developers have their own UI code toolkits.
    ADM was always more problem than solution, and became too big a problem to maintain (you'll notice that our plugins that use ADM went away or became scripts).
    We're working on better solutions now.

  • Using windows vista with two users and I can only open books with adobe digit

    why?

    Hi I was getting the same message on my Kobo touch when I tried to open library books (This document is protected by Adobe Digital Rights Management (DRM) and is not currently authorized for use with your Adobe ID.  Please sign-in with the authorized Adobe ID and try again).  After reading a few posts on this issue, I did the following:
    - make sure you have Adobe 3.0
    - deauthorize the computer using the instructions from their site (OverDrive | How to deauthorize Adobe Digital Edition...)
    - get a book from the library book
    - when prompted, open using ADE (or download- I just said open instead of download)
    - when you try to open the book in ADE, it'll ask you to authorize computer
    - I put in my authorization (the same as my Kobo) then transferred the book to my Kobo.
    - I was then able to open my library book in my Kobo!

  • Migrate from Zenworks Windows Policies to AD Group Policies

    Untill now we have been using Zenworks Windows policies to configure some settings.
    We have now migrated to an AD Domain and start to use Domain Group Policies.
    We have recreated a few policies in the AD, but they are not getting applied to our clients.
    What is the correct way to migrate from the one to the other?

    This is likely due to a VERY DUMB default IE GPO settings.
    By Default, IE GPO settings never reapply.
    Try changing your AD IE GPO to tell it to always apply the IE settings.
    See - http://www.novell.com/support/kb/doc.php?id=7008026
    On 2/27/2013 3:56 AM, Quinky wrote:
    >
    > Okay, I understand that.
    > I've disabled one policy and recreated it in AD.
    > But this policy does not get applied.
    > It's a policy that sets some IE settings (Only User configuration).
    > But when I run a gpupdate /force and a gpresult on a workstation, it
    > only states that Local User Policies are applied (a.k.a. the zenworks
    > ones).
    >
    >
    Craig Wilson - MCNE, MCSE, CCNA
    Novell Knowledge Partner
    Novell does not officially monitor these forums.
    Suggestions/Opinions/Statements made by me are solely my own.
    These thoughts may not be shared by either Novell or any rational human.

  • How can I use Windows IAS to validate WLC management users?

    I am having a problem using my Windows IAS radius server to validate management users for my 2112 Wireless Lan Controller.
    I have defined the radius server and it works ok with the policy for validating wireless clients but not for WLC management users.
    The Remote access policy seems to be set up correctly as the event viewer on the server shows:-
    Event Type: Information
    Event Source: IAS
    Event Category: None
    Event ID: 1
    Date:  09/02/2011
    Time:  11:06:06
    User:  N/A
    Computer: UK01DC07
    Description:
    User xxxxxx was granted access.
    Fully-Qualified-User-Name = TRAVEL.OAG.com/Dunstable Admins/xxxxxx
    NAS-IP-Address = 10.10.45.210
    NAS-Identifier = UK03NM01
    Client-Friendly-Name = UK03NM01
    Client-IP-Address = 10.10.45.210
    Calling-Station-Identifier = <not present>
    NAS-Port-Type = <not present>
    NAS-Port = <not present>
    Proxy-Policy-Name = Use Windows authentication for all users
    Authentication-Provider = Windows
    Authentication-Server = <undetermined>
    Policy-Name = UK03NM01 - login
    Authentication-Type = PAP
    EAP-Type = <undetermined>
    But, the WLC log shows:
    *Feb 09 11:06:06.612: %EMWEB-1-LOGIN_FAILED: ews_auth.c:2104 Login failed. User:xxxxxx. Service-Type is not present or it doesn't allow READ/WRITE permission..
    The WLC just returns the login screen
    Any thoughts?
    Thanks in advance
    Richard

    Event viewer shows :
    Event Type: Information
    Event Source: IAS
    Event Category: None
    Event ID: 1
    Date:  10/02/2011
    Time:  08:49:39
    User:  N/A
    Computer: UK01DC07
    Description:
    User xxxxxxxx was granted access.
    Fully-Qualified-User-Name = TRAVEL.OAG.com/Dunstable Admins/xxxxxxxx
    NAS-IP-Address = 10.10.45.210
    NAS-Identifier = UK03NM01
    Client-Friendly-Name = UK03NM01
    Client-IP-Address = 10.10.45.210
    Calling-Station-Identifier =
    NAS-Port-Type =
    NAS-Port =
    Proxy-Policy-Name = Use Windows authentication for all users
    Authentication-Provider = Windows
    Authentication-Server =
    Policy-Name = UK03NM01 - login
    Authentication-Type = PAP
    EAP-Type =
    For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
    Data:
    0000: 00 00 00 00               ....   
    and IAS log shows:
    "UK01DC07","IAS",02/10/2011,08:49:39,1,"xxxxxxxx","TRAVEL.OAG.com/Dunstable Admins/xxxxxxxx",,,,,"UK03NM01","10.10.45.210",,0,"10.10.45.210","UK03NM01",,,,,,7,1,"UK03NM01 - login",0,"311 1 10.10.45.254 12/04/2010 23:56:59 1987",,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,"Use Windows authentication for all users",1,,,,
    "UK01DC07","IAS",02/10/2011,08:49:39,2,,"TRAVEL.OAG.com/Dunstable Admins/xxxxxxxx",,,,,,,,0,"10.10.45.210","UK03NM01",,,,,,2,1,"UK03NM01 - login",0,"311 1 10.10.45.254 12/04/2010 23:56:59 1987",,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,"Use Windows authentication for all users",1,,,,
    It appears to me that IAS checks and passes the username/password as being valid but this response is ignored by the WLC
    Richard

  • On one mac, is it possible for just one user to download and use windows, or will it force all the users to use windows?

    I want to download windows on the guest identity, so that I can play pc games (which only work on windows), but I dont want to have to use windows on my regular user identity. Does anyone know if it will only download for the one user?

    no user is forced to use Windows.

  • Group policies not working in one lab.

    G'day
    I've got a situation at my school where group policies are not having any
    effect on the PCs - but only in one of the 3 computer labs.
    I've run through the steps of most of the troubleshooting documents I could
    find but they haven't really helped.
    to summarise...
    If I delete the group policy folders from the system32 folder, then log in,
    new copies are brought down OK.
    If I force an update by executing secedit /refreshpolicy user_policy
    /enforce the changes (proxy restrictions mostly) take effect
    The policy IS correctly associated with the users and shows in the
    Workstation manager as having been executed.
    I'm at a loss.
    I was wondering if anyone could have a look at the debug log
    file I generated and give me some idea what's happening.
    Thanks.
    Paul Pofandt
    IT Manager
    St James College
    Brisbane
    WMHelperInitialization (Sep 22 2003) called! Flags: 0x4002. Event: 0x4000.
    Impersonation: 0x2
    Opened Mutex.
    Loaded userenv.dll
    Mapped function RefreshPolicy
    Mapped function RegisterGPNotification
    Mapped function UnregisterGPNotification
    Exiting WMHelperInitialization. Returning flags: 0x204
    WMHelperSystemEntryEx called!
    Computer Object : CN=00:0D:60:40:D8:B7.OU=WORKSTATIONS.O=STJ
    User Object : CN=admin.O=STJ
    Entry Flags : 0x4200
    Event Flags : 0x4000
    DN is Typed convert it to TYPELESS
    No user logged in.
    Writing User Logged In to \HKLM\Software\Novell\Workstation Manager\Group
    Policies
    Wrote reg. value 0x0 to User Logged In in key Software\Novell\Workstation
    Manager\Group Policies
    Reading User Logged In from \HKLM\Software\Novell\Workstation Manager\Group
    Policies
    Read reg. value User Logged In: 0x0 in key Software\Novell\Workstation
    Manager\Group Policies
    Detected user logout. Running GPCleanup.
    Cleaning up user settings.
    Entering GPCleanup
    Reading Group Policy Machine Status from \HKLM\Software\Novell\Workstation
    Manager\Group Policies
    Reg key Software\Novell\Workstation Manager\Group Policies\Group Policy
    Machine Status not found. Assuming 0
    GPStatus reg key not found. Assuming 0
    Reading Group Policy Machine Flags from \HKLM\Software\Novell\Workstation
    Manager\Group Policies
    Reg key Software\Novell\Workstation Manager\Group Policies\Group Policy
    Machine Flags not found. Assuming 0
    Reg key Group Policy Machine Flags not found. Assuming 0
    Reading Group Policy User Status from \HKLM\Software\Novell\Workstation
    Manager\Group Policies
    Read reg. value Group Policy User Status: 0x3000 in key
    Software\Novell\Workstation Manager\Group Policies
    Read reg. key Group Policy User Status: 0x3000
    Reading Group Policy User Flags from \HKLM\Software\Novell\Workstation
    Manager\Group Policies
    Read reg. value Group Policy User Flags: 0x80000060 in key
    Software\Novell\Workstation Manager\Group Policies
    Read reg. key Group Policy User Flags: 0x80000060
    Writing Group Policy User Status to \HKLM\Software\Novell\Workstation
    Manager\Group Policies
    Wrote reg. value 0x1000 to Group Policy User Status in key
    Software\Novell\Workstation Manager\Group Policies
    Reading GPT Version from \HKLM\Software\Novell\Workstation Manager\Group
    Policies
    Read reg. value GPT Version: 0xc100c0 in key Software\Novell\Workstation
    Manager\Group Policies
    Entered GPDel
    Deleting C:\WINNT\System32\GroupPolicy\User
    Deleting C:\WINNT\System32\GroupPolicy\Machine
    Exiting GPDel 0
    Restoring original GP as base.
    Entered GPCopy(C:\WINNT\System32\GroupPolicy.WMOriginal,
    C:\WINNT\System32\GroupPolicy, 0, handle, 0x70)
    Copied C:\WINNT\System32\GroupPolicy.WMOriginal\GPT.ini to
    C:\WINNT\System32\GroupPolicy\GPT.ini
    Copied file
    C:\WINNT\System32\GroupPolicy.WMOriginal\Machine\M icrosoft\Windows
    NT\SecEdit\GptTmpl.inf to
    C:\WINNT\System32\GroupPolicy\Machine\Microsoft\Wi ndows
    NT\SecEdit\GptTmpl.inf
    Copied file
    C:\WINNT\System32\GroupPolicy.WMOriginal\Machine\M icrosoft\Windows
    NT\SecEdit\IPS1.dat to
    C:\WINNT\System32\GroupPolicy\Machine\Microsoft\Wi ndows NT\SecEdit\IPS1.dat
    GP_FLAG_APPLY_SECURITY_SETTINGS (0x40), not set, or security file already
    copied. Will not copy security file
    Exiting GPCopy 0x0
    Entered AppendPolicy C:\WINNT\System32\GroupPolicy\Machine\Registry.pol
    Error 0x2 opening file C:\WINNT\System32\GroupPolicy\Machine\Registry.pol
    File does not exist. Nonfatal error.
    Exiting AppendPolicy C:\WINNT\System32\GroupPolicy\Machine\Registry.pol 0x0
    Entered AppendPolicy C:\WINNT\System32\GroupPolicy\User\Registry.pol
    Error 0x2 opening file C:\WINNT\System32\GroupPolicy\User\Registry.pol
    File does not exist. Nonfatal error.
    Exiting AppendPolicy C:\WINNT\System32\GroupPolicy\User\Registry.pol 0x0
    Error 3 calling
    GetFileAttributes(C:\WINNT\System32\GroupPolicy.Wk sCache\Machine\Registry.po
    l)
    Error 3 calling
    GetFileAttributes(C:\WINNT\System32\GroupPolicy.Wk sCache\User\Registry.pol)
    No workstation cache. Skipping overlay of computer policies...
    Entered writeData. File: C:\WINNT\System32\GroupPolicy\Machine\Registry.pol
    No data.
    Exiting writeData 0x0
    Entered writeData. File: C:\WINNT\System32\GroupPolicy\User\Registry.pol
    No data.
    Exiting writeData 0x0
    Entered AppendSecuritySettings
    Inf path: C:\WINNT\System32\GroupPolicy\Machine\Microsoft\Wi ndows
    NT\SecEdit\GptTmpl.inf
    Dispatching SECEDIT.EXE /configure /DB ZENDB /CFG
    "C:\WINNT\System32\GroupPolicy\Machine\Microsoft\W indows
    NT\SecEdit\GptTmpl.inf" /log c:\GPSecApp.log.
    LoadHive entered
    LoadHive exit : 0
    Exiting AppendSecuritySettings 0x0
    LoadHive entered
    LoadHive exit : 2
    Error 2 loading ipsec settings 1.
    Writing Group Policy User Status to \HKLM\Software\Novell\Workstation
    Manager\Group Policies
    Wrote reg. value 0x3000 to Group Policy User Status in key
    Software\Novell\Workstation Manager\Group Policies
    Signalling OS to refresh policies
    RegQueryValueEx returned 2
    Policies are set to apply asynchronously
    Policies will be processed asynchronously
    Entered SetGptVersion(0x0, TRUE).
    Reading GPT Version from \HKLM\Software\Novell\Workstation Manager\Group
    Policies
    Read reg. value GPT Version: 0xc100c0 in key Software\Novell\Workstation
    Manager\Group Policies
    Read file C:\WINNT\System32\GroupPolicy\GPT.ini
    Found version 0xb800b7 in gpt.ini
    Using version: 0xc100c0
    Saving GPT version: 0xc200c1
    Writing GPT Version to \HKLM\Software\Novell\Workstation Manager\Group
    Policies
    Wrote reg. value 0xc200c1 to GPT Version in key Software\Novell\Workstation
    Manager\Group Policies
    Exiting SetGptVersion 0x0.
    Applied Computer Policy.
    Applied User Policy.
    Exiting GPCleanup 0x0
    Entered RemoveCleanup.
    Loaded wmschapi.dll
    Calling WMRemoveAction
    Finished Calling WMRemoveAction(WMGRPPOL cleanup action, FALSE). Returned
    0x0
    Exiting RemoveCleanup 0x0
    Apply computer policies releasing mutex.
    Exiting WMHelperSystemEntryEx ccode: 0x0
    Closing log file.
    WMHelperInitialization (Sep 22 2003) called! Flags: 0x0. Event: 0x0.
    Impersonation: 0x0
    Opened Mutex.
    Loaded userenv.dll
    Mapped function RefreshPolicy
    Mapped function RegisterGPNotification
    Mapped function UnregisterGPNotification
    Exiting WMHelperInitialization. Returning flags: 0x11
    Entering WMHelperInteractiveUserEntry!
    szFullDN = CN=test2006.OU=2006.OU=STUDENTS.O=STJ
    DN is Typed convert it to TYPELESS
    g_szUserDN = test2006.2006.STUDENTS.STJ
    GinaGetUsersSIDInTextualForm ENTERED
    Textual SID : S-1-5-21-1908370602-1493435055-278805897-1055
    GinaGetUsersSIDInTextualForm EXIT : 0
    Writing Don't reparse to \HKLM\Software\Novell\Workstation Manager\Group
    Policies
    Wrote reg. value 0x0 to Don't reparse in key Software\Novell\Workstation
    Manager\Group Policies
    Writing User Logged In to \HKLM\Software\Novell\Workstation Manager\Group
    Policies
    Wrote reg. value 0x1 to User Logged In in key Software\Novell\Workstation
    Manager\Group Policies
    Entered CheckForObsoleteWksCache .
    No workstation. Exiting CheckForObsoleteWksCache
    Applying user policies
    Reading Don't reparse from \HKLM\Software\Novell\Workstation Manager\Group
    Policies
    Read reg. value Don't reparse: 0x0 in key Software\Novell\Workstation
    Manager\Group Policies
    Reading Group Policy User Status from \HKLM\Software\Novell\Workstation
    Manager\Group Policies
    Read reg. value Group Policy User Status: 0x3000 in key
    Software\Novell\Workstation Manager\Group Policies
    Read reg. key Group Policy User Status: 0x3000
    Entering ApplyPolicies
    Reading Group Policy User Flags from \HKLM\Software\Novell\Workstation
    Manager\Group Policies
    Read reg. value Group Policy User Flags: 0x80000060 in key
    Software\Novell\Workstation Manager\Group Policies
    Read reg. key Group Policy User Flags: 0x80000060
    Reading Group Policy User Status from \HKLM\Software\Novell\Workstation
    Manager\Group Policies
    Read reg. value Group Policy User Status: 0x3000 in key
    Software\Novell\Workstation Manager\Group Policies
    Read reg. key Group Policy User Status: 0x3000
    Writing Group Policy User Status to \HKLM\Software\Novell\Workstation
    Manager\Group Policies
    Wrote reg. value 0x1000 to Group Policy User Status in key
    Software\Novell\Workstation Manager\Group Policies
    Impersonating logged on user.
    Context : OU=2006.OU=STUDENTS.O=STJ
    Full Object DN CN=test2006.OU=2006.OU=STUDENTS.O=STJ
    Calling WMGetAllAssociatedObjects(FALSE, MANGO, 1,
    CN=test2006.OU=2006.OU=STUDENTS.O=STJ, WINNT Workstation Package,
    zenwmGroupPolicy, 512, pBuffer)
    Reverting to system impersonation.
    Found DN CN=Student User Package:Windows Group Policy.O=STJ
    WMCheckIfGroupPolicyObjectsChanged entered
    Impersonating logged on user.
    Reverting to system impersonation.
    Group Policy object has changed!
    Exiting WMCheckIfGroupPolicyObjectsChanged 0x0
    Entered ScheduleCleanup.
    Loaded wmschapi.dll
    Calling WMScheduleAction
    Finished Calling WMScheduleAction. Returned 0x0
    Exiting ScheduleCleanup 0x0
    Entered BackupOriginalGP.
    Exiting BackupOriginalGP 0x0
    Entering ApplyGroupPolicy.
    Entered GPDel
    Deleting C:\WINNT\System32\GroupPolicy.UserCache\User
    Deleting C:\WINNT\System32\GroupPolicy.UserCache\Machine
    Exiting GPDel 0
    Entered GPCopy(C:\WINNT\System32\GroupPolicy.WMOriginal,
    C:\WINNT\System32\GroupPolicy.UserCache, 0, handle, 0x70)
    Copied C:\WINNT\System32\GroupPolicy.WMOriginal\GPT.ini to
    C:\WINNT\System32\GroupPolicy.UserCache\GPT.ini
    Copied file
    C:\WINNT\System32\GroupPolicy.WMOriginal\Machine\M icrosoft\Windows
    NT\SecEdit\GptTmpl.inf to
    C:\WINNT\System32\GroupPolicy.UserCache\Machine\Mi crosoft\Windows
    NT\SecEdit\GptTmpl.inf
    Copied file
    C:\WINNT\System32\GroupPolicy.WMOriginal\Machine\M icrosoft\Windows
    NT\SecEdit\IPS1.dat to
    C:\WINNT\System32\GroupPolicy.UserCache\Machine\Mi crosoft\Windows
    NT\SecEdit\IPS1.dat
    GP_FLAG_APPLY_SECURITY_SETTINGS (0x40), not set, or security file already
    copied. Will not copy security file
    Exiting GPCopy 0x0
    Entered AppendPolicy
    C:\WINNT\System32\GroupPolicy.UserCache\Machine\Re gistry.pol
    Error 0x2 opening file
    C:\WINNT\System32\GroupPolicy.UserCache\Machine\Re gistry.pol
    File does not exist. Nonfatal error.
    Exiting AppendPolicy
    C:\WINNT\System32\GroupPolicy.UserCache\Machine\Re gistry.pol 0x0
    Entered AppendPolicy
    C:\WINNT\System32\GroupPolicy.UserCache\User\Regis try.pol
    Error 0x2 opening file
    C:\WINNT\System32\GroupPolicy.UserCache\User\Regis try.pol
    File does not exist. Nonfatal error.
    Exiting AppendPolicy
    C:\WINNT\System32\GroupPolicy.UserCache\User\Regis try.pol 0x0
    Entered MergeGptFile(C:\WINNT\System32\GroupPolicy.UserCac he, 0x30)
    g_dwVersion: 0x0.
    Reading GPT Version from \HKLM\Software\Novell\Workstation Manager\Group
    Policies
    Read reg. value GPT Version: 0xc200c1 in key Software\Novell\Workstation
    Manager\Group Policies
    Found user extensions...
    Exiting MergeGptFile 0x0
    Processing CN=Student User Package:Windows Group Policy.O=STJ
    Impersonating logged on user.
    Flags: 0x80000060
    Check for old settings: 0x60
    Reverting to system.
    Writing Group Policy User Flags to \HKLM\Software\Novell\Workstation
    Manager\Group Policies
    Wrote reg. value 0x80000060 to Group Policy User Flags in key
    Software\Novell\Workstation Manager\Group Policies
    Entered GPCopy(\\THOR\sys\public\Policies_stu,
    C:\WINNT\System32\GroupPolicy.UserCache, 1, handle, 0x80000060)
    Granted temp acess to C:\WINNT\System32\GroupPolicy.UserCache\GPT.ini
    Copied \\THOR\sys\public\Policies_stu\GPT.ini to
    C:\WINNT\System32\GroupPolicy.UserCache\GPT.ini
    Reverting to system.
    Restored security on C:\WINNT\System32\GroupPolicy.UserCache\GPT.ini
    Granted temp acess to C:\WINNT\System32\GroupPolicy.UserCache\User
    Copied file \\THOR\sys\public\Policies_stu\User\Registry.pol to
    C:\WINNT\System32\GroupPolicy.UserCache\User\Regis try.pol
    Granted temp acess to C:\WINNT\System32\GroupPolicy.UserCache\User\MICRO SOFT
    Granted temp acess to
    C:\WINNT\System32\GroupPolicy.UserCache\User\MICRO SOFT\IEAK
    Copied file \\THOR\sys\public\Policies_stu\User\MICROSOFT\IEAK \install.ins
    to C:\WINNT\System32\GroupPolicy.UserCache\User\MICRO SOFT\IEAK\install.ins
    Granted temp acess to
    C:\WINNT\System32\GroupPolicy.UserCache\User\MICRO SOFT\IEAK\BRANDING
    Granted temp acess to
    C:\WINNT\System32\GroupPolicy.UserCache\User\MICRO SOFT\IEAK\BRANDING\favs
    Restored security on
    C:\WINNT\System32\GroupPolicy.UserCache\User\MICRO SOFT\IEAK\BRANDING\favs
    Restored security on
    C:\WINNT\System32\GroupPolicy.UserCache\User\MICRO SOFT\IEAK\BRANDING
    Granted temp acess to
    C:\WINNT\System32\GroupPolicy.UserCache\User\MICRO SOFT\IEAK\LOCK
    Restored security on
    C:\WINNT\System32\GroupPolicy.UserCache\User\MICRO SOFT\IEAK\LOCK
    Restored security on
    C:\WINNT\System32\GroupPolicy.UserCache\User\MICRO SOFT\IEAK
    Restored security on C:\WINNT\System32\GroupPolicy.UserCache\User\MICRO SOFT
    Granted temp acess to C:\WINNT\System32\GroupPolicy.UserCache\User\Scrip ts
    Granted temp acess to
    C:\WINNT\System32\GroupPolicy.UserCache\User\Scrip ts\Logoff
    Restored security on
    C:\WINNT\System32\GroupPolicy.UserCache\User\Scrip ts\Logoff
    Granted temp acess to
    C:\WINNT\System32\GroupPolicy.UserCache\User\Scrip ts\Logon
    Restored security on
    C:\WINNT\System32\GroupPolicy.UserCache\User\Scrip ts\Logon
    Restored security on C:\WINNT\System32\GroupPolicy.UserCache\User\Scrip ts
    Restored security on C:\WINNT\System32\GroupPolicy.UserCache\User
    GP_FLAG_APPLY_COMP_SETTINGS (0x10), not set. Will not copy machine folder
    Copying security file
    Granted temp acess to
    C:\WINNT\System32\GroupPolicy.UserCache\Machine\Mi crosoft\Windows NT\SecEdit
    Copied file \\THOR\sys\public\Policies_stu\Machine\Microsoft\W indows
    NT\SecEdit\GptTmpl.inf to
    C:\WINNT\System32\GroupPolicy.UserCache\Machine\Mi crosoft\Windows
    NT\SecEdit\GptTmpl.inf
    Copied file \\THOR\sys\public\Policies_stu\Machine\Microsoft\W indows
    NT\SecEdit\IPS1.dat to
    C:\WINNT\System32\GroupPolicy.UserCache\Machine\Mi crosoft\Windows
    NT\SecEdit\IPS1.dat
    Copied file \\THOR\sys\public\Policies_stu\Machine\Microsoft\W indows
    NT\SecEdit\IPS2.dat to
    C:\WINNT\System32\GroupPolicy.UserCache\Machine\Mi crosoft\Windows
    NT\SecEdit\IPS2.dat
    Copied file \\THOR\sys\public\Policies_stu\Machine\Microsoft\W indows
    NT\SecEdit\IPS3.dat to
    C:\WINNT\System32\GroupPolicy.UserCache\Machine\Mi crosoft\Windows
    NT\SecEdit\IPS3.dat
    Restored security on
    C:\WINNT\System32\GroupPolicy.UserCache\Machine\Mi crosoft\Windows NT\SecEdit
    Exiting GPCopy 0x0
    Entered MergeGptFile(C:\WINNT\System32\GroupPolicy.UserCac he, 0x80000060)
    g_dwVersion: 0xc200c1.
    Found user extensions...
    Exiting MergeGptFile 0x0
    Applying user settings.
    Entered AppendPolicy
    C:\WINNT\System32\GroupPolicy.UserCache\User\Regis try.pol
    Entered parseRegFile
    Val: 'NoChangingWallPaper'
    Added:
    Software\Microsoft\Windows\CurrentVersion\Policies \ActiveDesktop\NoChangingW
    allPaper
    Val: 'NoHardwareTab'
    Added:
    Software\Microsoft\Windows\CurrentVersion\Policies \Explorer\NoHardwareTab
    Val: 'NoWindowsUpdate'
    Added:
    Software\Microsoft\Windows\CurrentVersion\Policies \Explorer\NoWindowsUpdate
    Val: 'NoNetworkConnections'
    Added:
    Software\Microsoft\Windows\CurrentVersion\Policies \Explorer\NoNetworkConnect
    ions
    Val: 'ForceStartMenuLogOff'
    Added:
    Software\Microsoft\Windows\CurrentVersion\Policies \Explorer\ForceStartMenuLo
    gOff
    Val: 'ClearRecentDocsOnExit'
    Added:
    Software\Microsoft\Windows\CurrentVersion\Policies \Explorer\ClearRecentDocsO
    nExit
    Val: 'Intellimenus'
    Added:
    Software\Microsoft\Windows\CurrentVersion\Policies \Explorer\Intellimenus
    Val: 'NoSaveSettings'
    Added:
    Software\Microsoft\Windows\CurrentVersion\Policies \Explorer\NoSaveSettings
    Val: 'NoMovingBands'
    Added:
    Software\Microsoft\Windows\CurrentVersion\Policies \Explorer\NoMovingBands
    Val: 'NoRecentDocsNetHood'
    Added:
    Software\Microsoft\Windows\CurrentVersion\Policies \Explorer\NoRecentDocsNetH
    ood
    Val: 'NoCloseDragDropBands'
    Added:
    Software\Microsoft\Windows\CurrentVersion\Policies \Explorer\NoCloseDragDropB
    ands
    Val: 'NoActiveDesktop'
    Added:
    Software\Microsoft\Windows\CurrentVersion\Policies \Explorer\NoActiveDesktop
    Val: 'NoControlPanel'
    Added:
    Software\Microsoft\Windows\CurrentVersion\Policies \Explorer\NoControlPanel
    Val: 'NoDeletePrinter'
    Added:
    Software\Microsoft\Windows\CurrentVersion\Policies \Explorer\NoDeletePrinter
    Val: '**del.NoAddPrinter'
    Trying to delete key:
    Software\Microsoft\Windows\CurrentVersion\Policies \Explorer, val:
    NoAddPrinter
    Added:
    Software\Microsoft\Windows\CurrentVersion\Policies \Explorer\**del.NoAddPrint
    er
    Val: '**del.DisablePersonalDirChange'
    Trying to delete key:
    Software\Microsoft\Windows\CurrentVersion\Policies \Explorer, val:
    DisablePersonalDirChange
    Added:
    Software\Microsoft\Windows\CurrentVersion\Policies \Explorer\**del.DisablePer
    sonalDirChange
    Val: 'DisallowRun'
    Added:
    Software\Microsoft\Windows\CurrentVersion\Policies \Explorer\DisallowRun
    Val: '**delvals.'
    Trying to delete values under key:
    Software\Microsoft\Windows\CurrentVersion\Policies \Explorer\DisallowRun
    Added:
    Software\Microsoft\Windows\CurrentVersion\Policies \Explorer\DisallowRun\**de
    lvals.
    Val: '1'
    Added:
    Software\Microsoft\Windows\CurrentVersion\Policies \Explorer\DisallowRun\1
    Val: '2'
    Added:
    Software\Microsoft\Windows\CurrentVersion\Policies \Explorer\DisallowRun\2
    Val: '3'
    Added:
    Software\Microsoft\Windows\CurrentVersion\Policies \Explorer\DisallowRun\3
    Val: '4'
    Added:
    Software\Microsoft\Windows\CurrentVersion\Policies \Explorer\DisallowRun\4
    Val: '5'
    Added:
    Software\Microsoft\Windows\CurrentVersion\Policies \Explorer\DisallowRun\5
    Val: '6'
    Added:
    Software\Microsoft\Windows\CurrentVersion\Policies \Explorer\DisallowRun\6
    Val: '7'
    Added:
    Software\Microsoft\Windows\CurrentVersion\Policies \Explorer\DisallowRun\7
    Val: '8'
    Added:
    Software\Microsoft\Windows\CurrentVersion\Policies \Explorer\DisallowRun\8
    Val: 'DisableRegistryTools'
    Added:
    Software\Microsoft\Windows\CurrentVersion\Policies \System\DisableRegistryToo
    ls
    Val: 'DisableTaskMgr'
    Added:
    Software\Microsoft\Windows\CurrentVersion\Policies \System\DisableTaskMgr
    Val: '**del.DisableLockWorkstation'
    Trying to delete key:
    Software\Microsoft\Windows\CurrentVersion\Policies \System, val:
    DisableLockWorkstation
    Added:
    Software\Microsoft\Windows\CurrentVersion\Policies \System\**del.DisableLockW
    orkstation
    Val: 'NoAddRemovePrograms'
    Added:
    Software\Microsoft\Windows\CurrentVersion\Policies \Uninstall\NoAddRemoveProg
    rams
    Val: 'NoRemovePage'
    Added:
    Software\Microsoft\Windows\CurrentVersion\Policies \Uninstall\NoRemovePage
    Val: 'NoAddPage'
    Added:
    Software\Microsoft\Windows\CurrentVersion\Policies \Uninstall\NoAddPage
    Val: 'NoWindowsSetupPage'
    Added:
    Software\Microsoft\Windows\CurrentVersion\Policies \Uninstall\NoWindowsSetupP
    age
    Val: 'NoAddFromCDorFloppy'
    Added:
    Software\Microsoft\Windows\CurrentVersion\Policies \Uninstall\NoAddFromCDorFl
    oppy
    Val: 'NoAddFromInternet'
    Added:
    Software\Microsoft\Windows\CurrentVersion\Policies \Uninstall\NoAddFromIntern
    et
    Val: 'NoAddFromNetwork'
    Added:
    Software\Microsoft\Windows\CurrentVersion\Policies \Uninstall\NoAddFromNetwor
    k
    Val: 'DisableWindowsUpdateAccess'
    Added:
    Software\Microsoft\Windows\CurrentVersion\Policies \WindowsUpdate\DisableWind
    owsUpdateAccess
    Val: 'NoChat'
    Added: Software\Policies\Microsoft\Conferencing\NoChat
    Val: 'NoSharing'
    Added: Software\Policies\Microsoft\Conferencing\NoSharing
    Val: 'NoSharingDesktop'
    Added: Software\Policies\Microsoft\Conferencing\NoSharing Desktop
    Val: 'NoSharingDosWindows'
    Added: Software\Policies\Microsoft\Conferencing\NoSharing DosWindows
    Val: 'NoSharingExplorer'
    Added: Software\Policies\Microsoft\Conferencing\NoSharing Explorer
    Val: 'NoAllowControl'
    Added: Software\Policies\Microsoft\Conferencing\NoAllowCo ntrol
    Val: 'NoTrueColorSharing'
    Added: Software\Policies\Microsoft\Conferencing\NoTrueCol orSharing
    Val: 'NoAppSharing'
    Added: Software\Policies\Microsoft\Conferencing\NoAppShar ing
    Val: 'NoGeneralPage'
    Added: Software\Policies\Microsoft\Conferencing\NoGeneral Page
    Val: 'NoAdvancedCalling'
    Added: Software\Policies\Microsoft\Conferencing\NoAdvance dCalling
    Val: 'NoSecurityPage'
    Added: Software\Policies\Microsoft\Conferencing\NoSecurit yPage
    Val: 'NoAudioPage'
    Added: Software\Policies\Microsoft\Conferencing\NoAudioPa ge
    Val: 'NoVideoPage'
    Added: Software\Policies\Microsoft\Conferencing\NoVideoPa ge
    Val: 'Advanced'
    Added: Software\Policies\Microsoft\Internet Explorer\Control Panel\Advanced
    Val: 'HomePage'
    Added: Software\Policies\Microsoft\Internet Explorer\Control Panel\HomePage
    Val: 'Cache'
    Added: Software\Policies\Microsoft\Internet Explorer\Control Panel\Cache
    Val: 'Connwiz Admin Lock'
    Added: Software\Policies\Microsoft\Internet Explorer\Control Panel\Connwiz
    Admin Lock
    Val: 'Connection Settings'
    Added: Software\Policies\Microsoft\Internet Explorer\Control
    Panel\Connection Settings
    Val: 'Proxy'
    Added: Software\Policies\Microsoft\Internet Explorer\Control Panel\Proxy
    Val: 'Autoconfig'
    Added: Software\Policies\Microsoft\Internet Explorer\Control
    Panel\Autoconfig
    Val: 'Profiles'
    Added: Software\Policies\Microsoft\Internet Explorer\Control Panel\Profiles
    Val: 'Certificates'
    Added: Software\Policies\Microsoft\Internet Explorer\Control
    Panel\Certificates
    Val: 'Ratings'
    Added: Software\Policies\Microsoft\Internet Explorer\Control Panel\Ratings
    Val: 'FormSuggest Passwords'
    Added: Software\Policies\Microsoft\Internet Explorer\Control
    Panel\FormSuggest Passwords
    Val: 'Messaging'
    Added: Software\Policies\Microsoft\Internet Explorer\Control Panel\Messaging
    Val: 'CalendarContact'
    Added: Software\Policies\Microsoft\Internet Explorer\Control
    Panel\CalendarContact
    Val: 'ContentTab'
    Added: Software\Policies\Microsoft\Internet Explorer\Control
    Panel\ContentTab
    Val: 'ConnectionsTab'
    Added: Software\Policies\Microsoft\Internet Explorer\Control
    Panel\ConnectionsTab
    Val: 'ProgramsTab'
    Added: Software\Policies\Microsoft\Internet Explorer\Control
    Panel\ProgramsTab
    Val: 'AdvancedTab'
    Added: Software\Policies\Microsoft\Internet Explorer\Control
    Panel\AdvancedTab
    Val: 'RestrictAuthorMode'
    Added: Software\Policies\Microsoft\MMC\RestrictAuthorMode
    Val: 'Restrict_Run'
    Added:
    Software\Policies\Microsoft\MMC\{011BE22D-E453-11D1-945A-00C04FB984F9}\Restr
    ict_Run
    Val: 'Restrict_Run'
    Added:
    Software\Policies\Microsoft\MMC\{1AA7F839-C7F5-11D0-A376-00C04FC9DA04}\Restr
    ict_Run
    Val: 'Restrict_Run'
    Added:
    Software\Policies\Microsoft\MMC\{3CB6973D-3E6F-11D0-95DB-00A024D77700}\Restr
    ict_Run
    Val: 'Restrict_Run'
    Added:
    Software\Policies\Microsoft\MMC\{53D6AB1D-2488-11D1-A28C-00C04FB94F17}\Restr
    ict_Run
    Val: 'Restrict_Run'
    Added:
    Software\Policies\Microsoft\MMC\{58221C65-EA27-11CF-ADCF-00AA00A80033}\Restr
    ict_Run
    Val: 'Restrict_Run'
    Added:
    Software\Policies\Microsoft\MMC\{58221C66-EA27-11CF-ADCF-00AA00A80033}\Restr
    ict_Run
    Val: 'Restrict_Run'
    Added:
    Software\Policies\Microsoft\MMC\{58221C67-EA27-11CF-ADCF-00AA00A80033}\Restr
    ict_Run
    Val: 'Restrict_Run'
    Added:
    Software\Policies\Microsoft\MMC\{5ADF5BF6-E452-11D1-945A-00C04FB984F9}\Restr
    ict_Run
    Val: 'Restrict_Run'
    Added:
    Software\Policies\Microsoft\MMC\{5C659257-E236-11D2-8899-00104B2AFB46}\Restr
    ict_Run
    Val: 'Restrict_Run'
    Added:
    Software\Policies\Microsoft\MMC\{5D6179C8-17EC-11D1-9AA9-00C04FD8FE93}\Restr
    ict_Run
    Val: 'Restrict_Run'
    Added:
    Software\Policies\Microsoft\MMC\{677A2D94-28D9-11D1-A95B-008048918FB1}\Restr
    ict_Run
    Val: 'Restrict_Run'
    Added:
    Software\Policies\Microsoft\MMC\{7478EF61-8C46-11d1-8D99-00A0C913CAD4}\Restr
    ict_Run
    Val: 'Restrict_Run'
    Added:
    Software\Policies\Microsoft\MMC\{753EDB4D-2E1B-11D1-9064-00A0C90AB504}\Restr
    ict_Run
    Val: 'Restrict_Run'
    Added:
    Software\Policies\Microsoft\MMC\{8EAD3A12-B2C1-11d0-83AA-00A0C92C9D5D}\Restr
    ict_Run
    Val: 'Restrict_Run'
    Added:
    Software\Policies\Microsoft\MMC\{8F8F8DC0-5713-11D1-9551-0060B0576642}\Restr
    ict_Run
    Val: 'Restrict_Run'
    Added:
    Software\Policies\Microsoft\MMC\{90087284-d6d6-11d0-8353-00a0c90640bf}\Restr
    ict_Run
    Val: 'Restrict_Run'
    Added:
    Software\Policies\Microsoft\MMC\{95AD72F0-44CE-11D0-AE29-00AA004B9986}\Restr
    ict_Run
    Val: 'Restrict_Run'
    Added:
    Software\Policies\Microsoft\MMC\{A841B6C2-7577-11D0-BB1F-00A0C922E79C}\Restr
    ict_Run
    Val: 'Restrict_Run'
    Added:
    Software\Policies\Microsoft\MMC\{B91B6008-32D2-11D2-9888-00A0C925F917}\Restr
    ict_Run
    Val: 'Restrict_Run'
    Added:
    Software\Policies\Microsoft\MMC\{C9BC92DF-5B9A-11D1-8F00-00C04FC2C17B}\Restr
    ict_Run
    Val: 'Restrict_Run'
    Added:
    Software\Policies\Microsoft\MMC\{D967F824-9968-11D0-B936-00C04FD8D5B0}\Restr
    ict_Run
    Val: 'Restrict_Run'
    Added:
    Software\Policies\Microsoft\MMC\{DEA8AFA0-CC85-11d0-9CE2-0080C7221EBD}\Restr
    ict_Run
    Val: 'Restrict_Run'
    Added:
    Software\Policies\Microsoft\MMC\{E26D02A0-4C1F-11D1-9AA1-00C04FC3357A}\Restr
    ict_Run
    Val: 'Restrict_Run'
    Added:
    Software\Policies\Microsoft\MMC\{E355E538-1C2E-11D0-8C37-00C04FD8FE93}\Restr
    ict_Run
    Val: 'Restrict_Run'
    Added:
    Software\Policies\Microsoft\MMC\{EBC53A38-A23F-11D0-B09B-00C04FD8DCA6}\Restr
    ict_Run
    Val: 'Restrict_Run'
    Added:
    Software\Policies\Microsoft\MMC\{FD57D297-4FD9-11D1-854E-00C04FC31FD3}\Restr
    ict_Run
    Val: '{D6526FE0-E651-11CF-99CB-00C04FD64497}'
    Added: Software\Policies\Microsoft\Windows\CurrentVersion \Internet
    Settings\AllowedControls\{D6526FE0-E651-11CF-99CB-00C04FD64497}
    Val: 'NoConfigCache'
    Added: Software\Policies\Microsoft\Windows\NetCache\NoCon figCache
    Val: 'NoMakeAvailableOffline'
    Added: Software\Policies\Microsoft\Windows\NetCache\NoMak eAvailableOffline
    Val: 'NoCacheViewer'
    Added: Software\Policies\Microsoft\Windows\NetCache\NoCac heViewer
    Val: 'NC_RasConnect'
    Added: Software\Policies\Microsoft\Windows\Network Connections\NC_RasConnect
    Val: 'NC_LanConnect'
    Added: Software\Policies\Microsoft\Windows\Network Connections\NC_LanConnect
    Val: 'NC_LanProperties'
    Added: Software\Policies\Microsoft\Windows\Network
    Connections\NC_LanProperties
    Val: 'NC_RasMyProperties'
    Added: Software\Policies\Microsoft\Windows\Network
    Connections\NC_RasMyProperties
    Val: 'NC_RasAllUserProperties'
    Added: Software\Policies\Microsoft\Windows\Network
    Connections\NC_RasAllUserProperties
    Val: 'NC_RenameConnection'
    Added: Software\Policies\Microsoft\Windows\Network
    Connections\NC_RenameConnection
    Val: 'NC_RenameMyRasConnection'
    Added: Software\Policies\Microsoft\Windows\Network
    Connections\NC_RenameMyRasConnection
    Val: 'NC_AddRemoveComponents'
    Added: Software\Policies\Microsoft\Windows\Network
    Connections\NC_AddRemoveComponents
    Val: 'NC_ChangeBindState'
    Added: Software\Policies\Microsoft\Windows\Network
    Connections\NC_ChangeBindState
    Val: 'NC_LanChangeProperties'
    Added: Software\Policies\Microsoft\Windows\Network
    Connections\NC_LanChangeProperties
    Val: 'NC_RasChangeProperties'
    Added: Software\Policies\Microsoft\Windows\Network
    Connections\NC_RasChangeProperties
    Val: 'NC_NewConnectionWizard'
    Added: Software\Policies\Microsoft\Windows\Network
    Connections\NC_NewConnectionWizard
    Val: 'NC_DialupPrefs'
    Added: Software\Policies\Microsoft\Windows\Network
    Connections\NC_DialupPrefs
    Val: 'NC_AdvancedSettings'
    Added: Software\Policies\Microsoft\Windows\Network
    Connections\NC_AdvancedSettings
    Val: 'NC_ShowSharedAccessUI'
    Added: Software\Policies\Microsoft\Windows\Network
    Connections\NC_ShowSharedAccessUI
    Val: 'NC_AllowAdvancedTCPIPConfig'
    Added: Software\Policies\Microsoft\Windows\Network
    Connections\NC_AllowAdvancedTCPIPConfig
    Val: 'DisableCMD'
    Added: Software\Policies\Microsoft\Windows\System\Disable CMD
    Exiting parseRegFile
    Exiting AppendPolicy
    C:\WINNT\System32\GroupPolicy.UserCache\User\Regis try.pol 0x0
    Reverting to system impersonation.
    Entered writeData. File:
    C:\WINNT\System32\GroupPolicy.UserCache\User\Regis try.pol
    Exiting writeData 0x0
    Entered writeData. File:
    C:\WINNT\System32\GroupPolicy.UserCache\Machine\Re gistry.pol
    No data.
    Exiting writeData 0x0
    Entered GenerateGptFile(C:\WINNT\System32\GroupPolicy.User Cache)
    g_dwVersion: 0xc200c1.
    Writing GPT Version to \HKLM\Software\Novell\Workstation Manager\Group
    Policies
    Wrote reg. value 0xc200c1 to GPT Version in key Software\Novell\Workstation
    Manager\Group Policies
    Exiting GenerateGptFile 0x0
    Reading workstation cache
    Entered MergeGptFile(C:\WINNT\System32\GroupPolicy.WksCach e, 0x30)
    g_dwVersion: 0xc200c1.
    Exiting MergeGptFile 0x0
    Entered AppendPolicy
    C:\WINNT\System32\GroupPolicy.WksCache\User\Regist ry.pol
    Error 0x3 opening file
    C:\WINNT\System32\GroupPolicy.WksCache\User\Regist ry.pol
    File does not exist. Nonfatal error.
    Exiting AppendPolicy
    C:\WINNT\System32\GroupPolicy.WksCache\User\Regist ry.pol 0x0
    Entered AppendPolicy
    C:\WINNT\System32\GroupPolicy.WksCache\Machine\Reg istry.pol
    Error 0x3 opening file
    C:\WINNT\System32\GroupPolicy.WksCache\Machine\Reg istry.pol
    File does not exist. Nonfatal error.
    Exiting AppendPolicy
    C:\WINNT\System32\GroupPolicy.WksCache\Machine\Reg istry.pol 0x0
    Reading Group Policy Machine Flags from \HKLM\Software\Novell\Workstation
    Manager\Group Policies
    Reg key Software\Novell\Workstation Manager\Group Policies\Group Policy
    Machine Flags not found. Assuming 0
    Workstation flags: 0x0
    Entered MergeAndSavePolicies(0x0, C:\WINNT\System32\GroupPolicy.UserCache)
    Applying workstation, then user policies
    Entered MemAppendPolicy
    Added:
    Software\Microsoft\Windows\CurrentVersion\Policies \ActiveDesktop\NoChangingW
    allPaper
    Added:
    Software\Microsoft\Windows\CurrentVersion\Policies \Explorer\NoHardwareTab
    Added:
    Software\Microsoft\Windows\CurrentVersion\Policies \Explorer\NoWindowsUpdate
    Added:
    Software\Microsoft\Windows\CurrentVersion\Policies \Explorer\NoNetworkConnect
    ions
    Added:
    Software\Microsoft\Windows\CurrentVersion\Policies \Explorer\ForceStartMenuLo
    gOff
    Added:
    Software\Microsoft\Windows\CurrentVersion\Policies \Explorer\ClearRecentDocsO
    nExit
    Added:
    Software\Microsoft\Windows\CurrentVersion\Policies \Explorer\Intellimenus
    Added:
    Software\Microsoft\Windows\CurrentVersion\Policies \Explorer\NoSaveSettings
    Added:
    Software\Microsoft\Windows\CurrentVersion\Policies \Explorer\NoMovingBands
    Added:
    Software\Microsoft\Windows\CurrentVersion\Policies \Explorer\NoRecentDocsNetH
    ood
    Added:
    Software\Microsoft\Windows\CurrentVersion\Policies \Explorer\NoCloseDragDropB
    ands
    Added:
    Software\Microsoft\Windows\CurrentVersion\Policies \Explorer\NoActiveDesktop
    Added:
    Software\Microsoft\Windows\CurrentVersion\Policies \Explorer\NoControlPanel
    Added:
    Software\Microsoft\Windows\CurrentVersion\Policies \Explorer\NoDeletePrinter
    Trying to delete key:
    Software\Microsoft\Windows\CurrentVersion\Policies \Explorer, val:
    NoAddPrinter
    Added:
    Software\Microsoft\Windows\CurrentVersion\Policies \Explorer\**del.NoAddPrint
    er
    Trying to delete key:
    Software\Microsoft\Windows\CurrentVersion\Policies \Explorer, val:
    DisablePersonalDirChange
    Added:
    Software\Microsoft\Windows\CurrentVersion\Policies \Explorer\**del.DisablePer
    sonalDirChange
    Added:
    Software\Microsoft\Windows\CurrentVersion\Policies \Explorer\DisallowRun
    Trying to delete values under key:
    Software\Microsoft\Windows\CurrentVersion\Policies \Explorer\DisallowRun
    Added:
    Software\Microsoft\Windows\CurrentVersion\Policies \Explorer\DisallowRun\**de
    lvals.
    Added:
    Software\Microsoft\Windows\CurrentVersion\Policies \Explorer\DisallowRun\1
    Added:
    Software\Microsoft\Windows\CurrentVersion\Policies \Explorer\DisallowRun\2
    Added:
    Software\Microsoft\Windows\CurrentVersion\Policies \Explorer\DisallowRun\3
    Added:
    Software\Microsoft\Windows\CurrentVersion\Policies \Explorer\DisallowRun\4
    Added:
    Software\Microsoft\Windows\CurrentVersion\Policies \Explorer\DisallowRun\5
    Added:
    Software\Microsoft\Windows\CurrentVersion\Policies \Explorer\DisallowRun\6
    Added:
    Software\Microsoft\Windows\CurrentVersion\Policies \Explorer\DisallowRun\7
    Added:
    Software\Microsoft\Windows\CurrentVersion\Policies \Explorer\DisallowRun\8
    Added:
    Software\Microsoft\Windows\CurrentVersion\Policies \System\DisableRegistryToo
    ls
    Added:
    Software\Microsoft\Windows\CurrentVersion\Policies \System\DisableTaskMgr
    Trying to delete key:
    Software\Microsoft\Windows\CurrentVersion\Policies \System, val:
    DisableLockWorkstation
    Added:
    Software\Microsoft\Windows\CurrentVersion\Policies \System\**del.DisableLockW
    orkstation
    Added:
    Software\Microsoft\Windows\CurrentVersion\Policies \Uninstall\NoAddRemoveProg
    rams
    Added:
    Software\Microsoft\Windows\CurrentVersion\Policies \Uninstall\NoRemovePage
    Added:
    Software\Microsoft\Windows\CurrentVersion\Policies \Uninstall\NoAddPage
    Added:
    Software\Microsoft\Windows\CurrentVersion\Policies \Uninstall\NoWindowsSetupP
    age
    Added:
    Software\Microsoft\Windows\CurrentVersion\Policies \Uninstall\NoAddFromCDorFl
    oppy
    Added:
    Software\Microsoft\Windows\CurrentVersion\Policies \Uninstall\NoAddFromIntern
    et
    Added:
    Software\Microsoft\Windows\CurrentVersion\Policies \Uninstall\NoAddFromNetwor
    k
    Added:
    Software\Microsoft\Windows\CurrentVersion\Policies \WindowsUpdate\DisableWind
    owsUpdateAccess
    Added: Software\Policies\Microsoft\Conferencing\NoChat
    Added: Software\Policies\Microsoft\Conferencing\NoSharing
    Added: Software\Policies\Microsoft\Conferencing\NoSharing Desktop
    Added: Software\Policies\Microsoft\Conferencing\NoSharing DosWindows
    Added: Software\Policies\Microsoft\Conferencing\NoSharing Explorer
    Added: Software\Policies\Microsoft\Conferencing\NoAllowCo ntrol
    Added: Software\Policies\Microsoft\Conferencing\NoTrueCol orSharing
    Added: Software\Policies\Microsoft\Conferencing\NoAppShar ing
    Added: Software\Policies\Microsoft\Conferencing\NoGeneral Page
    Added: Software\Policies\Microsoft\Conferencing\NoAdvance dCalling
    Added: Software\Policies\Microsoft\Conferencing\NoSecurit yPage
    Added: Software\Policies\Microsoft\Conferencing\NoAudioPa ge
    Added: Software\Policies\Microsoft\Conferencing\NoVideoPa ge
    Added: Software\Policies\Microsoft\Internet Explorer\Control Panel\Advanced
    Added: Software\Policies\Microsoft\Internet Explorer\Control Panel\HomePage
    Added: Software\Policies\Microsoft\Internet Explorer\Control Panel\Cache
    Added: Software\Policies\Microsoft\Internet Explorer\Control Panel\Connwiz
    Admin Lock
    Added: Software\Policies\Microsoft\Internet Explorer\Control
    Panel\Connection Settings
    Added: Software\Policies\Microsoft\Internet Explorer\Control Panel\Proxy
    Added: Software\Policies\Microsoft\Internet Explorer\Control
    Panel\Autoconfig
    Added: Software\Policies\Microsoft\Internet Explorer\Control Panel\Profiles
    Added: Software\Policies\Microsoft\Internet Explorer\Control
    Panel\Certificates
    Added: Software\Policies\Microsoft\Internet Explorer\Control Panel\Ratings
    Added: Software\Policies\Microsoft\Internet Explorer\Control
    Panel\FormSuggest Passwords
    Added: Software\Policies\Microsoft\Internet Explorer\Control Panel\Messaging
    Added: Software\Policies\Microsoft\Internet Explorer\Control
    Panel\CalendarContact
    Added: Software\Policies\Microsoft\Internet Explorer\Control
    Panel\ContentTab
    Added: Software\Policies\Microsoft\Internet Explorer\Control
    Panel\ConnectionsTab
    Added: Software\Policies\Microsoft\Internet Explorer\Control
    Panel\ProgramsTab
    Added: Software\Policies\Microsoft\Internet Explorer\Control
    Panel\AdvancedTab
    Added: Software\Policies\Microsoft\MMC\RestrictAuthorMode
    Added:
    Software\Policies\Microsoft\MMC\{011BE22D-E453-11D1-945A-00C04FB984F9}\Restr
    ict_Run
    Added:
    Software\Policies\Microsoft\MMC\{1AA7F839-C7F5-11D0-A376-00C04FC9DA04}\Restr
    ict_Run
    Added:
    Software\Policies\Microsoft\MMC\{3CB6973D-3E6F-11D0-95DB-00A024D77700}\Restr
    ict_Run
    Added:
    Software\Policies\Microsoft\MMC\{53D6AB1D-2488-11D1-A28C-00C04FB94F17}\Restr
    ict_Run
    Added:
    Software\Policies\Microsoft\MMC\{58221C65-EA27-11CF-ADCF-00AA00A80033}\Restr
    ict_Run
    Added:
    Software\Policies\Microsoft\MMC\{58221C66-EA27-11CF-ADCF-00AA00A80033}\Restr
    ict_Run
    Added:
    Software\Policies\Microsoft\MMC\{58221C67-EA27-11CF-ADCF-00AA00A80033}\Restr
    ict_Run
    Added:
    Software\Policies\Microsoft\MMC\{5ADF5BF6-E452-11D1-945A-00C04FB984F9}\Restr
    ict_Run
    Added:
    Software\Policies\Microsoft\MMC\{5C659257-E236-11D2-8899-00104B2AFB46}\Restr
    ict_Run
    Added:
    Software\Policies\Microsoft\MMC\{5D6179C8-17EC-11D1-9AA9-00C04FD8FE93}\Restr
    ict_Run
    Added:
    Software\Policies\Microsoft\MMC\{677A2D94-28D9-11D1-A95B-008048918FB1}\Restr
    ict_Run
    Added:
    Software\Policies\Microsoft\MMC\{7478EF61-8C46-11d1-8D99-00A0C913CAD4}\Restr
    ict_Run
    Added:
    Software\Policies\Microsoft\MMC\{753EDB4D-2E1B-11D1-9064-00A0C90AB504}\Restr
    ict_Run
    Added:
    Software\Policies\Microsoft\MMC\{8EAD3A12-B2C1-11d0-83AA-00A0C92C9D5D}\Restr
    ict_Run
    Added:
    Software\Policies\Microsoft\MMC\{8F8F8DC0-5713-11D1-9551-0060B0576642}\Restr
    ict_Run
    Added:
    Software\Policies\Microsoft\MMC\{90087284-d6d6-11d0-8353-00a0c90640bf}\Restr
    ict_Run
    Added:
    Software\Policies\Microsoft\MMC\{95AD72F0-44CE-11D0-AE29-00AA004B9986}\Restr
    ict_Run
    Added:
    Software\Policies\Microsoft\MMC\{A841B6C2-7577-11D0-BB1F-00A0C922E79C}\Restr
    ict_Run
    Added:
    Software\Policies\Microsoft\MMC\{B91B6008-32D2-11D2-9888-00A0C925F917}\Restr
    ict_Run
    Added:
    Software\Policies\Microsoft\MMC\{C9BC92DF-5B9A-11D1-8F00-00C04FC2C17B}\Restr
    ict_Run
    Added:
    Software\Policies\Microsoft\MMC\{D967F824-9968-11D0-B936-00C04FD8D5B0}\Restr
    ict_Run
    Added:
    Software\Policies\Microsoft\MMC\{DEA8AFA0-CC85-11d0-9CE2-0080C7221EBD}\Restr
    ict_Run
    Added:
    Software\Policies\Microsoft\MMC\{E26D02A0-4C1F-11D1-9AA1-00C04FC3357A}\Restr
    ict_Run
    Added:
    Software\Policies\Microsoft\MMC\{E355E538-1C2E-11D0-8C37-00C04FD8FE93}\Restr
    ict_Run
    Added:
    Software\Policies\Microsoft\MMC\{EBC53A38-A23F-11D0-B09B-00C04FD8DCA6}\Restr
    ict_Run
    Added:
    Software\Policies\Microsoft\MMC\{FD57D297-4FD9-11D1-854E-00C04FC31FD3}\Restr
    ict_Run
    Added: Software\Policies\Microsoft\Windows\CurrentVersion \Internet
    Settings\AllowedControls\{D6526FE0-E651-11CF-99CB-00C04FD64497}
    Added: Software\Policies\Microsoft\Windows\NetCache\NoCon figCache
    Added: Software\Policies\Microsoft\Windows\NetCache\NoMak eAvailableOffline
    Added: Software\Policies\Microsoft\Windows\NetCache\NoCac heViewer
    Added: Software\Policies\Microsoft\Windows\Network Connections\NC_RasConnect
    Added: Software\Policies\Microsoft\Windows\Network Connections\NC_LanConnect
    Added: Software\Policies\Microsoft\Windows\Network
    Connections\NC_LanProperties
    Added: Software\Policies\Microsoft\Windows\Network
    Connections\NC_RasMyProperties
    Added: Software\Policies\Microsoft\Windows\Network
    Connections\NC_RasAllUserProperties
    Added: Software\Policies\Microsoft\Windows\Network
    Connections\NC_RenameConnection
    Added: Software\Policies\Microsoft\Windows\Network
    Connections\NC_RenameMyRasConnection
    Added: Software\Policies\Microsoft\Windows\Network
    Connections\NC_AddRemoveComponents
    Added: Software\Policies\Microsoft\Windows\Network
    Connections\NC_ChangeBindState
    Added: Software\Policies\Microsoft\Windows\Network
    Connections\NC_LanChangeProperties
    Added: Software\Policies\Microsoft\Windows\Network
    Connections\NC_RasChangeProperties
    Added: Software\Policies\Microsoft\Windows\Network
    Connections\NC_NewConnectionWizard
    Added: Software\Policies\Microsoft\Windows\Network
    Connections\NC_DialupPrefs
    Added: Software\Policies\Microsoft\Windows\Network
    Connections\NC_AdvancedSettings
    Added: Software\Policies\Microsoft\Windows\Network
    Connections\NC_ShowSharedAccessUI
    Added: Software\Policies\Microsoft\Windows\Network
    Connections\NC_AllowAdvancedTCPIPConfig
    Added: Software\Policies\Microsoft\Windows\System\Disable CMD
    Exiting MemAppendPolicy
    Entered MemAppendPolicy
    Nothing to append.
    Reading Group Policy Machine Flags from \HKLM\Software\Novell\Workstation
    Manager\Group Policies
    Reg key Software\Novell\Workstation Manager\Group Policies\Group Policy
    Machine Flags not found. Assuming 0
    Entered GPCopy(C:\WINNT\System32\GroupPolicy.WksCache,
    C:\WINNT\System32\GroupPolicy, 0, handle, 0x0)
    Error 3 copying C:\WINNT\System32\GroupPolicy.WksCache\GPT.ini to
    C:\WINNT\System32\GroupPolicy\GPT.ini
    GP_FLAG_APPLY_USER_SETTINGS (0x20), not set. Will not copy user folder
    GP_FLAG_APPLY_COMP_SETTINGS (0x10), not set. Will not copy machine folder
    GP_FLAG_APPLY_SECURITY_SETTINGS (0x40), not set, or security file already
    copied. Will not copy security file
    Error: no files copied.
    Exiting GPCopy 0x2
    Reading Group Policy User Flags from \HKLM\Software\Novell\Workstation
    Manager\Group Policies
    Read reg. value Group Policy User Flags: 0x80000060 in key
    Software\Novell\Workstation Manager\Group Policies
    Entered GPCopy(C:\WINNT\System32\GroupPolicy.UserCache,
    C:\WINNT\System32\GroupPolicy, 0, handle, 0x80000060)
    Copied C:\WINNT\System32\GroupPolicy.UserCache\GPT.ini to
    C:\WINNT\System32\GroupPolicy\GPT.ini
    Copied file
    C:\WINNT\System32\GroupPolicy.UserCache\User\MICRO SOFT\IEAK\install.ins to
    C:\WINNT\System32\GroupPolicy\User\MICROSOFT\IEAK\ install.ins
    Copied file C:\WINNT\System32\GroupPolicy.UserCache\User\Regis try.pol to
    C:\WINNT\System32\GroupPolicy\User\Registry.pol
    GP_FLAG_APPLY_COMP_SETTINGS (0x10), not set. Will not copy machine folder
    Copying security file
    Copied file
    C:\WINNT\System32\GroupPolicy.UserCache\Machine\Mi crosoft\Windows
    NT\SecEdit\GptTmpl.inf to
    C:\WINNT\System32\GroupPolicy\Machine\Microsoft\Wi ndows
    NT\SecEdit\GptTmpl.inf
    Copied file
    C:\WINNT\System32\GroupPolicy.UserCache\Machine\Mi crosoft\Windows
    NT\SecEdit\IPS1.dat to
    C:\WINNT\System32\GroupPolicy\Machine\Microsoft\Wi ndows NT\SecEdit\IPS1.dat
    Copied file
    C:\WINNT\System32\GroupPolicy.UserCache\Machine\Mi crosoft\Windows
    NT\SecEdit\IPS2.dat to
    C:\WINNT\System32\GroupPolicy\Machine\Microsoft\Wi ndows NT\SecEdit\IPS2.dat
    Copied file
    C:\WINNT\System32\GroupPolicy.UserCache\Machine\Mi crosoft\Windows
    NT\SecEdit\IPS3.dat to
    C:\WINNT\System32\GroupPolicy\Machine\Microsoft\Wi ndows NT\SecEdit\IPS3.dat
    Exiting GPCopy 0x0
    Entered writeData. File: C:\WINNT\System32\GroupPolicy\User\Registry.pol
    Exiting writeData 0x0
    Entered writeData. File: C:\WINNT\System32\GroupPolicy\Machine\Registry.pol
    No data.
    Exiting writeData 0x0
    Exiting MergeAndSavePolicies 0x0
    Entered GenerateGptFile(C:\WINNT\System32\GroupPolicy)
    g_dwVersion: 0xc200c1.
    Writing GPT Version to \HKLM\Software\Novell\Workstation Manager\Group
    Policies
    Wrote reg. value 0xc200c1 to GPT Version in key Software\Novell\Workstation
    Manager\Group Policies
    Exiting GenerateGptFile 0x0
    Exiting ApplyGroupPolicy 0x0
    Writing Group Policy User Status to \HKLM\Software\Novell\Workstation
    Manager\Group Policies
    Wrote reg. value 0x2000 to Group Policy User Status in key
    Software\Novell\Workstation Manager\Group Policies
    Writing Group Policy User Flags to \HKLM\Software\Novell\Workstation
    Manager\Group Policies
    Wrote reg. value 0x80000060 to Group Policy User Flags in key
    Software\Novell\Workstation Manager\Group Policies
    Writing Group Policy User Status to \HKLM\Software\Novell\Workstation
    Manager\Group Policies
    Wrote reg. value 0x3000 to Group Policy User Status in key
    Software\Novell\Workstation Manager\Group Policies
    Entered AppendSecuritySettings
    Inf path: C:\WINNT\System32\GroupPolicy\Machine\Microsoft\Wi ndows
    NT\SecEdit\GptTmpl.inf
    Dispatching SECEDIT.EXE /configure /DB ZENDB /CFG
    "C:\WINNT\System32\GroupPolicy\Machine\Microsoft\W indows
    NT\SecEdit\GptTmpl.inf" /log c:\GPSecApp.log.
    LoadHive entered
    LoadHive exit : 0
    Exiting AppendSecuritySettings 0x0
    Signalling OS to refresh policies
    RegQueryValueEx returned 2
    Policies are set to apply asynchronously
    Policies will be processed asynchronously
    Entered SetGptVersion(0x0, TRUE).
    Reading GPT Version from \HKLM\Software\Novell\Workstation Manager\Group
    Policies
    Read reg. value GPT Version: 0xc200c1 in key Software\Novell\Workstation
    Manager\Group Policies
    Read file C:\WINNT\System32\GroupPolicy\GPT.ini
    Found version 0xc200c1 in gpt.ini
    Using version: 0xc200c1
    Saving GPT version: 0xc300c2
    Writing GPT Version to \HKLM\Software\Novell\Workstation Manager\Group
    Policies
    Wrote reg. value 0xc300c2 to GPT Version in key Software\Novell\Workstation
    Manager\Group Policies
    Exiting SetGptVersion 0x0.
    Applied Computer Policy.
    Applied User Policy.
    Exiting ApplyPolicies 0x0
    Writing Last Run Time High to \HKLM\Software\Novell\Workstation
    Manager\Group Policies
    Wrote reg. value 0x1c4c14a to Last Run Time High in key
    Software\Novell\Workstation Manager\Group Policies
    Writing Last Run Time Low to \HKLM\Software\Novell\Workstation Manager\Group
    Policies
    Wrote reg. value 0xdd4dad14 to Last Run Time Low in key
    Software\Novell\Workstation Manager\Group Policies
    Apply user policies releasing mutex.
    Exiting WMHelperInteractiveUserEntry ccode: 0x0
    Closing log file.
    WMHelperInitialization (Sep 22 2003) called! Flags: 0x2001. Event: 0x2000.
    Impersonation: 0x1
    Opened Mutex.
    Loaded userenv.dll
    Mapped function RefreshPolicy
    Mapped function RegisterGPNotification
    Mapped function UnregisterGPNotification
    Exiting WMHelperInitialization. Returning flags: 0x11
    Entering WMHelperInteractiveUserEntry!
    szFullDN = CN=test2006.OU=2006.OU=STUDENTS.O=STJ
    DN is Typed convert it to TYPELESS
    g_szUserDN = test2006.2006.STUDENTS.STJ
    GinaGetUsersSIDInTextualForm ENTERED
    Textual SID : S-1-5-21-1908370602-1493435055-278805897-1055
    GinaGetUsersSIDInTextualForm EXIT : 0
    Writing Don't reparse to \HKLM\Software\Novell\Workstation Manager\Group
    Policies
    Wrote reg. value 0x0 to Don't reparse in key Software\Novell\Workstation
    Manager\Group Policies
    Current time high: 0x1c4c14a
    Reading Last Run Time High from \HKLM\Software\Novell\Workstation
    Manager\Group Policies
    Read reg. value Last Run Time High: 0x1c4c14a in key
    Software\Novell\Workstation Manager\Group Policies
    Previous time high: 0x1c4c14a
    Writing Don't reparse to \HKLM\Software\Novell\Workstation Manager\Group
    Policies
    Wrote reg. value 0x1 to Don't reparse in key Software\Novell\Workstation
    Manager\Group Policies
    Writing User Logged In to \HKLM\Software\Novell\Workstation Manager\Group
    Policies
    Wrote reg. value 0x1 to User Logged In in key Software\Novell\Workstation
    Manager\Group Policies
    Entered CheckForObsoleteWksCache CN=00:0D:60:40:D8:B7.OU=WORKSTATIONS.O=STJ.
    Full Object DN
    CN=00:0D:60:40:D8:B7.OU=WORKSTATIONS.O=STJ.OU=2006 .OU=STUDENTS.O=STJ
    Calling WMGetAllAssociatedObjects(FALSE, MANGO, 1,
    CN=00:0D:60:40:D8:B7.OU=WORKSTATIONS.O=STJ.OU=2006 .OU=STUDENTS.O=STJ, WINNT
    Workstation Package, zenwmGroupPolicy, 512, pBuffer)
    WMGetAllAssociatedObject returned 103
    No associated workstation policies. Deleting
    C:\WINNT\System32\GroupPolicy.WksCache.
    DeleteGPRegVal: Error 0x2 deleting Group Policy Machine Flags
    DeleteGPRegVal: Error 0x2 deleting Group Policy Machine Status
    Exiting CheckForObsoleteWksCache 103
    Applying user policies
    Reading Don't reparse from \HKLM\Software\Novell\Workstation Manager\Group
    Policies
    Read reg. value Don't reparse: 0x1 in key Software\Novell\Workstation
    Manager\Group Policies
    Reading Group Policy User Status from \HKLM\Software\Novell\Workstation
    Manager\Group Policies
    Read reg. value Group Policy User Status: 0x3000 in key
    Software\Novell\Workstation Manager\Group Policies
    Read reg. key Group Policy User Status: 0x3000
    Policy applied at predesktop. Skipping reapplication at user login.
    Writing Don't reparse to \HKLM\Software\Novell\Workstation Manager\Group
    Policies
    Wrote reg. value 0x0 to Don't reparse in key Software\Novell\Workstation
    Manager\Group Policies
    Writing Last Run Time High to \HKLM\Software\Novell\Workstation
    Manager\Group Policies
    Wrote reg. value 0x1c4c14a to Last Run Time High in key
    Software\Novell\Workstation Manager\Group Policies
    Writing Last Run Time Low to \HKLM\Software\Novell\Workstation Manager\Group
    Policies
    Wrote reg. value 0xe0da0d06 to Last Run Time Low in key
    Software\Novell\Workstation Manager\Group Policies
    Apply user policies releasing mutex.
    Exiting WMHelperInteractiveUserEntry ccode: 0x0
    Closing log file.

    Paul,
    It appears that in the past few days you have not received a response to your posting. That concerns us, and has triggered this automated reply.
    Has your problem been resolved? If not, you might try one of the following options:
    - Do a search of our knowledgebase at http://support.novell.com/search/kb_index.jsp
    - Check all of the other support tools and options available at http://support.novell.com in both the "free product support" and "paid product support" drop down boxes.
    - You could also try posting your message again. Make sure it is posted in the correct newsgroup. (http://support.novell.com/forums)
    If this is a reply to a duplicate posting, please ignore and accept our apologies and rest assured we will issue a stern reprimand to our posting bot.
    Good luck!
    Your Novell Product Support Forums Team
    http://support.novell.com/forums/

  • Group Policies not always applying

    I am seeing a problem when trying to apply group policies to windows xp
    worstations. Sometimes they apply and other times they will either
    partially apply or not apply at all.
    After some thorough investigation I have found that sometimes the
    directory stucture in "c:\windows\system32\grouppolicy" is just not being
    copied fully from the source. The Scheduled task to apply the GPO is
    always running but, seems to be before the grouppolicy directory has been
    updated.
    Enviroment is Netware 6.5sp5, zen 6.5sp2, winxp sp2, novell client 4.9sp2
    (also tried 4.91sp2). Problem has been around for some time (previous
    versions) and can be randomly replicated on different servers and in test
    enviroment.
    Note: have tried changing source for group policy to local pc and even
    this can fail, this along with other tests have rulled out network
    issues. Have noticed though that when enabling logging of zen management
    agents that the logging in process is slowed down and will help reduce
    the problem. Could be a log-in speed issue?
    Hope somebody can offer a solution. Thanks in advance.

    Unfortunately I cannot read much from your log file. But currently I am
    a bit confused about your setting.
    * Are you using a ZENworks User Policy Package or a ZENworks
    Workstation Policy Package? Or both (which means you have to care
    about concurrency)?
    * What is your schedule for the policy package and the GPOs (within
    the policy package)? The usual schedule for user policy packages
    is the user login.
    * If you have problems during user login, try a different schedule.
    * Is it correct, that the central and the local GPO path is not
    always synchronized by ZENworks? Then check access problems to the
    server/path (including name resolution, ...), check the ZENworks
    policy package schedule (in ConsoleOne and at the local
    workstation) and verify that the scheduled job is executed.
    * If the synchronization works, but the GPOs are not applied, it
    looks more like a Windows problem. There are a couple of Windows
    tools for testing this. Unfortunately I am not on site this week
    and I don't remember their names.
    * Yes, it is important to use the SP2 plugin for ConsoleOne.
    * It is also important that the workstation you create the policy
    package (with the mmc) and the workstation you apply the GPOs have
    exactly the same patch level.
    Keep in mind, that ZENworks distributes the policy files and Windows
    applies them. Therefore both processes must be considered separately.
    There could be said much more about GPOs, so please give us one concrete
    problem with clear boundaries (what you have tested).
    Regards, Simon
    Brendan Clifford schrieb:
    > Hi Simon,
    >
    > Thanks for the input, I have had a look at this tid already and this
    > pointed me in the direction of the gpo not copying from the server
    > properly to c:\windows\system32\group policy folder (some times). If
    > I copy the files off the server into the directory and run wnsched and
    > run the scheduled task to appy the policies they will work 100% of the
    > time.
    >
    > Odly sometimes the directory structure will be the same on the pc as
    > the server and GPO will not apply correctly. On these occasions if I
    > check wmsched all looks like it has run corectly. However if I run the
    > task again the policies will apply this time. It's just as though the
    > copy is to slow to happen sometimes > therefore the group policy is
    > always applying just the wrong one!!!!.
    >
    > I have also enabled the debug logs for zen 6.5 desktop management to
    > try and trace why the files are only partially copying or not copying
    > at all on the odd occasion. Does anybody know how to read these logs,
    > they look the same to me between working and not working and I can not
    > find in any log's where or when the group policy folder structure is
    > downloaded from the server. Except, when logging in as a new user the
    > wmgrppoluser.log does show copying of files to the group policy folder
    > on the local computer. I have attached the wmgrppoluser.log file below
    > of one time when it didn;t apply the policy properly.
    >
    >
    > -----------------------------------------------------------
    > -- DEBUG LOG FILE -- C:\Program
    > Files\Novell\ZENworks\DebugLogs\WMGrpPolUser.log
    > -----------------------------------------------------------
    > 06/23/2006 16:02:21 Entering WMHelperInteractiveUserEntry!
    > 06/23/2006 16:02:21 ProcessID: 2112
    > 06/23/2006 16:02:21 Wrote reg. value 0x0 to Don't reparse in key
    > Software\Novell\Workstation Manager\Group Policies
    > 06/23/2006 16:02:21 Wrote reg. value 0x1 to User Logged In in key
    > Software\Novell\Workstation Manager\Group Policies
    > 06/23/2006 16:02:21 GinaGetUsersSIDInTextualForm ENTERED
    > 06/23/2006 16:02:21 Textual SID :
    > S-1-5-21-987319440-1293364371-1211451425-1014
    > 06/23/2006 16:02:21 GinaGetUsersSIDInTextualForm EXIT : 0
    > 06/23/2006 16:02:21 Current time High: 29791882 Low:2541052678
    > 06/23/2006 16:02:21 Read reg. value Last Run Time High: 0x1c6968a in
    > key Software\Novell\Workstation Manager\Group Policies
    > 06/23/2006 16:02:21 Read reg. value Last Run Time Low: 0x91acceb4 in
    > key Software\Novell\Workstation Manager\Group Policies
    > 06/23/2006 16:02:21 Previous time High: 29791882 Low: 2444021428
    > 06/23/2006 16:02:21 Wrote reg. value 0x1 to Don't reparse in key
    > Software\Novell\Workstation Manager\Group Policies
    > 06/23/2006 16:02:21 Applying user policies
    > 06/23/2006 16:02:21 Read reg. value Don't reparse: 0x1 in key
    > Software\Novell\Workstation Manager\Group Policies
    > 06/23/2006 16:02:21 Read reg. value Group Policy User Status: 0x3000
    > in key Software\Novell\Workstation Manager\Group Policies
    > 06/23/2006 16:02:21 Read reg. key Group Policy User Status: 0x3000
    > 06/23/2006 16:02:21 Policy applied at predesktop. Skipping
    > reapplication at user login.
    > 06/23/2006 16:02:21 Wrote reg. value 0x0 to Don't reparse in key
    > Software\Novell\Workstation Manager\Group Policies
    > 06/23/2006 16:02:21 Wrote reg. value 0x1c6968a to Last Run Time High
    > in key Software\Novell\Workstation Manager\Group Policies
    > 06/23/2006 16:02:21 Wrote reg. value 0x97756306 to Last Run Time Low
    > in key Software\Novell\Workstation Manager\Group Policies
    > 06/23/2006 16:02:21 Apply user policies releasing mutex.
    > 06/23/2006 16:02:21 Exiting WMHelperInteractiveUserEntry ccode: 0

Maybe you are looking for