Hi, We have 2 x DC (Server 2008 R2 & Server 2012 R2). When login to the domain computers (Windows 10) using one of the domain user account or to the domain controller (Server 2012 R2) using domain administrator account we are getting following error on event viewer:
Event ID: 1030 - The processing of Group Policy failed. Windows attempted to retrieve new Group Policy settings for this user or computer. Look in the details tab for error code and description. Windows will automatically retry this operation at the next refresh cycle. Computers joined to the domain must have proper name resolution and network connectivity to a domain controller for discovery of new Group Policy objects and settings. An event will be logged when Group Policy is successful.
gpupdate /force throws following
gpupdate /force
Updating policy...
Computer Policy update has completed successfully.
User Policy could not be updated successfully. The following errors were encountered:
The processing of Group Policy failed. Windows attempted to retrieve new Group Policy settings for this user or computer. Look in the details tab for error code and description. Windows will automatically retry this operation at the next refresh cycle. Computers joined to the domain must have proper name resolution and network connectivity to a domain controller for discovery of new Group Policy objects and settings. An event will be logged when Group Policy is successful.
To diagnose the failure, review the event log or run GPRESULT /H GPReport.html from the command line to access information about Group Policy results.
GPRESULT /H GPReport.html
INFO: The user "domain\user1" does not have RSoP data.
All the machine GPO are working, however none of the user’s gpo works on Win 10. There are no security filtering on the GPO. Computers & Users GPO works fine on Windows 7.
I have ran dcdiag on domain controllers and they come out clean.
I can successfully ping dc.domain.com or access \dc.domain.com\netlogon or \dc.domain.com\sysvol from the domain computers.
Any help on this will be much appreciated, thank you.
3 Spice ups
vinceob
(vinceob)
2
Try this…
Make sure Authentication Users have Read permissions.
that update is already installed on the DC (Server 2012). Windows 10 1709 all latest update installed.
all users GPO has Authenticated Users - Read.
There can be many reason for 1030 event id,GPO is corrupted,permission error etc. Read below links to resolve the issue.
http://eventid.net/display.asp?eventid=1030&eventno=1542&source=Userenv&phase=1
Event ID 1030 — Group Policy Preprocessing:
Hi Rupesh,Same GPO applies to the same users who logon to the Windows 7 machines which means it is not corrupted or permission issue.
Event ID 1030, the event occurs when the query for Group Policy object information fails, usually because it cannot contact the domain controller.
Troubleshooting Group Policy Using Event Logs:
Also check this earlier discussion:
Computer based group policies are working fine, its the user based policy which are not getting applied at all. If the computer is unable to contact the domain controller then computer based policy should not work as well isnt it ?
GPResult gave me following for the User Configuration
Group Policy Infrastructure failed due to the error listed below.
Unspecified error
Note: Due to the GP Core failure, none of the other Group Policy components processed their policy. Consequently, status information for the other components is not available