on my windows 10 machine, i get this error while doing GPUPDATE /FORCE

“The processing of Group Policy failed. Windows attempted to read the file \\SysVol<domainname>\Policies{4560EDE3-B896-4FF4-98C1-6ACE5F899240}\gpt.ini from a domain controller and was not successful. Group Policy settings may not be applied until this event is resolved. This issue may be transient and could be caused by one or more of the following:
a) Name Resolution/Network Connectivity to the current domain controller.
b) File Replication Service Latency (a file created on another domain controller has not replicated to the current domain controller).
c) The Distributed File System (DFS) client has been disabled.”

it all started after i added the group “domain computers” / “authenticated users” with read acces to the delegation tab of the GPOs affected by the june 14 updates. i can still not read a single GPO.

anyone seen something similar and could resolve it?

2 Spice ups

did you try adding “authenticated users” to the delegates tab with READ access too?

Could it be related to this?

2 Spice ups

yes i tried adding both authenticated users and domain computers and i still get this message.

thank you gabrielle, this was in the article you mentionned and this might help!

One more thing
We also released MS16-075 / KB 3161561 in June 2016 to patch some SMB items. SYSVOL and Netlogon use SMB. There have been reports of users getting Access Denied when trying to access \\domain.fqdn\sysvol or \\domain\sysvol.

If you are experiencing this error, the current workaround is to set the SmbServerNameHardeningLevel registry value to 0 on the DCs. It is not needed on the other servers. If you experience this issue on other DFS servers, see the KB for the updated workaround info for those servers. Specifics are detailed in the KB 3161561 article.
1 Spice up

it worked ! thank you

Gabrielle.L

Glad you got it working!