Group Policy Drive Mapping and Event ID 4

D

doctorkisow

We are experiencing an interesting situation. Our environment consists of 2016, 2012R2 and 2008R2 domain controllers in the following topography:

Forrest functional level (2008 R2):
|- EXAMPLE.org (2012 R2)
| |- DC1 (2016)
| |- DC2 (2016)
| |- DC3 (2012 R2)
|- SUBDOMAIN.EXAMPLE.org (2008 R2)
| |- DC1 (2016)
| |- DC2 (2016)
| |- DC3 (2008 R2)

We are having random users not get their drive mappings from group policy. These same machines all have EventID 4, Kerbros Ticket Errors.

A gpupdate /force /target: user and gpupdate /sync intermittently works and is typically broken again in a couple of hours.

We do have successful results from a dcdiag on all controllers, however no one can type in \\EXAMPLE.org to get to the SYSVOL and NETLOGIN shares, though you can get to them by typing \\EXAMPLE.org\SYSVOL and \\EXAMPLE.org\NETLOGIN

I feel that this could be an issue with permissions however have no idea where to look, any suggestions are greatly appreciated.

Continue reading...
 
Back
Top Bottom