Limitations With Group Policy Management; Users Cannot Log In If They Are Moved From A Non-Domain Partition To A Dsfw Domain Partition; Members Of Grouppolicy Creator Owner Group Cannot Change The Active Dfs Referral; Ignore Warnings While Backing Up Group Policies - Novell OPEN ENTERPRISE SERVER 2.0 SP2 - DOMAIN SERVICE FOR WINDOWS Manual

Hide thumbs Also See for OPEN ENTERPRISE SERVER 2.0 SP2 - DOMAIN SERVICE FOR WINDOWS:
Table of Contents

Advertisement

This utility when invoked finds the domain controllers for the domain and initiates the
synchronization process with them, contacting one domain controller at a time.During the
synchronization only the changes are transferred and not the entire data. This helps in faster
synchronization between the domain controllers. All the POSIX file permissions and ACLs are
retained during transfer.
For intermediate synchronization, you can invoke the utility using the following command:
/opt/novell/xad/sbin/sysvolsync
During the synchronization the changes are transferred from the first domain controller(holding the
PDC Emulator role) to the other domain controllers.
The details of synchronization events are captured in
sysvolsync.log

14.4 Limitations with Group Policy Management

Section 14.4.1, "Users Cannot Log In if They Are Moved From a Non-Domain Partition to a
DSfW Domain Partition," on page 152
Section 14.4.2, "Members of GroupPolicy Creator Owner group cannot change the active DFS
Referral," on page 152
Section 14.4.3, "Ignore Warnings while Backing up Group Policies," on page 152
Section 14.4.4, "WMI Filters Cannot be Applied for Processing GPOs," on page 153
14.4.1 Users Cannot Log In if They Are Moved From a Non-
Domain Partition to a DSfW Domain Partition
If a user with a Universal password policy is moved from non-domain partition to a DSfW partition,
the user will not be able to login into the DSfW domain.
To resolve this issue, delete the old password policy using iManager. After this step is done, the user
will be able to login to the workstation.
14.4.2 Members of GroupPolicy Creator Owner group cannot
change the active DFS Referral
If a member of the GroupPolicy Creator Owner group tries editing the group policy through the
Group Policy Management Console(GPMC), and if the GPMC is referring the ADC, the user will
not be permitted to change the DFS referral to make it point to the first domain controller. To make
changes, you will require administrator privileges

14.4.3 Ignore Warnings while Backing up Group Policies

You might get 'access denied' warnings while backing up Group Policies in XP and Vista clients
connected to DSfW. It is safe to ignore them.
152 OES 2 SP2: Domain Services for Windows Administration Guide
file.
/var/opt/novell/xad/log/

Advertisement

Table of Contents
loading
Need help?

Need help?

Do you have a question about the OPEN ENTERPRISE SERVER 2.0 SP2 - DOMAIN SERVICE FOR WINDOWS and is the answer not in the manual?

Subscribe to Our Youtube Channel

Table of Contents