none
GPO Not Applying - Filtering: Not Applied (Empty)

    Question

  • I have been trying to apply a folder redirection GPO to an already existing and working GPO that redirects Documents entirely. This GPO redirects Photos, Videos, Music to a network shared folder. I keep having trouble for the GPO to update.

    It's labeled: My Docs Redirection and Login Script - Filtering: Not Applied (Empty). Can anyone shed some light on this? I've been trying to figure this out for over a week. Here are the logs for my own user that can't catch the GPO update. And yes I've tried every gpupdate /force variation you could think of.

    The GPO was made under User Settings, but it showing as denied under Computer Settings. I am not sure why that is.

    Microsoft Windows [Version 6.1.7601]
    Copyright (c) 2009 Microsoft Corporation.  All rights reserved.

    C:\Windows\system32>gpresult /r

    Microsoft (R) Windows (R) Operating System Group Policy Result tool v2.0
    Copyright (C) Microsoft Corp. 1981-2001

    Created On 5/23/2016 at 8:14:34 AM


    RSOP data for FMDH-GC\fburry-admin on FPC004 : Logging Mode
    ------------------------------------------------------------

    OS Configuration:            Member Workstation
    OS Version:                  6.1.7601
    Site Name:                   FMDH-GC
    Roaming Profile:             N/A
    Local Profile:               C:\Users\fburry-admin
    Connected over a slow link?: No


    COMPUTER SETTINGS
    ------------------
        CN=FPC004,OU=Computers,OU=Glasgow,DC=fmdh,DC=gc
        Last time Group Policy was applied: 5/23/2016 at 7:43:26 AM
        Group Policy was applied from:      DC01.fmdh.gc
        Group Policy slow link threshold:   500 kbps
        Domain Name:                        FMDH-GC
        Domain Type:                        Windows 2000

        Applied Group Policy Objects
        -----------------------------
            Add Groups to Local Administrators Group
            Sophos Outlook Add-in
            Visual Studio 2010 Tools x64
            Default Domain Policy
            Sophos-Generated Certificate Installer
            Local Group Policy

        The following GPOs were not applied because they were filtered out
        -------------------------------------------------------------------
            My Docs Redirection and Login Script
                Filtering:  Not Applied (Empty)

            Outlook Items Redirect
                Filtering:  Not Applied (Empty)

            Visual Studio 2010 Tools x86
                Filtering:  Denied (WMI Filter)
                WMI Filter: x86

        The computer is a part of the following security groups
        -------------------------------------------------------
            BUILTIN\Administrators
            Everyone
            SophosUser
            BUILTIN\Users
            NT AUTHORITY\NETWORK
            NT AUTHORITY\Authenticated Users
            This Organization
            FPC004$
            Domain Computers
            System Mandatory Level


    USER SETTINGS
    --------------
        CN=Ryan Burns\, Admin,OU=Domain-Admins,OU=Users,OU=Glasgow,DC=fmdh,DC=gc
        Last time Group Policy was applied: 5/20/2016 at 12:08:12 PM
        Group Policy was applied from:      DC01.fmdh.gc
        Group Policy slow link threshold:   500 kbps
        Domain Name:                        FMDH-GC
        Domain Type:                        Windows 2000

        Applied Group Policy Objects
        -----------------------------
            Disable IE First Run
            Default Domain Policy
            Local Group Policy
            Disable IE First Run
            Default Domain Policy
            Local Group Policy

        The following GPOs were not applied because they were filtered out
        -------------------------------------------------------------------
            Sophos-Generated Certificate Installer
                Filtering:  Not Applied (Empty)

            Sophos Outlook Add-in
                Filtering:  Denied (Security)

            Sophos-Generated Certificate Installer
                Filtering:  Not Applied (Empty)

            Kiosk Users
                Filtering:  Denied (Security)

            Kiosk Users
                Filtering:  Denied (Security)

            Outlook Items Redirect
                Filtering:  Not Applied (Empty)

            Outlook Items Redirect
                Filtering:  Not Applied (Empty)

            Visual Studio 2010 Tools x64
                Filtering:  Denied (Security)

            Add Groups to Local Administrators Group
                Filtering:  Not Applied (Empty)

            Visual Studio 2010 Tools x86
                Filtering:  Denied (Security)

        The user is a part of the following security groups
        ---------------------------------------------------
            Domain Users
            Everyone
            SophosUser
            SophosAdministrator
            BUILTIN\Users
            BUILTIN\Administrators
            NT AUTHORITY\INTERACTIVE
            CONSOLE LOGON
            NT AUTHORITY\Authenticated Users
            This Organization
            LOCAL
            ECWLDAP
            ESX Admins
            Domain Admins
            Group Policy Creator Owners
            Organization Management
            Denied RODC Password Replication Group
            High Mandatory Level


    • Edited by RyanBernsz Monday, May 23, 2016 2:41 PM edit
    Monday, May 23, 2016 2:38 PM

Answers

  • Hi,
    Regarding this error, please check if you have configured option “Move contents to new location" option in the GPO and the location \\r2\Photos\fburry\Pictures is set with read-only permission.
    In this case, please unselect it and run gpupdate /force command on domain controller, then logoff/on user or reboot client to see if the error disappear.

    Regards,
    Wendy


    Please remember to mark the replies as answers if they help and un-mark them if they provide no help. If you have feedback for TechNet Subscriber Support, contact tnmff@microsoft.com.

    Tuesday, May 24, 2016 5:36 AM
    Moderator
  • Yes, I have read that article. And it is linked to an OU with my users. In my event logs at boot, I found this.

    Windows Event 502:

    Failed to apply policy and redirect folder "Pictures" to "\\R2\User\fburry\My Pictures".
     Redirection options=0x80009001.  The following error occurred: "Failed to build the list of regular subfolders under "\\r2\Photos\fburry\Pictures"".
     Error details: "Access is denied.
    ".


    The Access Denied error may be caused by incorrect permission setting - check your share permission, give full control and try to isolate.

    Devaraj G | Technical solution architect

    Tuesday, May 24, 2016 10:38 AM

All replies

  • It is empty there because there are no computer side settings in that GPO. Folder redirection is a user side setting. You need to link the GPO to an OU containing your users.

    Here is a troubleshooting guide to Group Policy that may help you: https://deployhappiness.com/top-10-ways-to-troubleshoot-group-policy/


    If my answer helped you, check out my blog: Deploy Happiness

    Monday, May 23, 2016 2:43 PM
  • Yes, I have read that article. And it is linked to an OU with my users. In my event logs at boot, I found this.

    Windows Event 502:

    Failed to apply policy and redirect folder "Pictures" to "\\R2\User\fburry\My Pictures".
     Redirection options=0x80009001.  The following error occurred: "Failed to build the list of regular subfolders under "\\r2\Photos\fburry\Pictures"".
     Error details: "Access is denied.
    ".


    • Edited by RyanBernsz Monday, May 23, 2016 3:29 PM
    Monday, May 23, 2016 3:20 PM
  • Hi,
    Regarding this error, please check if you have configured option “Move contents to new location" option in the GPO and the location \\r2\Photos\fburry\Pictures is set with read-only permission.
    In this case, please unselect it and run gpupdate /force command on domain controller, then logoff/on user or reboot client to see if the error disappear.

    Regards,
    Wendy


    Please remember to mark the replies as answers if they help and un-mark them if they provide no help. If you have feedback for TechNet Subscriber Support, contact tnmff@microsoft.com.

    Tuesday, May 24, 2016 5:36 AM
    Moderator
  • Yes, I have read that article. And it is linked to an OU with my users. In my event logs at boot, I found this.

    Windows Event 502:

    Failed to apply policy and redirect folder "Pictures" to "\\R2\User\fburry\My Pictures".
     Redirection options=0x80009001.  The following error occurred: "Failed to build the list of regular subfolders under "\\r2\Photos\fburry\Pictures"".
     Error details: "Access is denied.
    ".


    The Access Denied error may be caused by incorrect permission setting - check your share permission, give full control and try to isolate.

    Devaraj G | Technical solution architect

    Tuesday, May 24, 2016 10:38 AM