Microsoft group policy's are not updating on IPSec tunnel link

Unanswered Question
Mar 12th, 2008
User Badges:

One of my client has got IPsec over Gre configured on his network. Things were going pretty well since last 1 year, but suddenly the Microsoft AD group policies are not updating through the tunnel. However the same is working fine through the ISDN link, configured as a backup link.


  • 1
  • 2
  • 3
  • 4
  • 5
Overall Rating: 0 (0 ratings)
gojericho0 Thu, 03/13/2008 - 06:33
User Badges:
  • Bronze, 100 points or more

Would you be able to run a gpresult from GPMC on a PC/user that connects over IPsec? Once you do that you can see what part of policy is failing. This is normally a good place to start when trouble shooting group policy.

Also has any GP changes been made right before it stopped working?

satishy_2 Thu, 03/13/2008 - 06:40
User Badges:

Well, nothing has been changed from AD as well as on network side.

Suddenly it get started from feb 29th.

gojericho0 Thu, 03/13/2008 - 07:43
User Badges:
  • Bronze, 100 points or more

How about from the client side? The client records group policy process informtation as well C:\WINDOWS\Debug\UserMode\Userenv.log

Follow the instructions here to enable:

Did the GPMC gpresult query show any gpo failures?


This Discussion