PDA

View Full Version : Admin can NOT access the roaming profiles


lynnaungko
November 17th, 2007, 07:46 PM
Hello All

I am a fairly new here, so if this topic has been posted here, I am so sorry for that.
And I am a IT student so please bare with me question.

My question is

" How to access to the roaming profile as admin without access denied?"

" How to grant the admin without taking ownership from the particular profile folder ?? because afterwards that particular account can't not log on anymore as roaming profile"


My server is MS 2003 server and client PC is xp pro.

"Profiles" folder is shared and full control for everyone.

When I log in from my client PC, each individual Profile folder is created as logon name(secuser1) in "Profiles" according to the profile path "\\lynnserver\profiles\secuser1" in the Profile property in User Account.


Not working
Even after user logged out, still access denied for the admin to view.:sad:

I tried GPO, Computer Configuration, Admin Templates, Add Admin group to roaming user profiles.:hmm:

And also, Computer Configuration, Admin Templates, Do not check for user ownership of Roaming Profile Folder - Not working as well:dizzy:

Last step, Take ownership from pecific profile folder, "secuser1" and grant full control to the admin account - then - I can access the profile and view all these folder in there such as favourite, local and deskstop etc.

BUT that roaming account is somehow not working anymore when I attempt to log on again and lead me to log on as local profile.:curse:

I did try with several user profile account such as secuser2,3,4 but no luck whatsoever!

Please help me from this mess, I just want to get in those profile without restrictions or any demage to the accounts for the back-up purpose.

Thanks millions in advance

lynnaungko
November 18th, 2007, 12:58 PM
You will have to seize ownership of the shared folders, then
assign appropriate permissions so that the users can still
access them.
thanks you again! I did what you told me to and it worked!

I took the ownership as admin from the particular profile from "secuser1" .
And grant the FULL permission to both "Admin" and "secuser1" account.
Admin could access evey files in that profile "secuser1".
Grant the ownership back to "secuser1" account again. Otherwise that account wont log on again! Dont know why!

As I mentioned previously, I ve done these > GPO, Computer Configuration, Admin Templates, Add Admin group to roaming user profiles.
And also, Computer Configuration, Admin Templates, Do not check for
user ownership of Roaming Profile Folder
But still have to grant the ownership back to "secuser1" account. No idea at all!!


And then I could sucessfully log in with that secuser1 account from my client computer.

But I still wonder, if I have 100 accounts to view or backup or any other reason, do i have to do exactly the same way for each one of the 100 accounts??

Please, share me if anyother easiest or pratical way to dealing this!

Thank you, for your help and interest in my case!:happy: