Hi all!
I have a big problem with one of our customers.
We hava a WAN with one AD domain. All customer are separated in the
WAN but they can reach our resorces such as DC, e-mail etc. etc.
At som clients I have implemented secure wireless with 802.1x
authentication. This is working on all implementations but one.
They use the same domain policy and all the GPO used for the wireless
is made from the same dokumentation.
The problem is that the group policy processing is interupted somehow
and a temporary profile is loaded.
I can see in the IAS logs that the computer is authenticated but I can
´t see the user authentication which could be that the temp. profile
is loaded and does not contain a user cert.
I went to the site and installed a new PC and that PC worked as it
should and they told me that the problem often occurs for travelling
user who has been working from home, getting a private address from
their home wireless and then return to the office.
I have a userenv.log if that is to any use but it´s rather big so I don
´t want to post it if it is to no use.
I have lowerd the limit for slow networks, applied the "wait for
network" gpo setting and the reg. key
GpNetworkStartTimeoutPolicyValue
I have probably missed some info but I´ll gladly answer all
questions.
All help is really appreciated.
Cheers
//G
|