Single Sign-On Script not able push down to Domain Users

|
  • 194
  • 6

Issue Description

In this scenario, user had follow guide to configure logon script on AD server, but still not able to push down the logon script to domain users.

Handling Process

1. After execute gpupdate /force on CMD it will generate 5 Event logs, one of the logs showing Certificate for local system with thumbprint is about to expired or already expired.


2. Click Start, type mmc, and then press ENTER.

4. On the File menu, click Add/Remove Snap-in, click Certificates, and then click Add.

5. Select the user or computer account that logged the error, and click Next.

7. In the console tree, click Certificates - Current User or Certificates (Local Computer), and then click Personal.

8. In the console tree, double-click Certificates, double-click Personal, and then click Certificates.

9. Locate the certificate with the thumbprint listed in the event log message.

10. From here you can see Domain Controller Certificates has expired.


Root Cause

Domain Controller Certificates expired

Solution

Renew Domain Controller Certificates
Faisal Posted 10 Aug 2021 07:04
  
Thank you very much for the information ...
Ellechar Lv4Posted 11 Aug 2021 09:06
  
Very nice article!
faizansami Lv2Posted 19 Jan 2022 13:26
  
Very nice article!
Raza Islam Lv3Posted 07 Jul 2022 18:41
  
Thank you very much for the information.
Raza Islam Lv3Posted 18 Jul 2022 20:40
  
Thank you very much for the information.
Raza Islam Lv3Posted 25 Jul 2022 16:15
  
Nice guidance.

I want to write a case
Doc ID: 4841
Author: Sangfor_Zheng
Updated: 2021-08-07 05:57
Version: