Вот все события с момента загрузки в журнале Application:
1.Event Type: Information
Event Source: MSDTC
Event Category: TM
Event ID: 4097
Date: 2/8/2005
Time: 11:19:32 AM
User: N/A
Computer: ZKV
Description:
MS DTC started with the following settings:
Security Configuration (OFF = 0 and ON = 1):
Network Administration of Transactions = 0,
Network Clients = 0,
Distributed Transactions using Native MSDTC Protocol = 0,
Transaction Internet Protocol (TIP) = 0,
XA Transactions = 1
For more information, see Help and Support Center at
http://go.microsoft.com/fwlink/events.asp.
2. Event Type: Information
Event Source: SceCli
Event Category: None
Event ID: 1704
Date: 2/8/2005
Time: 11:19:41 AM
User: N/A
Computer: ZKV
Description:
Security policy in the Group policy objects has been applied successfully.
For more information, see Help and Support Center at
http://go.microsoft.com/fwlink/events.asp.
3.Event Type: Error
Event Source: Userenv
Event Category: None
Event ID: 1085
Date: 2/8/2005
Time: 11:19:43 AM
User: NT AUTHORITY\SYSTEM
Computer: ZKV
Description:
The Group Policy client-side extension IP Security failed to execute. Please look for any errors reported earlier by that extension.
For more information, see Help and Support Center at
http://go.microsoft.com/fwlink/events.asp.
4.Event Type: Error
Event Source: Userenv
Event Category: None
Event ID: 1091
Date: 2/8/2005
Time: 11:19:43 AM
User: NT AUTHORITY\SYSTEM
Computer: ZKV
Description:
The Group Policy client-side extension IP Security failed to log RSOP (Resultant Set of Policy) data. Please look for any errors reported earlier by that extension.
For more information, see Help and Support Center at
http://go.microsoft.com/fwlink/events.asp.
Интересно. что до третьего события никаких ошибок нет.
Что касается winlogon.log то там все выполняется успешно. На всякий случай приведу лог за сегодняшнее число:
-------------------------------------------
8 февраля 2005 г. 11:19:40
Copy undo values to the merged policy.
----Configuration engine was initialized successfully.----
----Reading Configuration Template info...
----Configure User Rights...
Configure S-1-5-32-544.
Configure S-1-5-32-545.
User Rights configuration was completed successfully.
----Configure Security Policy...
Configure password information.
Configure account force logoff information.
Rename the Administrator account to dadmin.
Rename the Guest account to g.
System Access configuration was completed successfully.
Configure log settings.
Audit/Log configuration was completed successfully.
Configure machine\software\microsoft\windows\currentversion\policies\system\disablecad.
Configure machine\software\microsoft\windows\currentversion\policies\system\dontdisplaylastusername.
Configure machine\software\microsoft\windows\currentversion\policies\system\shutdownwithoutlogon.
Configure machine\system\currentcontrolset\control\lsa\restrictanonymous.
Configuration of Registry Values was completed successfully.
----Configure available attachment engines...
Configuration of attachment engines was completed successfully.
----Un-initialize configuration engine...
this is the last GPO.
Посмотрел с помощью RSOP действующую политику для данного компьютера. Политики безопастности, аудита, и т.п. применяются нормально, а в разделе IP security policies on local computer пусто.
Может IPsecurity windows2003 не совместим с win2k и нужно контроллеры домена апгрейдить до win2003?