GPO doesn't work

R

Raphael Pigulla

Hello,

I am fairly new to the Windows Server world so please be patient with
me ;-)
Here's my problem: We want the clients in our network to automatically
update themselves. But since we don't use IIS, I thought I'd just
install the SUS ADM and create a GP that forces the clients to get the
updates from the Microsoft update server directly. So this is what I
did:
* create a new OU directly under our domain (neighbouring Computers,
Users and such)
* create a new group withing that OU and add all client computers to
it (or rather the computers I am testing it on)
* create a new GP for that OU, imported the ADM and configured
the Windows Update section, leaving everything else untouched
* tick the GP's 'no override' option, just to make sure

So I thought this would be it, but obviously I'm missing something
cause it doesn't work. After logging in on the client as a domain
user, I ran gpresult. It said that the computer is a member of the
group I created but didn't receive any settings from my GPO.

Thanks for helping me out,
raph
 
G

Gary Mudgett [MSFT]

You need to have the actual computer accounts in the OU path in order for
the policy to apply. Policies are not applied to groups, but actual
accounts.

--
Gary Mudgett, MCSE, MCSA
Windows 2000/2003 Directory Services

=====================================================
When responding to posts, please "Reply to Group" via
your newsreader so that others may learn and benefit
from your issue.
=====================================================
This posting is provided "AS IS" with no warranties, and confers no rights.
 
R

Raphael Pigulla

You need to have the actual computer accounts in the OU path in order for
the policy to apply. Policies are not applied to groups, but actual
accounts.
Sorry but I'm not not quite sure what you mean. What is the 'OU path'
you're referring to and what are 'actual computer accounts'? I'm using
a german version so maybe I'm just a little confused by the different
terminology here (or plain dimwitted :)

regards,
Raphael
 
C

Chriss3

The Computer Accounts in Active Directory must be located in the particular
OU you try to apply the policy to.

--
Regards,

Christoffer Andersson
No email replies please - reply in the newsgroup
If the information was help full, you can let me know at:
http://www.itsystem.se/employers.asp?ID=1
 

Ask a Question

Want to reply to this thread or ask your own question?

You'll need to choose a username for the site, which only take a couple of moments. After that, you can post your question and our members will help you out.

Ask a Question

Top