gpo filtering

M

Mr555

hi all i am havng difficultly getting the user configuration apply to ou . i
am testing a flat structure AD, at the moment i have linked 7 GPO to 1 OU
called Server , 4 gpo linked to users. instead of using child OU to control
gpo, i want to control gpo via filtering , if i remove auththnticate user
group from the filtering and add custom group to those ou user configuration
will not apply. is this normally ?

thank you
 
F

Florian Frommherz [MVP]

Howdie!
hi all i am havng difficultly getting the user configuration apply to ou . i
am testing a flat structure AD, at the moment i have linked 7 GPO to 1 OU
called Server , 4 gpo linked to users. instead of using child OU to control
gpo, i want to control gpo via filtering , if i remove auththnticate user
group from the filtering and add custom group to those ou user configuration
will not apply. is this normally ?

Extensive use of so-called security filtering can lead to longer GP
processing times - so if the choice can be made between re-structuring
OUs and security filtering, I'd always choose the re-structuring of the OUs.

Anyway, the permissions needed on the GPOs are "Read" and "Apply Group
Policy". Make sure you have those two assigned to the security group you
created. Also make sure the user objects are still in the OU you linked
the policy to. You cannot replace the user objects with the security
groups in the OU (you can for permissions, but the user objects still
need to be in the OU).

cheers,

Florian
 

Ask a Question

Want to reply to this thread or ask your own question?

You'll need to choose a username for the site, which only take a couple of moments. After that, you can post your question and our members will help you out.

Ask a Question

Top