Hi
GPO's only apply to user or computer objects. You can't apply them based
on the OU membership of groups. You can however filter the application of
these GPO's to users by changing the security on the GPO to deny "Apply
Group Policy". For example, you may have a domain level policy that you'd
like to have applying to all users except Domain Admins. In this case
you'd set security so that Domain Admins are denied "Apply Group Policy".
Kind regards
--
Mark Renoden [MSFT]
Windows Platform Support Team
Email: (e-mail address removed)
Please note you'll need to strip ".online" from my email address to email
me; I'll post a response back to the group.
This posting is provided "AS IS" with no warranties, and confers no
rights.
kevdmcse said:
I want to be able to assign a Group Policy to an OU, but prefer to put a
Security Group into that OU rather than all of the individual users. Can
Group Policies be assigned that way or does the user object need to be
within
the OU to be assigned the policy?