GPO on an OU, no action on the groups contained in...

M

Maune

I've got some problems using active directory and the
group policies.

We are working with lots of organizationnal units on wich
we are placing the group policies.
In those Organizationnal units, we are placing some users,
and it works fine. But when we are placing security groups
in it, it stops working. Not any user of this group take
effects of the policies.

I seeked help on internet, but cannot find anything.
On a microsoft page, it's said that's impossible but on
other ones, it says it's possible.
Wich should I trust?

If it's impossible I'll consider it like a problem. It
cannot be impossible or that will restrain the field of
action of the active directory's security.

Sorry for the probably lots of English faults... it's not
my mother tongue...
 
M

Matjaz Ladava

Hope I understand you question. GPO's are applied only on computer object
and user object in OU and not to the group objects. So, if you have a
security group in a OU which has users inside, but this users reside in
different OU's, then users won't get policy, which is defined in OU of
security group.
You can use gpresult tool to get a log what policy was applied to the user.

--
Regards

Matjaz Ladava, MCSE (NT4 & 2000)
(e-mail address removed)
http://ladava.com
 

Ask a Question

Want to reply to this thread or ask your own question?

You'll need to choose a username for the site, which only take a couple of moments. After that, you can post your question and our members will help you out.

Ask a Question

Top