OU policy problem

J

Joe

I am trying to apply a GPO to an OU. The users in the OU
get the default doamin GPO but not the OU GPO. I have
looked at DNS and assume that its working since they
recieve the default GPO. I reviewed permissions on each OU
policy. gpresult shows default domain policy being applied
but not ou policy any suggestions on what i am overlooking?
 
S

Steven L Umbach

Hi Joe.

Don't necessarily assume dns is configured correctly whenever you have a
problem. Make sure domain controller is pointing to itself as it's preferred
dns server and that the domain computers point to domain controllers running
dns. I would start by running netdiag on the computers that the users are
not getting the policy from looking for failed tests/fatal warnings. Also be
sure you are configuring user configuration and not something like password
policy. Other things to look at are that the user configuration part of the
gpo is enabled, the gpo itself is enabled, the GPO's at a higher level do
not have "no override" configured and have the same settings defined, and
that the users are not logging on a computer that is in an container with
"loopback processing". It is also possible the policy has not propagated
yet. Using secedit as described in the link below on the domain controller
first and then the domain computer can speed propagation of policy. ---
Steve


http://support.microsoft.com/default.aspx?scid=kb;EN-US;227302
http://support.microsoft.com/default.aspx?scid=kb;en-us;810739
 
J

Joe

Steven
thanks for help on this. ended up removing OU policy
allowing propogation then re applying all worked well
after that.
Joe
 

Ask a Question

Want to reply to this thread or ask your own question?

You'll need to choose a username for the site, which only take a couple of moments. After that, you can post your question and our members will help you out.

Ask a Question

Top