Re: GPO settings not applied

Tech Tip: Click here to run a free scan for Windows Errors and optimize PC performance

From: Chriss3 (noSpamHere_at_chrisse.se)
Date: 02/05/04


Date: Thu, 5 Feb 2004 18:25:09 +0100

Hello robin

Apply Group Policy Permission is unchecked for Authenticated Users with in
the ACL for the particular GPO. Remember the Authenticated Users is a
dynamic built-in group. How ever if you want to filter out the policy to
apply it to a specific set of computers, users or groups, make sure threes
objects are within the OU and threes objects are added the ACL of the
particular GPO with at least Read and Apply Group Policy Permissions

-- 
Regards,
Christoffer Andersson
No email replies please - reply in the newsgroup
If the information was help full, you can let me know at:
http://www.itsystem.se/employers.asp?ID=1
"robin" <anonymous@discussions.microsoft.com> skrev i meddelandet
news:F47DF6E1-61B2-4D73-BA9B-D2EF97957B7C@microsoft.com...
> Hi,
>
> Server :-                WIN2K (SP3)
> Active Directory using GPO to control
> is a Domain Controller
> Domain Name = TestDomain
>
> Client PC   :- Win2K Professional (SP4) under Domain that is connected to
server
>
>
> 1) I created a new OU under TestDomain - new - org unit - TestOU.
>
> 2) Next, I created a new group under TestOU - new - Group - TestGP. Next,
I add a member ComputerA (it is inside Computer container,  ComputerA is a
client under TestDomian) to TestGP.
>
> 3) I also created a new user called TestUser (inside User container)
>
> 3) I create a GPO under TestOU by Rt-Click - Properties - Group Policy -
New - TestGPO.
>
> 4) Under Apply Group Policy, I add the TestGP and TestUser to apply the
Group Policy by checking the box. I also unchecked the box for Authenticated
user.
>
> 5) I've checked my Default Domain Policy, the "Authenticated Users" is
unchecked for Apply Group Policy
>
> Prob: the TestGPO is not applied when
>        a) I log in using ID: TestUser on ComputerA
>
> When I run Gpresult, it shows that the local policy is being applied. The
TestGPO is not being applied either to the computer or user. From Start Menu
and Task Bar - Enabled - "Remove Search from Start Menu" and "Remove Help
from Start Menu"
> Anyone any idea what is the problem?
>
>
> thanx
> robin
>


Relevant Pages

  • Remove Add or Remove Programs GPO Question
    ... Programs" GPO but with the following stipulations: ... I have created an OU with the desktop computer accounts and an OU with the ... Authenticated Users - Allow Apply Group Policy ...
    (microsoft.public.windows.server.active_directory)
  • Re: GP Is inaccessable
    ... >authenticated users would have both and if authenticated users does not try ... >you have Group Policy loopback processing enabled in the GPO linked to the ... >> server on windows 2003 server w/sp1. ...
    (microsoft.public.windows.group_policy)
  • RE: Logon script not running for group policy
    ... regarding to your suggestion of a couple of checks: ... verify that the user*is found in the OU where GP is created ... > and Apply Group Policy) or is a member of one of the groups with these ... > (e.g. Authenticated Users) ...
    (microsoft.public.win2000.advanced_server)
  • Re: Authenticated users
    ... all user and computer accounts are included in Authenticated Users. ... Check out http://www.gpoguy.com -- The Windows Group Policy Information Hub: ... "Mike" wrote in message ...
    (microsoft.public.win2000.group_policy)
  • Re: Authenticated users
    ... all user and computer accounts are included in Authenticated Users. ... Check out http://www.gpoguy.com -- The Windows Group Policy Information Hub: ... "Mike" wrote in message ...
    (microsoft.public.windows.group_policy)