Re: Some policy's do not apply to user

From: Derek Melber [MVP] (derekm_at_braincore.net)
Date: 03/11/04


Date: Thu, 11 Mar 2004 08:00:45 -0700

The difference between Everyone and Authenticated Users is Everyone includes
Anonymous most of the time. So, this should be ok. However, you only say
READ, but not APPLY GROUP POLICY. Does the group have AGP permission?

-- 
Derek Melber
University of Phoenix Online
Faculty Candidate
dmelber@email.uophx.edu
<anonymous@discussions.microsoft.com> wrote in message
news:b09a01c40748$41b335c0$a101280a@phx.gbl...
> "Authenticated Users" is listed with read permission.
> There are no groups that Deny in this OU.
> Will there be any differ if "Everyone" is added with read
> permission?
>
>
> >-----Original Message-----
> >sounds like there is ACL filtering configured on the GPO
> that does not apply
> >to all user accounts. Make sure the ACL has Everyone
> listed with Apply Group
> >Policy and Read permissions. Also, make sure there is NOT
> another group that
> >is DENIED one of these permissions on the same GPO ACL.
> >
> >-- 
> >Derek Melber
> >University of Phoenix Online
> >Faculty Candidate
> >dmelber@email.uophx.edu
> >"Tommy" <anonymous@discussions.microsoft.com> wrote in
> message
> >news:a00a01c40683$e8ff3ba0$a001280a@phx.gbl...
> >> I've got "a lot" of GPO's controlling my win2000
> >> environment. But lately, in just one part (one OU), all
> >> users have trouble getting all my policy settings. Some
> of
> >> them is applyied, but others don't.
> >> I did a test by making yet another GPO with some of the
> >> settings that did not apply. And that worked! However,
> >> when a new user is created, the GPO is not applyied
> until
> >> I make a "change" in the test GPO.
> >> Any idea?
> >
> >
> >.
> >


Relevant Pages

  • Re: GPResult lists machine policy as "Denied (Security)." Dont kn
    ... Okay well it must have been a permission somewhere in there - I went through ... >> at its default settings of read/apply for Authenticated Users ... >>> So as you can imagine, I'm trying to figure out why the machine GPO ...
    (microsoft.public.win2000.group_policy)
  • Re: Some policys do not apply to user
    ... "Authenticated Users" is listed with read permission. ... >sounds like there is ACL filtering configured on the GPO ... Make sure the ACL has Everyone ... >> users have trouble getting all my policy settings. ...
    (microsoft.public.win2000.group_policy)
  • Prevent "Authenticated Users" from browsing Active Directory
    ... Is it possible to prevent Authenticated Users from browsing Active ... We are planning to rename the domain administrator account but are ... howerver if we remove the Read permission on ... GPO is no longer applied to the clients even though the GPO itself ...
    (microsoft.public.win2000.security)
  • GP ACL - Authenticated users
    ... If I need to apply GPO to particular group only, ... permission for "Authenticated users" group for that GPO? ... Maybe GP processing will be quicker? ...
    (microsoft.public.windows.group_policy)
  • Re: Group Policy applies to some users, but not others
    ... permission, so the 'Authenticated Users' group should get the policy applied. ... Authenticated users: Read and Apply Policy ... the same OU as a user where the GPO isn't working. ...
    (microsoft.public.win2000.group_policy)