Re: GPO testing



Hi!

Did you logon to one of the client computers with these two accounts? Do you
use WinXP on your clients? You could use gpresult to troubleshoot GPO?

Toni

"Scott" <scotts@xxxxxxxxxxxxxx> wrote in message
news:u49jIYt8GHA.2248@xxxxxxxxxxxxxxxxxxxxxxx
Hi,

Sorry, yes I did add two users to the test OU.

Scott

T. Uranjek wrote:
Hi!

Sorry if I'n wrong, but I'm missing one step in your procedure. Did you
actually put any user or computer accounts in test OU?

Toni

"Scott" <scotts@xxxxxxxxxxxxxx> wrote in message
news:%232v3FAt8GHA.1560@xxxxxxxxxxxxxxxxxxxxxxx

Hi,

Working on W2K server. Right now the DDP and DDCP are set to the
default settings. Set up a test OU and a test GPO. Linked the GPO to
the OU and refreshed the user and machine policy with secedit. The test
GPO does not get applied. Only the DDP is showing up as applied. Went
through a file from Microsoft on how to debug Group Policy issues and
set up a bunch of extended logging but nothing seems to be failing to as
to indicate why the test GPO I set up is not be applied. What is the
best way to drill down into this problem? Since the DDP is applied
there must be some kind of failure. How can I find out more about what
is going on?

Best,
Scott


.



Relevant Pages

  • Re: Loopback policy enabled, seems to cause login script to run twice
    ... GPO containing it applies to, regardless of which actual GPO it is included ... the description of how Loopback processing works is NOT ... enables loopback processing appears and where the relevant computer accounts ... Sounds like you have included the setting that runs the Logon Script so high ...
    (microsoft.public.windows.group_policy)
  • RE: LDAP issues - mimesweeper for web & Active Directory
    ... It would just import members of the Internet Access Allowes ... How do you rate you GPO skill 1 to 10? ... GPO to an OU that has User objects/account as opposed the Comuter accounts. ... LDAP for the OU: ...
    (microsoft.public.windows.server.active_directory)
  • Re: Disabling Interactive Logon Against Security Group
    ... Essentially this is to secure half a dozen guest accounts on domain of ... question "disable interactive logon privilages against specific OU/User ... If you set this in a GPO then the list that is to be denied that you ... One route to avoid this is to cause a machine local group to be ...
    (microsoft.public.security)
  • Re: Basic Sec Template Design
    ... defined in a GPO linked to the domain object to impact domain accounts ... allowed to impact machines then these impact the machine local ... Have you also reviewed the security guides? ...
    (microsoft.public.windows.server.security)
  • Re: Domain password policy problems
    ... password policies within a single domain. ... Password Policy done right ... If a GPO linked at the domain level applies to all accounts and Gpos ...
    (microsoft.public.windows.group_policy)

Loading