Re: ADM not pushed to OU

Tech-Archive recommends: Repair Windows Errors & Optimize Windows Performance



On May 18, 12:17 pm, Meinolf Weber [MVP-DS] <meiweb(nospam)@gmx.de>
wrote:
Hello saariko,

The configured CLASS is machine, so you to use the computers instead of domain
users. Or to make live easy choose authenticated users, that includes the
computers and users of the domain.

Best regards

Meinolf Weber
Disclaimer: This posting is provided "AS IS" with no warranties, and confers
no rights.
** Please do NOT email, only reply to Newsgroups
** HELP us help YOU!!!http://www.blakjak.demon.co.uk/mul_crss.htm

Hi All,

I am buffed, and requesting for your help.

I am a new IT manager, and trying my first hands on pushing an .ADM to
my domain.

The first one I am trying it disable DST setting.  here is the ADM
****************************
CLASS MACHINE
CATEGORY "Control Panel"
POLICY "Disable Auto Daylight saving"
KEYNAME "SYSTEM\CurrentControlSet\Control\TimeZoneInformation"
VALUENAME "DisableAutoDaylightTimeSet"
VALUEON NUMERIC 1
VALUEOFF NUMERIC 0
END POLICY
END CATEGORY
******************

In order to test it, I have created an OU of 1 computer (my IT test
machine) .
I have created a GPO with the test/dst adm. (right click add
templates...)
I have linked the GPO with the OU. The settings is "Not enforced"
"Link Enabled"
On the security filtering I put "Domain Users"
However when I login with my user to that machine, nothing happens.

1. Do I need for gpupdate /force?  isn't it automatically upon login?
2. What else should I check?

Thank you very much for your help.



Thank you for the quik reply.

I have changed the security filter to : Authenticated Users.
Relogged on my test machine - nothing. The DST is still set.
So I tried a gpupdate /force (even that I don't think I need to) -
relogged - still, DST is checked.

I am sure this is a minor thing, but once I will get the first ADM
running, I am sure it will be easy on the next one.

Thank you,

Saar (saariko is just as fine)
.



Relevant Pages

  • RE: AD users and computers security
    ... computers and logged on as that test user to test admin capabilities. ... Authenticated Users was included on all OUs with read permissions -- that's ... > Authenticated Users Group Has Too Many Permissions to the SYSVOL Network ... Windows Server 2003 family provides three groups whose ...
    (microsoft.public.windows.server.migration)
  • Software Deployment to Machines
    ... I went back and granted the group Domain Computers ... Inside of GPMC in the modeling tree when I run the ... results that the GP is denied due to security filtering. ... >>authenticated users nothing was denied. ...
    (microsoft.public.windows.group_policy)
  • Re: Is it possible to restrict users from reading the contents a GP?
    ... If you changed out Authenticated Users for say ... Domain Computers, then any joined machine in scope would process ... within the Computer settings, therefore you can completely remove the ... computers that you want the policy to apply to. ...
    (microsoft.public.windows.group_policy)
  • Re: Setting Audit Permissions Differently for Each User
    ... Jesper is quite correct in his response. ... defining a group with all accounts except System however, ... Authenticated Users removed from Users (I routinely remove ... Controllers, Computers from Trusted domains, etc. ...
    (microsoft.public.windows.server.security)