GPO on an OU, no action on the groups contained in...

  • Thread starter Thread starter Maune
  • Start date Start date
M

Maune

I've got some problems using active directory and the
group policies.

We are working with lots of organizationnal units on wich
we are placing the group policies.
In those Organizationnal units, we are placing some users,
and it works fine. But when we are placing security groups
in it, it stops working. Not any user of this group take
effects of the policies.

I seeked help on internet, but cannot find anything.
On a microsoft page, it's said that's impossible but on
other ones, it says it's possible.
Wich should I trust?

If it's impossible I'll consider it like a problem. It
cannot be impossible or that will restrain the field of
action of the active directory's security.

Sorry for the probably lots of English faults... it's not
my mother tongue...
 
Hope I understand you question. GPO's are applied only on computer object
and user object in OU and not to the group objects. So, if you have a
security group in a OU which has users inside, but this users reside in
different OU's, then users won't get policy, which is defined in OU of
security group.
You can use gpresult tool to get a log what policy was applied to the user.

--
Regards

Matjaz Ladava, MCSE (NT4 & 2000)
(e-mail address removed)
http://ladava.com
 
Back
Top