Group Policy LoopBack processing

  • Thread starter Thread starter Hallstein
  • Start date Start date
H

Hallstein

Hi,

I have 2 domains, domain A and B, where some users are located in the B
domain. I do not have modify/write access to domain B, and all my
computers reside in domain A. Thus I have to use Computer policies to
make this work.

DOMAIN A
Computers
|
| (trust)
|
DOMAIN B
Users


I would like one Logon script for all my users, thus I have to use
LoopBack processing.

But, whenever I try to make User Group Policy loopback processing mod,
using Replace or Merge, nothing happens at users from domain B.

However, if I make this group policy to be applied to B\Domain Users, it
seem to work ok. However, I do not want this policy to be applied on all
my computers in the OU (and sub-OU's).



Anybody have a clue?
 
I had this issue also

I fixed it buy putting the Server/pc in the ou that the loopback processing
is on

Cliff
 
well I won't do that. coz i have just too many OU's. I want to apply to
groups of computers, and not the domain users.

I guess I could make a loginscript that checks for membership using LDAP
oGroupList.Exists or something, but this irritates me. Microsoft, you
hear us? There should be a function to override loginscripts on
computer-level from ANY users that logs on to the computer, even if they
come from another domain.


Cliff skrev:
 
Back
Top