Some policy's do not apply to user

  • Thread starter Thread starter Tommy
  • Start date Start date
T

Tommy

I've got "a lot" of GPO's controlling my win2000
environment. But lately, in just one part (one OU), all
users have trouble getting all my policy settings. Some of
them is applyied, but others don't.
I did a test by making yet another GPO with some of the
settings that did not apply. And that worked! However,
when a new user is created, the GPO is not applyied until
I make a "change" in the test GPO.
Any idea?
 
sounds like there is ACL filtering configured on the GPO that does not apply
to all user accounts. Make sure the ACL has Everyone listed with Apply Group
Policy and Read permissions. Also, make sure there is NOT another group that
is DENIED one of these permissions on the same GPO ACL.
 
"Authenticated Users" is listed with read permission.
There are no groups that Deny in this OU.
Will there be any differ if "Everyone" is added with read
permission?
 
The difference between Everyone and Authenticated Users is Everyone includes
Anonymous most of the time. So, this should be ok. However, you only say
READ, but not APPLY GROUP POLICY. Does the group have AGP permission?
 
I've checked all policy objects, and they have all AGP
permission set for Authenticated Users. Any other ideas?
Thanks for all help so far..
 
I would just see if a basic GPO with one or two EASY settings apply
consistently. Then, start to add in one GPO at a time (or groups of 3). To
see which one is causing the problem. There are some GPOs that can cause
strange behavior if they are not configured properly. For example, if you
have a File permission GPO incorrectly configured, it can cause problems
with other settings not applying.
 
Back
Top