Hello,
I have created a GPO to add a domain group to the BUILTIN\Administrators group on each of our server.
The action is set on Update because 'Remove this item when no longer applied' is checked.
The GPO is working as it should as the group is well added to the Administrators but if I look in the eventlog I can see it is done at each GPO refresh.
I can see :
Event 4733 - A member was removed from a security-enabled local group.
Event 4735 - A security-enabled local group was changed.
Event 4732 - A member was added to a security-enabled local group.
Event 4735 - A security-enabled local group was changed.
I thought that as nothing had changed for the GPP (so, nothing to update) the group wouldn't not be deleted and then re-added.
Is there a way to avoid this behaviour ?
Thanks for your help
Marc