Quantcast
Channel: Group Policy forum
Viewing all articles
Browse latest Browse all 19997

GPO security filtering associated with a computer group

$
0
0

Hi,

I come to you because I can not apply a gpo on a set of computer.

I have different computers on different OR, I do not know how to group them for some practical reasons. So I added them in a security group. For this set of computer, I would like to apply a gpo prohibiting the locking of the computers present in the security group.

I tried to put authenticated users read and domain computer read while leaving my group application gpo but nothing works.

If I want to configure a gpo associated with a group of users it works but not if I want to associate with a group of computers. Because in my case, it does not matter which users connect to it, they can not lock the computers in the group, but they can lock on computers that are not in the security group.

The DC is a WS2012 R2. The client computers are a mix of W7 and W10.

The error mentioned is the following in gpresult / r Filtering: Denied (security)

If I add authenticated users to apply gpo, it applies it to all computers without filtering. I have read the MS16-072 but in my case it does not help.
I also tried applying the loopback process in merge or replace but nothing too.

Thanks for your help

Ciic10


Viewing all articles
Browse latest Browse all 19997

Trending Articles



<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>