Hi,
We have a number of seemingly duplicate GPO's. One policy has both user and computer policies configured, and is linked to a container that has computer objects within it. My first question is, presumably only the computer policies will apply if a user logs into a PC within said container?
Second, why is it possible to configure site-to-zone assignment list as both a computer, and user policy, and if the list is configured in the same GPO (for user, and for computer) - which one wins and under what circumstance? I presume I need to merge the site-to-zone list to either user or computer, not both, but I'm not sure why we have it configured this way in the first place.
Any guidance would be appreciated,
Dave