Quantcast
Channel: Group Policy forum
Viewing all articles
Browse latest Browse all 19997

Group policy not applieng with some users on the same machin

$
0
0

on the same machine i have 2 users one of them apply all group polices without any issue and the other one there is no policy applied for him.

i don't know why and how, the cause is computer or user ???

this the GPRESULT /R for both of them:

user how aplied all policies without any issue:

Microsoft Windows [Version 6.1.7601]
Copyright (c) 2009 Microsoft Corporation.  All rights reserved.

C:\Windows\system32>gpresult /r

Microsoft (R) Windows (R) Operating System Group Policy Result tool v2.0
Copyright (C) Microsoft Corp. 1981-2001

Created On 05/15/2019 at 00:36:58


RSOP data for domain\a.maher on ELF-LAP006-MRK : Logging Mode
---------------------------------------------------------------

OS Configuration:            Member Workstation
OS Version:                  6.1.7601
Site Name:                   N/A
Roaming Profile:             N/A
Local Profile:               C:\Users\a.maher
Connected over a slow link?: No


COMPUTER SETTINGS
------------------
    CN=ELF-LAP006-MRK,OU=PCs,OU=MARKETING,OU=HEAD OFFICE,OU=Domain.LOCAL,DC=ELF
ALEH,DC=LOCAL
    Last time Group Policy was applied: 05/15/2019 at 00:20:13
    Group Policy was applied from:      Domain-DC4.DOMAIN.LOCAL
    Group Policy slow link threshold:   500 kbps
    Domain Name:                        DOMAIN
    Domain Type:                        Windows 2000

    Applied Group Policy Objects
    -----------------------------
        Default Domain Policy
        CERTIFICATE
        FireWall
        USB
        FireWall
        Default Domain Controllers Policy
        DirectAccess Server Settings
        Local Group Policy

    The following GPOs were not applied because they were filtered out
    -------------------------------------------------------------------
        CONTROL PANEL
            Filtering:  Disabled (GPO)

        DirectAccess Client Settings
            Filtering:  Denied (WMI Filter)
            WMI Filter: DirectAccess - Laptop only WMI filter

        Remote Desk Top
            Filtering:  Disabled (GPO)

        DirectAccess Client Settings
            Filtering:  Denied (WMI Filter)
            WMI Filter: DirectAccess - Laptop only WMI filter

        Print
            Filtering:  Disabled (GPO)

        Default Domain Policy
            Filtering:  Disabled (Link)

        Print
            Filtering:  Disabled (GPO)

        Client Push
            Filtering:  Disabled (Link)

        Driver MAP
            Filtering:  Disabled (GPO)

    The computer is a part of the following security groups
    -------------------------------------------------------
        BUILTIN\Administrators
        Everyone
        BUILTIN\Users
        NT AUTHORITY\NETWORK
        NT AUTHORITY\Authenticated Users
        This Organization
        ELF-LAP006-MRK$
        Domain Computers
        Authentication authority asserted identity
        System Mandatory Level


USER SETTINGS
--------------
    CN=Ahmed Maher,OU=Admin Accounts,DC=DOMAIN,DC=LOCAL
    Last time Group Policy was applied: 05/15/2019 at 00:25:28
    Group Policy was applied from:      DOMAIN-DC4.DOMAIN.LOCAL
    Group Policy slow link threshold:   500 kbps
    Domain Name:                        DOMAIN
    Domain Type:                        Windows 2000

    Applied Group Policy Objects
    -----------------------------
        Default Domain Policy
        Remote Desk Top
        CERTIFICATE
        INTERNET POLICY
        Driver MAP
        Print

    The following GPOs were not applied because they were filtered out
    -------------------------------------------------------------------
        DirectAccess Client Settings
            Filtering:  Disabled (GPO)

        Local Group Policy
            Filtering:  Not Applied (Empty)

        FireWall
            Filtering:  Disabled (GPO)

        DirectAccess Server Settings
            Filtering:  Disabled (GPO)

    The user is a part of the following security groups
    ---------------------------------------------------
        Enterprise Admins
        Everyone
        Remote Desktop Users
        BUILTIN\Users
        BUILTIN\Administrators
        REMOTE INTERACTIVE LOGON
        NT AUTHORITY\INTERACTIVE
        NT AUTHORITY\Authenticated Users
        This Organization
        LOCAL
        Domain Admins
        SCCM_ADMINS
        Authentication authority asserted identity
        Denied RODC Password Replication Group
        High Mandatory Level

==================

User have issues to apply any policy:

Microsoft Windows [Version 6.1.7601]
Copyright (c) 2009 Microsoft Corporation.  All rights reserved.

C:\Users\abdelbaset>gpresult /r

Microsoft (R) Windows (R) Operating System Group Policy Result tool v2.0
Copyright (C) Microsoft Corp. 1981-2001

Created On 15-05-2019 at 12:37:22 AM


RSOP data for DOMAIN\abdelbaset on ELF-LAP006-MRK : Logging Mode
------------------------------------------------------------------

OS Configuration:            Member Workstation
OS Version:                  6.1.7601
Site Name:                   N/A
Roaming Profile:             N/A
Local Profile:               C:\Users\abdelbaset
Connected over a slow link?: No


USER SETTINGS
--------------
    CN=Mahmoud AbdelBaset,OU=USERS,OU=MARKETING,OU=HEAD OFFICE,OU=DOMAIN.LOCAL,
DC=DOMAIN,DC=LOCAL
    Last time Group Policy was applied: 15-05-2019 at 12:20:34 AM
    Group Policy was applied from:      ELFALEH-DC4.DOMAIN.LOCAL
    Group Policy slow link threshold:   500 kbps
    Domain Name:                        DOMAIN
    Domain Type:                        Windows 2000

    Applied Group Policy Objects
    -----------------------------
        Default Domain Policy
        Remote Desk Top
        CERTIFICATE
        CONTROL PANEL
        Print
        USB
        Default Domain Controllers Policy
        Driver MAP
        Print

    The following GPOs were not applied because they were filtered out
    -------------------------------------------------------------------
        FireWall
            Filtering:  Disabled (GPO)

        DirectAccess Client Settings
            Filtering:  Disabled (GPO)

        DirectAccess Client Settings
            Filtering:  Disabled (GPO)

        Default Domain Policy
            Filtering:  Disabled (Link)

        Local Group Policy
            Filtering:  Not Applied (Empty)

        FireWall
            Filtering:  Disabled (GPO)

        DirectAccess Server Settings
            Filtering:  Disabled (GPO)

    The user is a part of the following security groups
    ---------------------------------------------------
        Domain Users
        Everyone
        BUILTIN\Users
        NT AUTHORITY\INTERACTIVE
        CONSOLE LOGON
        NT AUTHORITY\Authenticated Users
        This Organization
        LOCAL
        ERP Remote
        Markting
        Authentication authority asserted identity
        Medium Mandatory Level

====================

first one is Administrator

second one is just Domain users

this issue existing with alot of usres PCs specially windows 7



Viewing all articles
Browse latest Browse all 19997

Trending Articles