Quantcast
Channel: Group Policy forum
Viewing all articles
Browse latest Browse all 19997

Prevent GPO from applying

$
0
0

We have an OU for terminal Servers , we have blocked the inheritances so that no domain GPO apply on this OU.

This OU has all the Servers with terminal Server role installed.

Now we created 3 separate GPO's and applied them to the Terminal Server OU

GPO1 - For Computers

GPO2 - For Users

Q:1 - The gpo created for computers have User Configuration settings disabled

What we setup in this are various server settings for TS and we also enabled a policy named:

Set user profile path for all users logging on to this computer

All was fine until i realized even the administrators who login to these servers get this , which i did not wanted.

So i looked around and found "How to prevent domain Group Policies from applying to certain user or computer accounts"

http://support.microsoft.com/kb/816100

I Added a Group for the users who belong to admin group in the delegation tab in GPMC and followed the steps to deny GPO as mentioned in above article.

I ran Gpupdate /force couple of times 

Rebooted servers 

But the users who belong to this group still get their profile roaming .

I do not want these policies to be applied to the Admins. 

Is there something i am doing wrong.

Is there anyway i can reset all group policies 

How soon does a GPO become available after we edited it

does it depend on the replication ? in AD


Viewing all articles
Browse latest Browse all 19997

Trending Articles



<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>