I have a workstation within a domain. whenever I update the domain policy, it get reflected on all machines. but when I update the local policy for a local admin "called root", it wont reflect on that user. I have the "turn off local group policy objects processing" set to not configured. what I want to do is for the local admin "root" to have privilege on a specific MMC snap-in. so I added the group policy object editor on MMC, and from local users or groups selected the "root" user "in fact I configured all the local groups and users", and then opened the microsoft management console under windows components, then I enabled "restrict users to the explicitly permitted list of snap-ins" and enabled only one snap-in from restricted/permitted snap-ins list. afterwards when I open the MMC in the root user context I expect to only show that one snap-in I enabled. but it sadly shows all the snap-ins.
how to correct this issue?
your question