question

MariusCarciumaru-9729 avatar image
0 Votes"
MariusCarciumaru-9729 asked ·

GPO Issues - not applied

Hi
I am having some issues with 2 GPO that do not want to apply whatever I have tried so far.
here is the background.
I am trying to control the Firefox save password, auto fill and home page (some other small settings also)
I have created the same policy for Chrome. Using the admx for both

The GPO are applied only to a specific group of users under the Security Filtering Option as it has to do only with remote users. The GPO are linked to the OU in AD and enforced. One of the GPO I even linked at the top level but no go.

When I run a gpresult / r i do not see the gpo applied.
When I check the settings they are not applied either.
Any ideas ?

gpupdate /force .. done . logged off even rebooted the damn TS
Tried in both server 2008 and 2019

windows-group-policy
10 |1000 characters needed characters left characters exceeded

Up to 10 attachments (including images) can be used with a maximum of 3.0 MiB each and 30.0 MiB total.

1 Answer

yannara avatar image
1 Vote"
yannara answered ·

When you limit GPO to a security group, you still need to leave the Read permissions for Auth users. This is a design changed happend few years ago.

See mistake #2 from here: https://azurecloudai.blog/2018/12/31/most-common-mistakes-in-active-directory-and-domain-services-part-1/

· 2 ·
10 |1000 characters needed characters left characters exceeded

Up to 10 attachments (including images) can be used with a maximum of 3.0 MiB each and 30.0 MiB total.

Cant believe I missed this. Such a simple fix. Thank you Yannara

1 Vote 1 ·

Yannara
I wonder if you can still assist.
I created the same policy with identical settings on another AD we have and same policies do not apply

Any insights ?

when I run the gpresult /r I only see the top domain GPO applied but not the individual ones

0 Votes 0 ·