Group policies aren't applying - Access Denied (Security Filtering)


hi,

i have problem domain, group policies aren't applying.

i have 2 security groups; 1) 32bit clients 2) 64 bit clients
in these 2 groups our different computers, running 32bit , 64bit windows 7.

in gpmc have made 2 policies affect both user’s desktop , computer settings. want set 32bit group 32bit policy, , 64bit computers 64bit policy, isn't working.

following various guides online set security filtering, linked gpo domain, went delegation tab, opened acl, unticked apply authenticated users, added 32 or 64 group, clicked read , apply them. went client (in case 64bit pc), , once gpupdate /force had been completed, ran gpresult , says gpo hasn’t been applied due "access denied (security filtering)".

this has baffled me, i've checked pc in 64bit group, checked read , apply settings no luck. i've tried adding , removing authenticated users security filtering tab, no luck.

it's annoying me because should simple!

any appreciated.

jake


setup:
windows server 2008 standard sp2
clients: windows 7 sp1
domain environment

hi,

> gpo sets out both user policies aswell computer configuration.

so apply user configuration settings, user needs read , agp permission these gpos.

> policy per computer, rather per user

do mean enabled group policy loopback mode?

> users use laptops recieve different policy allows programs synccentre run,
> whereas on pcs feature disabled.

are these laptops , pcs in different ous?

user need read , agp permission apply user configuration settings in gpo, need add agp permission authenticated users group, or add read , agp permission domain users group.

for more information please refer following ms articles:

delegation , policy-related permissions
http://technet.microsoft.com/en-us/library/cc776858(v=ws.10).aspx
group policy permissions
http://technet.microsoft.com/en-us/library/cc736937(v=ws.10)


lawrence

technet community support



Windows Server  >  Group Policy



Comments

Popular posts from this blog

Error: 0x80073701 when trying to add Print Services Role in Windows 2012 Standard

Disconnecting from a Windows Server 2012 R2 file sharing session on a Windows 7,8,10 machine

Windows 2016 RDS event 1306 Connection Broker Client failed to redirect the user... Error: NULL