Group policy not applying to Domain Admins
Hi,
We are having issues with group policies for Domain admins only, as soon as we take the user out of the
domain admin group the policies apply perfectly. Here is the group policy Info -
Group policy - Run these programs at user logon
Please help!!
Thanks
Pallavi
August 25th, 2015 12:37am
Is there any security filtering for this policy? Any block inheritance anywhere? Best thing you can do is a gpresult /h for one of the domain admins so we can take a look should be easily tracked down.
August 25th, 2015 1:48am
Is there any security filtering for this policy? Any block inheritance anywhere? Best thing you can do is a gpresult /h for one of the domain admins so we can take a look should be easily tracked down.
-
Proposed as answer by
Mary DongMicrosoft contingent staff, Moderator
Wednesday, August 26, 2015 4:30 AM
-
Unproposed as answer by
Pallavi Bhargav
39 minutes ago
August 25th, 2015 5:45am
Is there any security filtering for this policy? Any block inheritance anywhere? Best thing you can do is a gpresult /h for one of the domain admins so we can take a look should be easily tracked down.
-
Proposed as answer by
Mary DongMicrosoft contingent staff, Moderator
Wednesday, August 26, 2015 4:30 AM
-
Unproposed as answer by
Pallavi Bhargav
Thursday, August 27, 2015 6:21 AM
August 25th, 2015 5:45am
hi Alex
Still I am having the same issue. There is no security filtering as well as no block inheritance for this policy in my lab. In gpresult it shows that group policy is being applied to the machine, works for domain users after login. But while I login
to the machine with domain admin user, the policy did not works thus the specified program does not run after log in.
Thanks
Pallavi
August 27th, 2015 2:34am
Post us the gpresult , what policy is it that doesn't apply
August 27th, 2015 3:25am
Here is the screenshot of policy which I am trying to apply on machine :
Here is the Gpresult
August 28th, 2015 1:43am
What's going off on security filtering? Try removing all but authenticated users. Also you have set a computer gpo did you want this to affect computers not users??
August 28th, 2015 1:53am
Initially after creating GPO only authenticated users were added in security filtering, just for troubleshooting purpose I have added other groups.
Actually my requirement is - to run an application after login of any user, so what's the best way according to you should I remove the computer GPO and then set User GPO for this?
Thanks
Pallavi
August 28th, 2015 2:05am
remove all the security filtering expect auth users, and create a new gpo which applies to users "run at logon"
-
Edited by
AlexAdkin
Friday, August 28, 2015 7:42 AM
August 28th, 2015 7:42am
I have created a new gpo which applies to users and also removed all the security filtering, still having the same issue.
August 31st, 2015 12:53am