none
How to deny all group policies being applied to a single computer?

    Question

  • Hi,

    I have a situation where customer wants to deny all group policies that are being applied on a particular machine in a domain. My question is, there are nearly 50 GPO being applied on this machine. Is there any way to deny all those policies to this machine from a centralized place?

    - Umesh.S.K

    Thursday, July 09, 2015 10:15 AM

Answers

  • Hi

     On ADUC console create an OU,then move computer to this OU,open GPMC right click this OU and select "block inheritance" all gpo deny this OU.(also this specific computer)


    Note:also wmi filtering for apply specific computers but you need a single computer because of this i recommned other way.
    • Edited by Burak Uğur Thursday, July 09, 2015 10:32 AM
    • Marked as answer by Umesh S K Thursday, July 09, 2015 10:59 AM
    Thursday, July 09, 2015 10:28 AM