How to deny all group policies being applied to a single computer?


  • Hi,

    I have a situation where customer wants to deny all group policies that are being applied on a particular machine in a domain. My question is, there are nearly 50 GPO being applied on this machine. Is there any way to deny all those policies to this machine from a centralized place?

    - Umesh.S.K

    Thursday, July 09, 2015 10:15 AM


  • Hi

     On ADUC console create an OU,then move computer to this OU,open GPMC right click this OU and select "block inheritance" all gpo deny this OU.(also this specific computer)

    Note:also wmi filtering for apply specific computers but you need a single computer because of this i recommned other way.
    • Edited by Burak Uğur Thursday, July 09, 2015 10:32 AM
    • Marked as answer by Umesh S K Thursday, July 09, 2015 10:59 AM
    Thursday, July 09, 2015 10:28 AM