Active Directory: Find out which users belong to a Group Policy ObjectDiagnosing why a Group Policy Object is inaccessibleActive Directory Group PolicyHow can I apply Group Policy object (GPO)user settings in GPO only if connecting to specific users?Active Directory Restricted Group confusionApply Active Directory domain group policy to standalone PCAutomatic acknowledgement indicating Group Policy Object was appliedCan't open Active Directory Users and Computers, Group Policy settings issuesFinding out where a Group Policy Object is located (OU Path)Group Policy Object not applied to client computerActive Directory & Group Policy - Standard User Permissions
Why does smartdiagram replace the Greek letter xi by a number?
What differences exist between adamantine and adamantite in all editions of D&D?
Fermat's statement about the ancients: How serious was he?
Write a function that checks if a string starts with or contains something
Is it okay to have a sequel start immediately after the end of the first book?
The origin of the Russian proverb about two hares
Can a human be transformed into a Mind Flayer?
The usage of kelvin in formulas
How do free-speech protections in the United States apply in public to corporate misrepresentations?
How do i export activities related to an account with a specific recordtype?
If there's something that implicates the president why is there then a national security issue? (John Dowd)
How can powerful telekinesis avoid violating Newton's 3rd Law?
Why is Na5 not played in this line of the French Defense, Advance Variation?
What is the color of artificial intelligence?
Arduino wrap or Subclass print() to work with multiple Serial
What are the implications when matrix's lowest eigenvalue is equal to 0?
How can I use the SpendProofV1 to prove I sent Monero to an exchange?
Is Lambda Calculus purely syntactic?
Proving that a Russian cryptographic standard is too structured
Why did Intel abandon unified CPU cache?
What aircraft was used as Air Force One for the flight between Southampton and Shannon?
Please figure out this Pan digital Prince
How can one's career as a reviewer be ended?
How can I make 12 tone and atonal melodies sound interesting?
Active Directory: Find out which users belong to a Group Policy Object
Diagnosing why a Group Policy Object is inaccessibleActive Directory Group PolicyHow can I apply Group Policy object (GPO)user settings in GPO only if connecting to specific users?Active Directory Restricted Group confusionApply Active Directory domain group policy to standalone PCAutomatic acknowledgement indicating Group Policy Object was appliedCan't open Active Directory Users and Computers, Group Policy settings issuesFinding out where a Group Policy Object is located (OU Path)Group Policy Object not applied to client computerActive Directory & Group Policy - Standard User Permissions
.everyoneloves__top-leaderboard:empty,.everyoneloves__mid-leaderboard:empty,.everyoneloves__bot-mid-leaderboard:empty height:90px;width:728px;box-sizing:border-box;
I want to make sure that certain users are available in a group from the windows domain. I installed "Group Policy Management" and can open the Forest, the Domain. But then I am not sure what I am searching. I can select a link to a Group Policy Object (GPO). In Settings i see the Drive Maps and I know them. But how can I display a list of users that use this GPO? Right-click, Edit... is disabled.
net group my_gpo
does not work since I am not on a Windows Domain Controller. Any possibility to find out anyway?
active-directory group-policy
migrated from superuser.com Feb 7 '11 at 14:09
This question came from our site for computer enthusiasts and power users.
add a comment |
I want to make sure that certain users are available in a group from the windows domain. I installed "Group Policy Management" and can open the Forest, the Domain. But then I am not sure what I am searching. I can select a link to a Group Policy Object (GPO). In Settings i see the Drive Maps and I know them. But how can I display a list of users that use this GPO? Right-click, Edit... is disabled.
net group my_gpo
does not work since I am not on a Windows Domain Controller. Any possibility to find out anyway?
active-directory group-policy
migrated from superuser.com Feb 7 '11 at 14:09
This question came from our site for computer enthusiasts and power users.
add a comment |
I want to make sure that certain users are available in a group from the windows domain. I installed "Group Policy Management" and can open the Forest, the Domain. But then I am not sure what I am searching. I can select a link to a Group Policy Object (GPO). In Settings i see the Drive Maps and I know them. But how can I display a list of users that use this GPO? Right-click, Edit... is disabled.
net group my_gpo
does not work since I am not on a Windows Domain Controller. Any possibility to find out anyway?
active-directory group-policy
I want to make sure that certain users are available in a group from the windows domain. I installed "Group Policy Management" and can open the Forest, the Domain. But then I am not sure what I am searching. I can select a link to a Group Policy Object (GPO). In Settings i see the Drive Maps and I know them. But how can I display a list of users that use this GPO? Right-click, Edit... is disabled.
net group my_gpo
does not work since I am not on a Windows Domain Controller. Any possibility to find out anyway?
active-directory group-policy
active-directory group-policy
asked Feb 7 '11 at 13:50
Michael S.Michael S.
121115
121115
migrated from superuser.com Feb 7 '11 at 14:09
This question came from our site for computer enthusiasts and power users.
migrated from superuser.com Feb 7 '11 at 14:09
This question came from our site for computer enthusiasts and power users.
add a comment |
add a comment |
2 Answers
2
active
oldest
votes
The greyed out Edit button may be caused by rights issue, make sure that you have the correct permissions to edit the GPO.
To see the users who'll be affected by this GPO, check the "security filetering" groups. the users in that group should be affected by your GPO (provided the're in the correct linked OU)
To follow up on @Florent's comment, I have this issue all the freakin' time with Windows 7 RSAT GPMC implementation. The functional level of the domain is irrelevant; the GPMC, when looking at linked GPOs, has an issue. This might be because our GPO's cross a domain trust, but every link GPO I try to "edit" from its linked location fails with an access denied error. I have to open it from its original container as far as the GPMC GUI is concerned. Anyone else have this issue? It worked before with GPMC in XP.
– songei2f
Feb 7 '11 at 15:00
add a comment |
It's not totally clear to me what you're asking but in the GPMC you can select the GPO in the left pane and see where it's linked on the Scope tab in the right pane and see what security filtering is being applied to the GPO. Based on that information you can deduce which users will have this policy applied based on their location in your AD structure and what security groups they're members of (are they in the Site, Domain, or OU where the GPO is linked and are they in a group that is being used to filter the GPO).
add a comment |
Your Answer
StackExchange.ready(function()
var channelOptions =
tags: "".split(" "),
id: "2"
;
initTagRenderer("".split(" "), "".split(" "), channelOptions);
StackExchange.using("externalEditor", function()
// Have to fire editor after snippets, if snippets enabled
if (StackExchange.settings.snippets.snippetsEnabled)
StackExchange.using("snippets", function()
createEditor();
);
else
createEditor();
);
function createEditor()
StackExchange.prepareEditor(
heartbeatType: 'answer',
autoActivateHeartbeat: false,
convertImagesToLinks: true,
noModals: true,
showLowRepImageUploadWarning: true,
reputationToPostImages: 10,
bindNavPrevention: true,
postfix: "",
imageUploader:
brandingHtml: "Powered by u003ca class="icon-imgur-white" href="https://imgur.com/"u003eu003c/au003e",
contentPolicyHtml: "User contributions licensed under u003ca href="https://creativecommons.org/licenses/by-sa/3.0/"u003ecc by-sa 3.0 with attribution requiredu003c/au003e u003ca href="https://stackoverflow.com/legal/content-policy"u003e(content policy)u003c/au003e",
allowUrls: true
,
onDemand: true,
discardSelector: ".discard-answer"
,immediatelyShowMarkdownHelp:true
);
);
Sign up or log in
StackExchange.ready(function ()
StackExchange.helpers.onClickDraftSave('#login-link');
);
Sign up using Google
Sign up using Facebook
Sign up using Email and Password
Post as a guest
Required, but never shown
StackExchange.ready(
function ()
StackExchange.openid.initPostLogin('.new-post-login', 'https%3a%2f%2fserverfault.com%2fquestions%2f232161%2factive-directory-find-out-which-users-belong-to-a-group-policy-object%23new-answer', 'question_page');
);
Post as a guest
Required, but never shown
2 Answers
2
active
oldest
votes
2 Answers
2
active
oldest
votes
active
oldest
votes
active
oldest
votes
The greyed out Edit button may be caused by rights issue, make sure that you have the correct permissions to edit the GPO.
To see the users who'll be affected by this GPO, check the "security filetering" groups. the users in that group should be affected by your GPO (provided the're in the correct linked OU)
To follow up on @Florent's comment, I have this issue all the freakin' time with Windows 7 RSAT GPMC implementation. The functional level of the domain is irrelevant; the GPMC, when looking at linked GPOs, has an issue. This might be because our GPO's cross a domain trust, but every link GPO I try to "edit" from its linked location fails with an access denied error. I have to open it from its original container as far as the GPMC GUI is concerned. Anyone else have this issue? It worked before with GPMC in XP.
– songei2f
Feb 7 '11 at 15:00
add a comment |
The greyed out Edit button may be caused by rights issue, make sure that you have the correct permissions to edit the GPO.
To see the users who'll be affected by this GPO, check the "security filetering" groups. the users in that group should be affected by your GPO (provided the're in the correct linked OU)
To follow up on @Florent's comment, I have this issue all the freakin' time with Windows 7 RSAT GPMC implementation. The functional level of the domain is irrelevant; the GPMC, when looking at linked GPOs, has an issue. This might be because our GPO's cross a domain trust, but every link GPO I try to "edit" from its linked location fails with an access denied error. I have to open it from its original container as far as the GPMC GUI is concerned. Anyone else have this issue? It worked before with GPMC in XP.
– songei2f
Feb 7 '11 at 15:00
add a comment |
The greyed out Edit button may be caused by rights issue, make sure that you have the correct permissions to edit the GPO.
To see the users who'll be affected by this GPO, check the "security filetering" groups. the users in that group should be affected by your GPO (provided the're in the correct linked OU)
The greyed out Edit button may be caused by rights issue, make sure that you have the correct permissions to edit the GPO.
To see the users who'll be affected by this GPO, check the "security filetering" groups. the users in that group should be affected by your GPO (provided the're in the correct linked OU)
answered Feb 7 '11 at 14:38
Florent CourtayFlorent Courtay
538615
538615
To follow up on @Florent's comment, I have this issue all the freakin' time with Windows 7 RSAT GPMC implementation. The functional level of the domain is irrelevant; the GPMC, when looking at linked GPOs, has an issue. This might be because our GPO's cross a domain trust, but every link GPO I try to "edit" from its linked location fails with an access denied error. I have to open it from its original container as far as the GPMC GUI is concerned. Anyone else have this issue? It worked before with GPMC in XP.
– songei2f
Feb 7 '11 at 15:00
add a comment |
To follow up on @Florent's comment, I have this issue all the freakin' time with Windows 7 RSAT GPMC implementation. The functional level of the domain is irrelevant; the GPMC, when looking at linked GPOs, has an issue. This might be because our GPO's cross a domain trust, but every link GPO I try to "edit" from its linked location fails with an access denied error. I have to open it from its original container as far as the GPMC GUI is concerned. Anyone else have this issue? It worked before with GPMC in XP.
– songei2f
Feb 7 '11 at 15:00
To follow up on @Florent's comment, I have this issue all the freakin' time with Windows 7 RSAT GPMC implementation. The functional level of the domain is irrelevant; the GPMC, when looking at linked GPOs, has an issue. This might be because our GPO's cross a domain trust, but every link GPO I try to "edit" from its linked location fails with an access denied error. I have to open it from its original container as far as the GPMC GUI is concerned. Anyone else have this issue? It worked before with GPMC in XP.
– songei2f
Feb 7 '11 at 15:00
To follow up on @Florent's comment, I have this issue all the freakin' time with Windows 7 RSAT GPMC implementation. The functional level of the domain is irrelevant; the GPMC, when looking at linked GPOs, has an issue. This might be because our GPO's cross a domain trust, but every link GPO I try to "edit" from its linked location fails with an access denied error. I have to open it from its original container as far as the GPMC GUI is concerned. Anyone else have this issue? It worked before with GPMC in XP.
– songei2f
Feb 7 '11 at 15:00
add a comment |
It's not totally clear to me what you're asking but in the GPMC you can select the GPO in the left pane and see where it's linked on the Scope tab in the right pane and see what security filtering is being applied to the GPO. Based on that information you can deduce which users will have this policy applied based on their location in your AD structure and what security groups they're members of (are they in the Site, Domain, or OU where the GPO is linked and are they in a group that is being used to filter the GPO).
add a comment |
It's not totally clear to me what you're asking but in the GPMC you can select the GPO in the left pane and see where it's linked on the Scope tab in the right pane and see what security filtering is being applied to the GPO. Based on that information you can deduce which users will have this policy applied based on their location in your AD structure and what security groups they're members of (are they in the Site, Domain, or OU where the GPO is linked and are they in a group that is being used to filter the GPO).
add a comment |
It's not totally clear to me what you're asking but in the GPMC you can select the GPO in the left pane and see where it's linked on the Scope tab in the right pane and see what security filtering is being applied to the GPO. Based on that information you can deduce which users will have this policy applied based on their location in your AD structure and what security groups they're members of (are they in the Site, Domain, or OU where the GPO is linked and are they in a group that is being used to filter the GPO).
It's not totally clear to me what you're asking but in the GPMC you can select the GPO in the left pane and see where it's linked on the Scope tab in the right pane and see what security filtering is being applied to the GPO. Based on that information you can deduce which users will have this policy applied based on their location in your AD structure and what security groups they're members of (are they in the Site, Domain, or OU where the GPO is linked and are they in a group that is being used to filter the GPO).
answered Feb 7 '11 at 22:40
joeqwertyjoeqwerty
97.6k466149
97.6k466149
add a comment |
add a comment |
Thanks for contributing an answer to Server Fault!
- Please be sure to answer the question. Provide details and share your research!
But avoid …
- Asking for help, clarification, or responding to other answers.
- Making statements based on opinion; back them up with references or personal experience.
To learn more, see our tips on writing great answers.
Sign up or log in
StackExchange.ready(function ()
StackExchange.helpers.onClickDraftSave('#login-link');
);
Sign up using Google
Sign up using Facebook
Sign up using Email and Password
Post as a guest
Required, but never shown
StackExchange.ready(
function ()
StackExchange.openid.initPostLogin('.new-post-login', 'https%3a%2f%2fserverfault.com%2fquestions%2f232161%2factive-directory-find-out-which-users-belong-to-a-group-policy-object%23new-answer', 'question_page');
);
Post as a guest
Required, but never shown
Sign up or log in
StackExchange.ready(function ()
StackExchange.helpers.onClickDraftSave('#login-link');
);
Sign up using Google
Sign up using Facebook
Sign up using Email and Password
Post as a guest
Required, but never shown
Sign up or log in
StackExchange.ready(function ()
StackExchange.helpers.onClickDraftSave('#login-link');
);
Sign up using Google
Sign up using Facebook
Sign up using Email and Password
Post as a guest
Required, but never shown
Sign up or log in
StackExchange.ready(function ()
StackExchange.helpers.onClickDraftSave('#login-link');
);
Sign up using Google
Sign up using Facebook
Sign up using Email and Password
Sign up using Google
Sign up using Facebook
Sign up using Email and Password
Post as a guest
Required, but never shown
Required, but never shown
Required, but never shown
Required, but never shown
Required, but never shown
Required, but never shown
Required, but never shown
Required, but never shown
Required, but never shown