Good Afternoon My Fellow Spicers,

I have a question. With regards to clients networks the AD was a mess. I have since taken over many clients and have started to tidy up the AD by creating Ou’s so its in an order and can be navigated. With this in mind, i have a question regarding Group Policies.

The Structure is as follows:

Main OU: Users

Sub OUs: Current users, disbaled users, Generic Users

Currently GPOS have been created in the Users OU. Would these filter into the new SUB OUS i have created or would i have to link them to each sub OU that i have now created?

TYIA & kind regards,

Arjun

5 Spice ups

They will filter down to EVERYTHING below them unless you “block inheritance”

3 Spice ups

A GPO applies to all child OU unless that child OU has GPO inheritance blocked.

1 Spice up

Thank you very much to dimforest & kevinmhsieh.

Appreciate the quick reply and glad i have saved myself alot of time. Thank you both.

1 Spice up

I suggest you get a better understanding of how GPO settings get applied before making changes, as what you asked was a very basic question that you should have known before even thinking about making changes to a production environment. Do you have a lab environment that you can practice and learn on so you don’t go breaking your clients’ networks?

Here a page with more details about how GPO get applied when linked to various different parts within a domain.

Thanks Kevin. I just needed to confirm because the previous company had created multiple GPO’s that were doing the same thing. i have since tidied up AD to start with and then followed through with the GPOs. The clients network is now running much better and the intended results are now coming through to users. Overall a much cleaner and neater setup.

Again thank you for your input on this matter.

Kind regards,

Arjun