dns - How to prevent the domain group policy from being applied to local system which is put in domain -


when try put local system in domain. domain group policies gets applied local system over-riding local group policy settings. how go ahead n prevent domain gpo being applied system?

if not administrator of domain controller, can't.

any gpos match either pc or domain user in security filtering of gpo applied pc resp. user account.

usually there gpos match broad groups of users/computers automatically match newly added machine. e.g. authenticated users group.

authenticated users includes every authenticated object active directory, include domain users, groups (defined , part of ad), , computers have been joined domain.

so way change security filtering of gpos exclude machine. e.g. remove authenticated users group security filtering , add specific security group contains list of other pcs 1 should excluded.

the brute-force way enable windows firewall , block connection domain controller or ports required gpo communication. however, defeat object of adding pc domain in first place.


Comments

Popular posts from this blog

Magento/PHP - Get phones on all members in a customer group -

php - Bypass Geo Redirect for specific directories -

php - .htaccess mod_rewrite for dynamic url which has domain names -