Skip to main content

Creating and Linking a GPO in Win Server 2008


Creating a group policy object in windows server 2008:
Perform the below steps to create new GPO
Go to start menu -> administrative tools -> group policy management -> Expand forest -> Expand domains -> Expand your domain -> Right click on Group policy objects and select new -> type name for new GPO and click ok to create a new GPO.

Once after creating new GPO you can link it to Entire forest or Domain or OU and sites as well.
To link a GPO to domain, Domain controllers and OU follow the below stepsPerform the below steps to create new GPO
Linking a GPO to Domain:
Go to gpmc.msc -> Expand Forest -> Expand domain and right click on your domain and click on link existing GPO, you will get a window as below, select the appropriate GPO and click on ok to link a gpo.



To link a GPO to domain controller, right click on Domain controllers and select Link existing GPO and select the appropriate GPO and click ok to complete the process.
To link a GPO to OU, right click on OU and select link existing GPO and select the GPO and click ok as shown in above picture.
And follow the same procedure to link a GPO to Site as well.
Note : Please make me clear if anything wrongly mentioned in the above page.

Comments

Popular posts from this blog

Unable to Install SCCM Client- File C:\Windows\ccmsetup\MicrosoftPolicyPlatformSetup.Msi Error text : ExitCode: 1625

Today while troubleshooting SCCM client issue in one of the server I came across the below issue and thought of sharing with all of you. Hope it helps. Issue: Unable to Install SCCM Client getting below error in CCMSetup.log Reason:  Per the below log entry, setup was failing because the installation of MicrosoftPolicyPlatformSetup.Msi failed in the backend. Resolution: To resolve the issue, we need to perform manual installation of MicrosoftPolicyPlatformSetup.Msi. To perform the installation, follow below steps: Go to C:\windows\ccmsetup\ and right click on MicrosoftPolicyPlatformSetup.Msi and run as administrator to install it manually Post installing the MicrosoftPolicyPlatformSetup.Msi, run the CCMSETUP.exe setup once again and monitor the logs to check the installation status and the log should end with ccmsetup is exiting with return code 0. Post installation you can verify the configuration manager client in control panel and it should show all the 11

Unable to transfer Schema master role from Primary Domain Controller to Additional domain controller (backup server) In Windows Server

Issue: Unable to transfer Schema master role from PDC to ADC. Symptoms: You will get below error while transferring Schema master using NTDSUTIL fsmo maintenance: seize schema master Attempting safe transfer of schema FSMO before seizure. ldap_modify_sW error 0x32(50 (Insufficient Rights). Ldap extended error message is 00002098: SecErr: DSID-0315137D, problem 4003 (INSUFF_ACCESS_RIGHTS), data 0 Resolution: Add your user to Enterprise admin  group in Active directory to resolve this issue.

Configuring Service Connection Point Role in System Center Configuration Manager 1702 Version

In Today’s guide, we will learn about Installing Service connection point role in Configuration Manager version 1702 . Using Service connection point role, we can keep the Configuration Manager up to date with latest updates. Before moving forward, we will understand about the Service Connection Point role in brief. What is Service Connection Point Role? A service connection point connects Configuration Manger to Microsoft cloud services and is used for Microsoft Intune subscription and servicing, and to update your Configuration Manager installation. This will help you in keep your Configuration Manager installation up-to date with latest updates. To install Service Connection Point Role, follow the below steps . Open Configuration Manager Console. From Workspace, Click on Administrations as shown in below screenshot In Navigation Pane – expand Site Configuration – Right click on Sites – and click on Add Site System Roles to proceed further. On General Screen, provide or