I created a GPO to modify the Administrators restricted group in all the workstations in my organizational unit.
Most of the systems received and applied the policy, but there are some computers that even belong to the OU, to the domain, that have all the IP settings as they must be and everything, they do not apply the policy or the administrators settings are incomplete. For ejemplo if I specified that users A, B and C will be administrators through the GPO application, there are some computers that only set A and B user and C never is assigned.
I have run the secedit /refreshpolicy machine_policy with and without /enforce. Also, I have tried the user_policy and it did not change anything.
I already had that problem with other computer and we change its name, moved to a workgroup and joined the domain with the new name and it worked.
Does anyone have an idea of what can be wrong with those computers?