Solved

Default Logon Domain GPO?

Posted on 2007-12-05
4
2,873 Views
Last Modified: 2011-08-18
Scenario:
1 Forest,
4 subdomains in different sites
would like to setup the default logon domain of a computer to its belonging domain, using GPO.

here is a link on how to do it:
http://www.microsoft.com/technet/abouttn/flash/tips/tips_080305_2.mspx 

the question is do i create an OU and move the computer object under that OU (since i can not apply a policy to the computers folder in ADUC) and apply the defaultdomian policy or do i apply this policy to the users OU of each domain.

the results i want is to each computers under each specific domain to show its domain that belongs to as a default on logon screen.

0
Comment
Question by:virtech
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
  • 2
4 Comments
 
LVL 16

Assisted Solution

by:2PiFL
2PiFL earned 150 total points
ID: 20416755
If you want the Policy to apply to users (regardless of where they login) create a User OU and apply the policy there.  If you want to be workstation specific create an OU for the workstations and apply the policy there.
0
 
LVL 13

Assisted Solution

by:Kini pradeep
Kini pradeep earned 150 total points
ID: 20417745
Well since its a policy that applies to computers, i would recommend moving the computer accounts in AD into an OU and apply the policy under the computer configuration and import the custom ADM template.
0
 
LVL 5

Accepted Solution

by:
Nicholas Iler earned 200 total points
ID: 20423402
Here is a link to setting this up from Microsoft:
http://www.microsoft.com/technet/abouttn/flash/tips/tips_080305_2.mspx
0
 
LVL 5

Expert Comment

by:Nicholas Iler
ID: 20423427
You will need to apply this GPO to an Organization Unit that has computers in them. You will need to create four OU's for this to work the way you would like. You will of course also need four separate GPO's to apply the different domains.
0

Featured Post

Office 365 Training for IT Pros

Learn how to provision tenants, synchronize on-premise Active Directory, implement Single Sign-On, customize Office deployment, and protect your organization with eDiscovery and DLP policies.  Only from Platform Scholar.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

This article demonstrates probably the easiest way to configure domain-wide tier isolation within Active Directory. If you do not know tier isolation read https://technet.microsoft.com/en-us/windows-server-docs/security/securing-privileged-access/s…
Did you know that more than 4 billion data records have been recorded as lost or stolen since 2013? It was a staggering number brought to our attention during last week’s ManageEngine webinar, where attendees received a comprehensive look at the ma…
Microsoft Active Directory, the widely used IT infrastructure, is known for its high risk of credential theft. The best way to test your Active Directory’s vulnerabilities to pass-the-ticket, pass-the-hash, privilege escalation, and malware attacks …
Sometimes it takes a new vantage point, apart from our everyday security practices, to truly see our Active Directory (AD) vulnerabilities. We get used to implementing the same techniques and checking the same areas for a breach. This pattern can re…

636 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question