Solved

export group policy setting

Posted on 2009-04-01
3
897 Views
Last Modified: 2012-05-06
we have a national firm and we acquired another firm with a different domain. can we replicate our group poilcy settings to the seperate domain? eventually we will form one single domain, but in the mean time, we would like to implement some type of natinal policy for all domains.
0
Comment
Question by:ECNH
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
3 Comments
 
LVL 57

Expert Comment

by:Mike Kline
ID: 24047260
You won't be able to replicate them but you can export and import policies.
Since they are completely separate you will also want to use migration tables, more on those here:
http://blogs.technet.com/doxley/archive/2008/04/22/group-policy-migration-without-the-headache.aspx
Personally I'd just see if the policies between your company and the new company are that different.  If they are similar I'd just change a few settings and then concentrate and planning the future migration.
Thanks
Mike
0
 
LVL 17

Expert Comment

by:Nik
ID: 24047397
You can do something else.

I presume you've already created cross forest or 2-way forest trust between those domains.

You should create a new GPO and make the following change:
Computer Configuration/Administrative Templates/System/Group Policy
Enable the "Allow Cross-Forest User Policy and Roaming User Profiles" setting.

Once policy applies to workstations you should point users from another domain "B" to logon to "your", domain "A".
This way group policy from the domain A would be applied for users in the domain B.

Hopefully this will help, if not I'll try something else :)
0
 
LVL 3

Accepted Solution

by:
nskurs earned 500 total points
ID: 24048586
You mentioned your firm acquired another firm means we are here talking about two different Forests.

- Let's take 'Firm A' (your Org) and 'Firm B' is the acquired one.
1. The first thing you can't replicate them but you can Export & import for this you can use GPMC tool.
2. You do Group Policy over Forest Trust. In this case you should have 2 way forest trust between Firm A & B.
3. The "Allow Cross-Forest User Policy and Roaming User Profiles" policy applicable to domain or organizational unit-based Group Policy object (GPO).

How to enable this policy can be found in below article;
http://support.microsoft.com/kb/823862
0

Featured Post

Is Your AD Toolbox Looking More Like a Toybox?

Managing Active Directory can get complicated.  Often, the native tools for managing AD are just not up to the task.  The largest Active Directory installations in the world have relied on one tool to manage their day-to-day administration tasks: Hyena. Start your trial today.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

This article describes my battle tested process for setting up delegation. I use this process anywhere that I need to setup delegation. In the article I will show how it applies to Active Directory
Uncontrolled local administrators groups within any organization pose a huge security risk. Because these groups are locally managed it becomes difficult to audit and maintain them.
This Micro Tutorial hows how you can integrate  Mac OSX to a Windows Active Directory Domain. Apple has made it easy to allow users to bind their macs to a windows domain with relative ease. The following video show how to bind OSX Mavericks to …
This video shows how to use Hyena, from SystemTools Software, to bulk import 100 user accounts from an external text file. View in 1080p for best video quality.

726 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question