crcsupport
asked on
GPO not applied Filtering (Uknown reason)
I'm having trouble applying GPO to a user with following message in gpresult.
" Internet Open Security LVL 1 Filtering: Not Applied (Unknown Reason) "
This GPO gives more access to Internet Option.
The user is in "Internet Open Security LVL1 " in AD user group.
Then, the AD user group has Read/Apply permission for the GPO and the AD user group added in Scope/Security Filtering. The GPO is linked to Domain level.
I checked folder permission to the GPO, no problem.
I ran gpupdate /force, no luck.
Any clue?
=============
C:\Documents and Settings\kharnisch>gpresul t
Microsoft (R) Windows (R) XP Operating System Group Policy Result tool v2.0
Copyright (C) Microsoft Corp. 1981-2001
Created On 1/6/2010 at 2:23:53 AM
RSOP results for CRCCORP\kharnisch on SUPERVISOR_01 : Logging Mode
-------------------------- ---------- ---------- ---------- ---------- -
OS Type: Microsoft Windows XP Professional
OS Configuration: Member Workstation
OS Version: 5.1.2600
Domain Name: CRCCORP
Domain Type: Windows 2000
Site Name: Default-First-Site-Name
Roaming Profile:
Local Profile: C:\Documents and Settings\kharnisch
Connected over a slow link?: No
COMPUTER SETTINGS
------------------
CN=SUPERVISOR_01,CN=Comput ers,DC=CRC CORP,DC=LO CAL
Last time Group Policy was applied: 1/6/2010 at 2:20:01 AM
Group Policy was applied from: pdc_serv.CRCCORP.LOCAL
Group Policy slow link threshold: 500 kbps
Applied Group Policy Objects
-------------------------- ---
Default Domain Policy
GPO For All Workstatins
The following GPOs were not applied because they were filtered out
-------------------------- ---------- ---------- ---------- ---------- -
Restricted Users
Filtering: Denied (Security)
Content Filtering Off
Filtering: Denied (Security)
Install Software-0
Filtering: Not Applied (Empty)
Internet Open Security LVL 2
Filtering: Denied (Security)
Local Group Policy
Filtering: Not Applied (Empty)
The computer is a part of the following security groups:
-------------------------- ---------- ---------- ----------
BUILTIN\Administrators
Everyone
BUILTIN\Users
NT AUTHORITY\NETWORK
NT AUTHORITY\Authenticated Users
SUPERVISOR_01$
Domain Computers
WorkStations
USER SETTINGS
--------------
CN=Kenneth Harnisch,OU=Training,DC=CR CCORP,DC=L OCAL
Last time Group Policy was applied: 1/6/2010 at 2:20:01 AM
Group Policy was applied from: pdc_serv.CRCCORP.LOCAL
Group Policy slow link threshold: 500 kbps
Applied Group Policy Objects
-------------------------- ---
PowerUsers
Restricted Users
Default Domain Policy
GPO For All Domain Users
The following GPOs were not applied because they were filtered out
-------------------------- ---------- ---------- ---------- ---------- -
Content Filtering Off
Filtering: Denied (Security)
Install Software-0
Filtering: Not Applied (Empty)
Internet Open Security LVL 2
Filtering: Denied (Security)
Internet Open Security LVL 1
Filtering: Not Applied (Unknown Reason)
Local Group Policy
Filtering: Not Applied (Empty)
The user is a part of the following security groups:
-------------------------- ---------- ---------- ------
Domain Users
Everyone
BUILTIN\Administrators
BUILTIN\Users
NT AUTHORITY\INTERACTIVE
NT AUTHORITY\Authenticated Users
LOCAL
ManagerLevelAccess
Dept-Specialty
Dispatch Dept
Internet Open Security LVL 1
G-Dispatch
DispatchAccessGroup
Internet Content Filtering Off
Training Dept
Dispatch Supervison
C:\Documents and Settings\kharnisch>
" Internet Open Security LVL 1 Filtering: Not Applied (Unknown Reason) "
This GPO gives more access to Internet Option.
The user is in "Internet Open Security LVL1 " in AD user group.
Then, the AD user group has Read/Apply permission for the GPO and the AD user group added in Scope/Security Filtering. The GPO is linked to Domain level.
I checked folder permission to the GPO, no problem.
I ran gpupdate /force, no luck.
Any clue?
=============
C:\Documents and Settings\kharnisch>gpresul
Microsoft (R) Windows (R) XP Operating System Group Policy Result tool v2.0
Copyright (C) Microsoft Corp. 1981-2001
Created On 1/6/2010 at 2:23:53 AM
RSOP results for CRCCORP\kharnisch on SUPERVISOR_01 : Logging Mode
--------------------------
OS Type: Microsoft Windows XP Professional
OS Configuration: Member Workstation
OS Version: 5.1.2600
Domain Name: CRCCORP
Domain Type: Windows 2000
Site Name: Default-First-Site-Name
Roaming Profile:
Local Profile: C:\Documents and Settings\kharnisch
Connected over a slow link?: No
COMPUTER SETTINGS
------------------
CN=SUPERVISOR_01,CN=Comput
Last time Group Policy was applied: 1/6/2010 at 2:20:01 AM
Group Policy was applied from: pdc_serv.CRCCORP.LOCAL
Group Policy slow link threshold: 500 kbps
Applied Group Policy Objects
--------------------------
Default Domain Policy
GPO For All Workstatins
The following GPOs were not applied because they were filtered out
--------------------------
Restricted Users
Filtering: Denied (Security)
Content Filtering Off
Filtering: Denied (Security)
Install Software-0
Filtering: Not Applied (Empty)
Internet Open Security LVL 2
Filtering: Denied (Security)
Local Group Policy
Filtering: Not Applied (Empty)
The computer is a part of the following security groups:
--------------------------
BUILTIN\Administrators
Everyone
BUILTIN\Users
NT AUTHORITY\NETWORK
NT AUTHORITY\Authenticated Users
SUPERVISOR_01$
Domain Computers
WorkStations
USER SETTINGS
--------------
CN=Kenneth Harnisch,OU=Training,DC=CR
Last time Group Policy was applied: 1/6/2010 at 2:20:01 AM
Group Policy was applied from: pdc_serv.CRCCORP.LOCAL
Group Policy slow link threshold: 500 kbps
Applied Group Policy Objects
--------------------------
PowerUsers
Restricted Users
Default Domain Policy
GPO For All Domain Users
The following GPOs were not applied because they were filtered out
--------------------------
Content Filtering Off
Filtering: Denied (Security)
Install Software-0
Filtering: Not Applied (Empty)
Internet Open Security LVL 2
Filtering: Denied (Security)
Internet Open Security LVL 1
Filtering: Not Applied (Unknown Reason)
Local Group Policy
Filtering: Not Applied (Empty)
The user is a part of the following security groups:
--------------------------
Domain Users
Everyone
BUILTIN\Administrators
BUILTIN\Users
NT AUTHORITY\INTERACTIVE
NT AUTHORITY\Authenticated Users
LOCAL
ManagerLevelAccess
Dept-Specialty
Dispatch Dept
Internet Open Security LVL 1
G-Dispatch
DispatchAccessGroup
Internet Content Filtering Off
Training Dept
Dispatch Supervison
C:\Documents and Settings\kharnisch>
ASKER CERTIFIED SOLUTION
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
"Content Filtering Off" is supposed to be "Internet Content Filtering Off"
ASKER
PLEASE close the question