We help IT Professionals succeed at work.

GPO Filtering: Not Applied (Empty)

Letterpart
Letterpart asked
on
I have a GPO that is not being applied to a server as it is being filtered due to it being "empty".

The GPO is called: WSUS_Nutfield_Servers and is under:

Domain - Nutfield - Servers

In ADUC I have one machine (RACKNAS) in this OU.

gpresult gives me:

RSOP data for LETTERPART\administrator on RACKNAS : Logging Mode
-----------------------------------------------------------------

OS Type:                     Microsoft(R) Windows(R) Server 2003, Standard Edition
OS Configuration:            Member Server
OS Version:                  5.2.3790
Terminal Server Mode:        Remote Administration
Site Name:                   Nutfield
Roaming Profile:            
Local Profile:               C:\Documents and Settings\administrator.LETTERPART
Connected over a slow link?: No


COMPUTER SETTINGS
------------------
    CN=RACKNAS,OU=Servers,OU=Nutfield,DC=letterpart,DC=local
    Last time Group Policy was applied: 14/06/2010 at 16:33:02
    Group Policy was applied from:      appserv3.letterpart.local
    Group Policy slow link threshold:   500 kbps
    Domain Name:                        letterpart
    Domain Type:                        Windows 2000

    Applied Group Policy Objects
    -----------------------------
        Default Domain Policy
        Local Group Policy

    The following GPOs were not applied because they were filtered out
    -------------------------------------------------------------------
        WSUS_Nutfield_Servers
            Filtering:  Not Applied (Empty)

    The computer is a part of the following security groups
    -------------------------------------------------------
        BUILTIN\Administrators
        IIS_WPG
        SQLServer2005MSSQLUser$RACKNAS$BKUPEXEC
        BUILTIN\Users
        NT AUTHORITY\NETWORK
        NT AUTHORITY\Authenticated Users
        This Organization
        RACKNAS$
        Domain Computers
       

USER SETTINGS
--------------
    CN=Administrator,CN=Users,DC=letterpart,DC=local
    Last time Group Policy was applied: 14/06/2010 at 16:33:02
    Group Policy was applied from:      appserv3.letterpart.local
    Group Policy slow link threshold:   500 kbps
    Domain Name:                        LETTERPART
    Domain Type:                        Windows 2000
   
    Applied Group Policy Objects
    -----------------------------
        Default Domain Policy
        Local Group Policy

    The user is a part of the following security groups
    ---------------------------------------------------
        Domain Users
        BUILTIN\Users
        BUILTIN\Administrators
        REMOTE INTERACTIVE LOGON
        NT AUTHORITY\INTERACTIVE
        NT AUTHORITY\Authenticated Users
        This Organization
        LOCAL
        Group Policy Creator Owners
        Schema Admins
        Domain Admins
        Enterprise Admins

GPO report:


Computer Configuration (Enabled)
Administrative Templates
Windows Components/Windows Update
Policy      Setting
Specify intranet Microsoft update service location      Enabled
Set the intranet update service for detecting updates:      http://dc1
Set the intranet statistics server:      http://dc1
(example: http://IntranetUpd01)
User Configuration (Enabled)
Windows Settings
Internet Explorer Maintenance
Browser User Interface/Customized Title Bar
Title Bar Text
TEST-TEST


The GPO isn't disabled, I have authenticated Users in the Security Filtering and everything looks just like all my other policies I have at other sites and in different OU's. But obviously I have made a boo boo somewhere.
Comment
Watch Question

Commented:
try adding in "Domain Computers" group on the security filtering.
Would you believe it, during the night it has decided to work.

So no matter how many reboots/gpupdates I did yesterday, leaving it overnight has sorted it out and the policy is now being applied.

Thanks for your suggestion but I will leave authenticated Users in the Security Filtering as the only item and close this down.