On Wed, Aug 5, 2009 at 2:54 PM, Don Guyer<[email protected]> wrote: > Even though you use Security Filtering, the GPO still has to be applied to a > container (OU).
You could just link all GPOs to a high-level OU, and then use filtering (GPO permissions) to be selective at lower levels. We do a little of both. For example, we have an OU for PCs and an OU for servers. There's a GPO that's linked to the PC OU that does things appropriate for users. We also have GPOs which apply to only some PCs. Those are linked to the PC OU, and filtered with security groups as well. -- Ben ~ Finally, powerful endpoint security that ISN'T a resource hog! ~ ~ <http://www.sunbeltsoftware.com/Business/VIPRE-Enterprise/> ~
