1 00:00:00,390 --> 00:00:04,590 The GOP rules that apply to a user computer or both. 2 00:00:04,590 --> 00:00:06,840 Do not all apply at once. 3 00:00:06,840 --> 00:00:10,590 Group policy applies GPO rules in a particular order. 4 00:00:10,590 --> 00:00:17,280 This order means that certain is processed first might be overwritten by conflicting settings that are 5 00:00:17,280 --> 00:00:25,190 processed later group policy follows the following hierarchical process in order first local GPO SA 6 00:00:25,190 --> 00:00:33,480 applied each computer that is running Microsoft Windows 2000 on your has at least one local GPO the 7 00:00:33,480 --> 00:00:41,670 local GOP rules apply first then side G bills GPO was linked to sites applied second if there are multiple 8 00:00:41,670 --> 00:00:46,370 side GP shows they apply send erroneously in the listed order. 9 00:00:46,440 --> 00:00:51,100 Third the main G bills GPO is linked to domains applies. 10 00:00:51,090 --> 00:00:58,050 Third if there are multiple domain GP shows they apply some chronic slit in the listed order and finally 11 00:00:58,140 --> 00:01:03,570 or Yuji bills GPO is linked to top level or use applied for. 12 00:01:03,660 --> 00:01:10,380 If there are multiple top level or huge bureaus they apply some cronies in the listed order and the 13 00:01:10,380 --> 00:01:18,510 last one in this list is child or you GP O's GP also linked to child o use apply fifth if there are 14 00:01:18,510 --> 00:01:24,750 multiple child or Yuji GP bills they apply some cronies late in the listed order when there are multiple 15 00:01:24,750 --> 00:01:32,730 levels of child or use GP also linked to higher level or you supply fails and GP goes for the lower 16 00:01:32,730 --> 00:01:34,640 level or you supply an axe. 17 00:01:34,650 --> 00:01:41,600 Please remember that in group policy application the general rule is that the last policy applied. 18 00:01:41,670 --> 00:01:48,960 Williams for example a policy that restricts access to Control Panel applied at the demand level could 19 00:01:48,960 --> 00:01:56,310 be reversed by a policy applied as the O you level for the objects contained in that particular o you. 20 00:01:56,430 --> 00:02:03,450 If you link several GP O's turnover you their process in a curious in the order that the administrator 21 00:02:03,450 --> 00:02:12,240 specifies on the O use linked group policy object step in the GP M.S. by default process and is enabled 22 00:02:12,240 --> 00:02:20,610 for all GP all links you can disable containers GP or link to block the application of a GP or completely 23 00:02:20,760 --> 00:02:28,590 for a given site domain or you note that if the same GPO is linked to other containers elsewhere in 24 00:02:28,590 --> 00:02:36,390 the ADT as hierarchy the GP will will continue to process it in those containers is if the links are 25 00:02:36,390 --> 00:02:44,340 enabled you can disable the user or the computer configuration section of a particular GPO independently 26 00:02:44,570 --> 00:02:46,890 of either the user or computer. 27 00:02:46,890 --> 00:02:54,270 If one section of a policy is known to be m to disable the other side will make the policy process and 28 00:02:54,540 --> 00:02:56,070 marginally faster. 29 00:02:56,070 --> 00:03:03,360 For example if you have a policy that only delivers user desktop configuration you could disable the 30 00:03:03,360 --> 00:03:05,220 computer site of the policy.