

The computer policy itself should be linked to the computer OU. GPO loopback processing is a computer setting so it can be configured in a computer policy. In this scenario, the “Dev User Policy” has been applied to Dev, which is a computer OU.Ģ. This way, user policy can be applied to the user only when it is signed in to computer that is the member of this OU. Make sure that the required user policy has been linked to the computer OU. Link the required user policy to computer OU The step by step to enable Group Policy loopback processing and analysis for this requirement are as follows:ġ. When user signed in to computer under Dev OU, they should receive the “ Dev User Policy” instead.

There is a requirement for users to receive “ Global User Policy” and their respective “ Branding Policy” per region when they sign in to any computer except to those in the Dev OU. Computers are contained either in Dev or Prod under Workstations OU. Users are contained in any one of the region OU under the Global Users. In this scenario, we have a domain running on Windows Server 2012 R2 Domain Controller, with the OU structure configured as in below picture.
LOOPBACK INTERFACE HOW TO
Administrator must know how to enable GPO loopback processing and understand which mode that suits the condition. The user policies applied this way can replace the normal policy or be merged with it. However in this case, user policy is linked to the computer OU and will not takes effect to the user when signed in to computers outside this OU. Normally, user policy is linked to the user OU and will be applied regardless of which computer the user is signed in. GPO loopback processing is a mechanism that allows user policy to takes effect only on certain computers.
