7,023 questions
I find it easier to manage if you assign GPOs to an OU. When you don't need to target every user or computer in an OU then assign the GPO to a security Group or use security filtering.
Managing GPOs really depends on how your AD is structured. Good OU design will make managing GPOs much easier.