It sounds like you have designed the GPO wrong and it removes things. I've seen that like 10 years ago once. I would suggest to use Group Policy Preferences to manage local groups rather than restrictions.
Problem With gpupdate /force
Kruto
111
Reputation points
Hello I have GPO that add domain Groups to Built IN\administrators .
After I use regular gpupdate it runs with out any errors but when I use gpupdate /force it remove any users from Built IN\administrators .
I don't get any errors while using gpupdate /force .
I check gpresult and the policy is applied.
I can't find out what is the problem.
There is no other GPO that do changes in Built IN\administrators group .
Windows for business | Windows Client for IT Pros | User experience | Other
1 answer
Sort by: Most helpful
-
Pavel yannara Mirochnitchenko 13,456 Reputation points MVP2022-01-17T18:51:15.397+00:00