If the domain controller being queried by a computer has an updated policy when the computer processes its policy, the computer will get the updated policy. A reboot or gpupdate /force will both trigger policy processing to take place.
You may have updated the policy on DC A. Then rebooted a computer that is querying DC B for it's policy. If the policy changes have not yet replicated between the DC's the updated policy will not have taken effect.
You do not need to delete/recreate the policy... you just need to wait for the policy to replicate - or force policy replication on your servers before the computers will process the policy changes.


LinkBack URL
About LinkBacks
Reply With Quote