One of the challenges of using security groups for computer account administration is that, like users, computer accounts determine their group membership at logon, which for a computer happens at boot time.
What if you need to update a computer’s group membership when the computer is away from the network?
The computer will then re-evaluate its group membership and apply the appropriate GPOs, including the much needed DirectAccess GPO.
Shane Skriletz, PEI
Thanks, that was very useful and exactly what I needed to apply Computer Policies over vpn
Job done! Thanks for sharing.
This is the single greatest tip I have ever read
The best way to retrieve user rights (with VPN or on the corporate network) is the lock/unlock session !! This works very fine !!