Hello Anklesh,
GPOs can be applied to computers or users only, not to security groups. So
create a second OU with the same GPOs wihtout USB restrictions and move the
machine to it.
Another option then can help but maybe need some reconfiguration of GPOs,
is to use security filtering according to:
http://technet.microsoft.com/en-us/l...88(WS.10).aspx
Best regards
Meinolf Weber
Disclaimer: This posting is provided "AS IS" with no warranties, and confers
no rights.
** Please do NOT email, only reply to Newsgroups
** HELP us help YOU!!!
http://www.blakjak.demon.co.uk/mul_crss.htm
> Dear sir/Madam,
>
> We are using Windows 2003 ent. server with vista and xp clients. For
> Deny usb storage device i have make a policy in server. In that policy
> i have download the USB_removable_drives_ADM file and add in gpo. than
> disable usb storage device. and apply this policy to computers. now
> all computers have no access to usb storage. but because of I wants
> give permit to some computer for access usb storage, I have create one
> OU and apply policy than create and security group make member all
> computer which i want to deny. but it is not working. When i move
> computers in this OU than working also. and in this case i can apply
> only one policy that computers. Please let me know how i can apply
> this policy without moving computer at another OU.
>
> Thanks,
>
> Anklesh Chauhan
>