KB3159398 – MS16-072 Group Policy update issues

With the latest security update KB3159398 from Microsoft installed on our machines we have noticed that some of our group policies failed to apply. After this update Authenticated users group needs to have the read permissions on each group policy object.

Since we had filtering set on several of our policies where we have removed Authenticated users group and have added only the security group that should have permissions for the object, our policies stopped applying.

This issue may occur if the Group Policy Object is missing the Read permissions for the Authenticated Users group or if you are using security filtering and are missing Read permissions for the domain computers group.

To resolve this issue, open Group Policy Management editor and follow one of these steps:

Add the Authenticated Users group with Read Permissions on the Group Policy Object (GPO).
If you are using security filtering, add the Domain Users group with read permission.

You may also like...

Leave a Reply

Your email address will not be published. Required fields are marked *

13 − 5 =

This site uses Akismet to reduce spam. Learn how your comment data is processed.