Windows – Filter Folder Redirection GPO with Authenticated Users

active-directoryfolder-redirectionwindowswindows-server-2012-r2

Followed this doc to setup folder redirection: https://technet.microsoft.com/en-us/library/jj649078(v=ws.11).aspx

Under Step 3: Create a GPO for Folder Redirection it has me add my "Folder Redirection Users" group to the scope of the GPO, but it also has me delete and add back the "Authenticated Users" group.

So since I have the "Authenticated Users" group in the scope of this GPO does that mean it will hit ALL users under the OU it is applied to and not just members of the "Folder Redirection Users" group? Do the permissions it has you grant the "Authenticated Users" group when you delete and add it back prevent this from happening?

Best Answer

So since I have the "Authenticated Users" group in the scope of this GPO does that mean it will hit ALL users under the OU it is applied to and not just members of the "Folder Redirection Users" group? Do the permissions it has you grant the "Authenticated Users" group when you delete and add it back prevent this from happening?

This is needed as a result of the Security update for Group Policy as detailed at the link listed at the end of step 3. This is so that the GPO can be read by the appropriate entities. The GPO will only be applied to the users in the group in your Security Filter.

https://support.microsoft.com/en-us/help/3163622/ms16-072-security-update-for-group-policy-june-14,-2016