Answer the question
In order to leave comments, you need to log in
Removing / Adding a user to AD groups, why does it take a long time to update?
Greetings, colleagues
I have not dealt with Microsoft products for a long time ...
I have a windows server 19 with AD, a bus 10 car I add a
user to a group, for example myself for testing, I make a policy for this group I
execute 'gpupdate / force', 'gpresult -r'
policy applied (more precisely, not), writes access denied, well, it’s clear, I still haven’t added the
hell with it to the group, I reboot the computer, but no, I still haven’t added it to the group ... Automatically pulls up in half an hour or an hour somewhere then
the question is: how can you quickly shove a user into a group, or rather let the account understand that it is now in another group?
Answer the question
In order to leave comments, you need to log in
TGT ticket cache needs to be reset. It doesn't update instantly.
Using the klist purge command https://docs.microsoft.com/en-us/windows-server/ad...
Didn't find what you were looking for?
Ask your questionAsk a Question
731 491 924 answers to any question