Applies to: All versions of Centrify DirectControl
Question: Is it possible to apply a Group Policy to Security Groups instead of Organizational Units?
Answer:A Group Policy has specific application order (Site, domain, OU). It is also specific to machine or user.
Loopback Processing and Security Group Filtering are both supported in Centrify group policies.
By default, Security Filtering contains the "Authenticated Users" group. This can be removed and then AD Security Groups added in its place.
Please note when using Security Filtering with User Configuration policies, there is some additional configuration that may need to be done. For more infomation, please see the following KB: