Group Policy Interview Questions and Answers- Part-1

Find below best group policy interview questions asked in windows server, active directory and system admin interviews. The answers provide you immense knowledge on group policy’s and you can use these answers for latest windows 2008 and 2012 servers.

Active Directory Group Policy Interview Questions and Answers:

1. Why should we use Group Policy?

Answer- For deploying softwares

We can apply security

For controlling Users environment, settings, per computer settings

To manage desktop environment (To standardize environment)

To modify the registry

2. What is Group policy object?

Answer- We call the actual unit that we are creating, deleting, managing, working with is called Group Policy object. Group Policy objects two components

  • Group Policy container
  • Group Policy template

3. What is Group policy container?

Answer- It is the container in the Active Directory where the Group Policy can be applied. (i.e., either Organizational unit or Domain or Site)

4. What is Group policy template?

Answer- When you create a group policy container automatically a template will be created in the hard drive, in sysvol folder of the Domain Controller that is called Group Policy template.

5. Where is Group policy template stored?

Answer- Group Policy template stored in sysvol folder.

6. How to create a Group Policy?

Answer- Start –>Programs –>Administrative tools ->Active Directory Users and computers ->Right click on the container on which you want to apply Group Policy->Select properties-> Click on Group Policy tab->Click on New

7. What are the steps do we have when we are creating Group Policy?

Answer- There are two steps, one is creating Group policy and linking to the container. Generally we create the group policy at container only so when you click on New it creates and links the GPO to that container at a time. Suppose if you want to link a group policy object to a container which is already created click on Add select the group policy.

8. What are the buttons available on Group policy tab in properties of a container?


–>New (Creates new GPO)

–>Add (links a GPO to this container which has created already)

–>Edit (Edits the existing GPO)

–>Delete Deletes the GPO

–>Options (here you get the following check boxes)

No override; Prevent other GPO from overriding policy set in this one

Disabled; This GPO is not applicable to this container


Note: When you are deleting a GPO it asks two things,

Remove the link from this list

Remove the link and delete the GPO permanently

9. What is no override option in GPO?

Answer- Generally the policies set at one level will be overridden in other level, so if don’t want to override this policy under the sub levels of this one you can set this.

Ex: If you set No override at Domain level then that GPO will be applied through out the Domain, even though you have the same policy differently at OU level.

10. What is Block inheritance of GPO and where it is?

Answer- The Block inheritance GPO option blocks the group policies inheriting from the top level, and takes effect of this present GPO.

Right click on the container –>go to properties  click on Group Policy –>on the bottom of the General tab you will find Block inheritance check box

Ex: If you select Block inheritance at OU level then no policy from the Domain level, or Site level or local policy will not applied to this OU.

11. You have set the No override option at Domain level and Block inheritance at OU level. Which policy will take effect?

Answer- If you have set both then No override wins over the Block inheritance. So No override will take effect.

12. What are the options that are available when you click on option button on general tab?



–>Disable computer configuration settings

(The settings those are set under computer configuration of this GPO will not take effect.)

–>Disable user configuration settings

(The settings those are set under User configuration of this GPO will not take effect.)

–>Links (Displays the containers which have links to this GPO)


With security option you can set level of permissions and settings to the individual users and groups.

Ex: If you want to disable this GPO to a particular user on this container, on security tab select that user and select the deny check box for apply the Group Policy. Then the GPO will not take effect to that user even though he is in that container.

13. What will you see in the Group Policy snap in?

Answer- You will see two major portions, and under those you have sub portions, they are

–>Computer Configuration

–>Software settings

–>Software installations

–>Windows settings

–>Administrative templates

–>User configuration

–>Software settings

–>Software installations

–>Windows settings

–>Administrative templates

Note: Administrative templates are modifying the registry of windows 2000 clients.

14. What is the hierarchy of Group Policy?

Answer- Local policy

Site Policy

Domain Policy

OU Policy

Sub OU Policy (If any are there)

15. Who can create site level Group Policy?

Answer- Enterprise Admin

If you have any questions feel free to contact me on also follow us on facebook @windowstechno to get updates about new blog posts.

How useful was this post?

Click on a star to rate it!

Leave a Reply