Overriding Computer Policies
We are currently running an End Point Protection Manager 12.1. WE sync it with our AD and use the inherit permissions were possible for our policies. The majority of our prodiction desktops are in a single container which makes it easier to manage our Group Policies. Except IT who have their own container and then a seperate AV policy is applied.
We pretty much lock down everything with Endpoint (usb ports etc.) but we are wondering if there is a method for keeping machines in the original OU but a way of overriding permissions so certain users can access removable drives etc.
Is there a way for a logged on user to overwrite the computer permissions or even a way to apply diffrent policies to machines in the same OU.