Contoso Ltd. has a single-domain forest. Users in the Marketing OU report they cannot log on after a new GPO was linked to that OU. The GPO was intended to enforce password complexity. What is the most likely cause?
-
A
The GPO contains a Deny Logon Locally setting inadvertently applied
-
B
Password complexity GPOs must be linked at the domain level to take effect
-
C
The Marketing OU has Block Policy Inheritance enabled
-
D
Fine-Grained Password Policies override OU-linked GPOs automatically