1. default domain policy will apply to all users/computers in the domain but it will be overrided by GPOs that are linked to OU level, or will be filtered by permission/wmi filter
2. default domain controller policy will apply to all DCs and it has higher priority than the default domain policy.
3. if the default domain controller policy is not applying, your AD environment is not gonna work.
4. if you set same settings in both default domain policy and domain controller policy,, and you see it effective only on DCs, i am pretty sure it comes from default domain controller policy, instead of domain policy
5. check your application log on client side, if a group policy is not applying, you should see userenv 1000 errors
6. there are too many factors can affect GP application, which is not possible covered by a forum like rolia
2. default domain controller policy will apply to all DCs and it has higher priority than the default domain policy.
3. if the default domain controller policy is not applying, your AD environment is not gonna work.
4. if you set same settings in both default domain policy and domain controller policy,, and you see it effective only on DCs, i am pretty sure it comes from default domain controller policy, instead of domain policy
5. check your application log on client side, if a group policy is not applying, you should see userenv 1000 errors
6. there are too many factors can affect GP application, which is not possible covered by a forum like rolia