zcm10.0.1 under windows
setup to ADS user auth source.
When assigning Windows Group Policy to OU from ADS, these policy are not
applied/effective if set to a parent container (I guess it's a bug, but
please confirm).

let assume a user into ou=office,ou=myorg
If I set a GPO (or any other policy) to ou=myorg, it wont be applied, the
agent on the wks doesn't see it, BUT ZCC shows it as inherited.
if the same policy is applied to ou=office,ou=myorg, it will be applied.

I didn't tried with eDir, but I guess it doesn't change anything, since
it's all inside zen10.