I am new to ZEN and I am running into an issue that I cannot find the answer for. I created dynamic workstation groups around subnets for different sites. I attached a GPO to this level. Its main purpose was to block windows update and access to windows update in order to roll out patch management. I created workstation groups and tried to implement GPO that was much more strict basically to remove students access to manipulate the desktop, among other things, in computer labs. So my problem is that the computer lab PCs have a GPO at a dynamic workstation level and when the workstation group GPO is applied, it states successful but the policies are not reflected on the PC. I thought that policies were on a tiered structure that followed dynamic workstation group>workstation group>workstation. Any suggestions on how to enforce that GPO at the workstation group level?

Thanks in advance,