I have created a Group Policy to secure a 2016 RDS server. (Stopping the user from accessing control panel items, server manager, restart etc.)
The GP is applied to an OU which only contains the RDS server.
Unfortunately the GP is also being applied to the users desktop computers!
How can I prevent this GP from being applied to desktop computers?