AppLocker blocking Logon scripts

I ran into an issue today on Windows Server 2012R2 where AppLocker was blocking logon & logoff scripts despite the sysvol folder being in the allowed policy. The documentation indicates that allowing the following folder should be enough: \\\sysvol\\policies\* This isnt the case, you actually need the NETLOGON folder too: \\\NETLOGON\* And in my instance […]