A. Its not possible to apply a group policy to a security group however what you can do is to filter a group policy by changing the permissions on the Group Policy so that only certain users/groups have read and apply privileges.

  1. Start the Active Directory Users and Computers MMC snap-in (Start - Programs - Administrative Tools - Active Directory Users and Computers)
  2. Right click on the container (OU or domain) that has the Group Policy Object whose permissions you wish to change and select Properties
  3. Select the 'Group Policy' tab
  4. Select the GPO from the list and click Properties
  5. Select the Security tab
  6. Modify the permissions so that only the required users have the read and apply privileges and Administrators who need to modify the GPO have read and write
    Click here to view image
  7. Click OK to the dialog
  8. Click Close the containers properties

Now only the selected users will run the GPO