I’m setting up a brand new 2012 server for our small (13 user) network. I modified the default domain policy and set the lockout policy to lock the user out after 3 failed logins. Then I deleted the lockout policy portion of the GPO and added a new GPO specifying the lockout policy for the OU. I changed the threshold to 5 attempts and more time for the lockout duration, but my old settings are still applying. If I check in Powershell it shows my old settings as what’s being used. BUT, if I run group policy results, it shows the updated settings. For some reason it sees the old policy even though I deleted it. Any ideas?