When you join a computer to a domain, its account gets placed into Computers container. However, that container isn't an organizational unit (OU) and, as such, can't be linked to a group policy object (GPO). It is a possible security breach (an unmanaged area).
It can be solved by pre-creating user accounts for computers prior to joining them. Use Active Directory Users and Computers to create a computer account within an OU. Afterwards, when computer is being joined, it will look for the same-name account and thus can be controlled by group policy. This process is called pre-staging.
It can be solved by pre-creating user accounts for computers prior to joining them. Use Active Directory Users and Computers to create a computer account within an OU. Afterwards, when computer is being joined, it will look for the same-name account and thus can be controlled by group policy. This process is called pre-staging.