GPO – Apply to a specific Users/Group
On the domain controller, open the group policy management tool.
Create a new group policy.
Enter a name for the new group policy.
In our example, the new GPO was named: MY-GPO.
On the Group Policy Management screen, select your GPO and access the Delegation tab.
On the bottom of the screen, click on the Advanced button.
Select the Authenticated users group and uncheck the permission to apply the group policy.
Click on the Add button and enter a user account.
Select the user account and give permission to apply the group policy.
Optionally, you may apply the GPO to a specific group of users.
In our example, the account USER01 was given permission to apply the GPO named MY-GPO.