    Can ePO Query Membership of an AD group and tag based on results


      I have been looking for a method to enumerate the members of an AD group (in this case machine names) and tag them for actions later.


      Has anyone found a way to do this?


      In my use case - Policy Assignment Rules will not work since the product I need to manage has only Machine based policies.  I would like to import a list of machine names that have been granted an

      exception to an existing rule set, then based on that tag use assignment rules to modify the policy and assign the proper one.