Domain Group Policy is an infrastructure inside of the Microsoft Windows operating systems (Windows Server 2000, 2003, and 2008, along with Vista) that allows the administrator to implement specific configurations for both computers and users. This infrastructure is what provides the centralized management and configuration for an Active Directory environment. Group Policy provides directory-based desktop-configuration management. With Group Policy, you can specify policy settings for registry-based policies, security, software installations, scripts, folder redirection, Remote Installation Services (RIS), and internet Explorer maintenance.
Admins use Group Policy to define specific configurations for groups of users and computers by creating Group Policy settings. These settings are specified by the Group Policy Object Editor tool and contained in a Group Policy object (GPO), which is in turn linked to Active Directory containers, such as sites, domains, or OUs. Domain Group Policy is the configuration of groups and users within a domain. In this way, Group Policy settings are applied to the users and computers in those Active Directory containers. Admins can configure the users
RFC 3547 - The Group Domain of Interpretation
Introduction This document presents an ISAMKP Domain of Interpretation (DOI) for group key management called the "Group Domain of Interpretation" (GDOI)
tools.ietf.org/html/rfc3547
but if the question is about domain group then answer is
Domain Group Policy is an infrastructure inside of the Microsoft Windows operating systems (Windows Server 2000, 2003, and 2008, along with Vista) that allows the administrator to implement specific configurations for both computers and users. This infrastructure is what provides the centralized management and configuration for an Active Directory environment. Group Policy provides directory-based desktop-configuration management. With Group Policy, you can specify policy settings for registry-based policies, security, software installations, scripts, folder redirection, Remote Installation Services (RIS), and Internet Explorer maintenance.
Admins use Group Policy to define specific configurations for groups of users and computers by creating Group Policy settings. These settings are specified by the Group Policy Object Editor tool and contained in a Group Policy object (GPO), which is in turn linked to Active Directory containers, such as sites, domains, or OUs. Domain Group Policy is the configuration of groups and users within a domain. In this way, Group Policy settings are applied to the users and computers in those Active Directory containers. Admins can configure the users
Global Group: Members of Global Group can come only from local domain but members can access resources in any domain. Domain Local Group: Members of Local Group can come from any domain but members can access resources only in local domain. Universal Group: Members can come from any domain and members can access resource in any domain. Hope this is easy:)
what is difference between work-group and domain
domain local group
The domain admin account members are allowed administrative privileges for the entire domain. By default, the group has the local Administrator account on the Domain Controller as its member. A built-in group . After the first time installation of the OS, the only member of the group is the Administrator account. When a computer joins a domain, the Domain Admins group is added to the Administrators group. When a server becomes a domain controller, the Enterprise Admins group also is added to the Administrators group. The Administrators group has built-in capabilities that give its members full control over the system. The group is the default owner of any object that is created by a member of the group.
The domain admins global is added to the coputers local group.
The Domain is the broadest group.
domain experts
Always, because it has no restrictions when the domain functional level is •Windows 2000 native or Windows Server 2003: You can convert universal groups to domain local groups or to global groups
a pride
Domain.
the functional level of the domain is set to Windows 2000 mixed
The general public is the group that tends to be negatively affected by eminent domain laws.