This list only includes links in the domain of the GPO.
Security Filtering
The settings in this GPO can only apply to the following groups, users, and computers:
Name
EMEA\AE-L-SEC-Windows 10 InTune
Delegation
These groups and users have the specified permission for this GPO
Name
Allowed Permissions
Inherited
EMEA\AE-L-SEC-Windows 10 InTune
Read (from Security Filtering)
No
EMEA\Domain Admins
Edit settings, delete, modify security
No
EMEA\Domain Computers
Read
No
NT AUTHORITY\Authenticated Users
Read
No
NT AUTHORITY\ENTERPRISE DOMAIN CONTROLLERS
Read
No
NT AUTHORITY\SYSTEM
Edit settings, delete, modify security
No
ROOT\Enterprise Admins
Edit settings, delete, modify security
No
S-1-5-21-513466819-3096973226-347852806-367117
Edit settings, delete, modify security
No
Computer Configuration (Enabled)
Policies
Administrative Templates
Policy definitions (ADMX files) retrieved from the central store.
Windows Components/MDM
Policy
Setting
Comment
Enable automatic MDM enrollment using default Azure AD credentials
Enabled
Select Credential Type to Use:
MDM Application ID:
MDM Application ID represents the ID of your MDM application that is configured in Azure AD. This is optional and only required for automatic MDM enrollment using device credentials when multiple MDM applications are configured in Azure AD.
Preferences
Control Panel Settings
Services
Service (Name: dmwappushservice)
dmwappushservice (Order: 1)
General
Service name
dmwappushservice
Action
Start service
Startup type:
Automatic
Wait timeout if service is locked:
30 seconds
Service Account
Log on service as:
LocalSystem
Allow service to interact with the desktop:
Yes
Recovery
First failure:
No change
Second failure:
No change
Subsequent failures:
No change
Common
Options
Stop processing items on this extension if an error occurs on this item