Group Policy Management
body { font-size:68%;font-family:MS Shell Dlg; margin:0px,0px,0px,0px; border: 1px solid #666666; background:#F6F6F6; width:100%; word-break:normal; word-wrap:break-word; } .head { font-weight:bold; font-size:160%; font-family:MS Shell Dlg; width:100%; color:#6587DC; background:#E3EAF9; border:1px solid #5582D2; padding-left:8px; height:24px; } .path { margin-left: 10px; margin-top: 10px; margin-bottom:5px;width:100%; } .info { padding-left:10px;width:100%; } table { font-size:100%; width:100%; border:1px solid #999999; } th { border-bottom:1px solid #999999; text-align:left; padding-left:10px; height:24px; } td { background:#FFFFFF; padding-left:10px; padding-bottom:10px; padding-top:10px; } .btn { width:100%; text-align:right; margin-top:16px; } .hdr { font-weight:bold; border:1px solid #999999; text-align:left; padding-top: 4px; padding-left:10px; height:24px; margin-bottom:-1px; width:100%; } .bdy { width:100%; height:182px; display:block; overflow:scroll; z-index:2; background:#FFFFFF; padding-left:10px; padding-bottom:10px; padding-top:10px; border:1px solid #999999; } button { width:6.9em; height:2.1em; font-size:100%; font-family:MS Shell Dlg; margin-right:15px; } @media print { .bdy { display:block; overflow:visible; } button { display:none; } .head { color:#000000; background:#FFFFFF; border:1px solid #000000; } }
Setting Path:
Explanation
No explanation is available for this setting.
Supported On:
Not available
AE-PO-ADM-C Windows 10 Policies
Data collected on: 2-9-2025 09:24:41
General
Details
Domainemea.tpg.ads
OwnerS-1-5-21-513466819-3096973226-347852806-283361
Created18-3-2019 08:19:32
Modified9-2-2023 14:48:36
User Revisions1 (AD), 1 (SYSVOL)
Computer Revisions44 (AD), 44 (SYSVOL)
Unique ID{dda11a6c-93ad-4f48-81a8-7d5b6b55d940}
GPO StatusEnabled
Links
LocationEnforcedLink StatusPath
DXBNoEnabledemea.tpg.ads/AE/Systems/Clients/DXB
ClientsNoEnabledemea.tpg.ads/EG/Systems/Clients

This list only includes links in the domain of the GPO.
Security Filtering
The settings in this GPO can only apply to the following groups, users, and computers:
Name
EMEA\AE-L-SEC-Windows 10 Policies Computer Settings
Delegation
These groups and users have the specified permission for this GPO
NameAllowed PermissionsInherited
EMEA\AE-L-SEC-Windows 10 Policies Computer SettingsRead (from Security Filtering)No
EMEA\Domain AdminsEdit settings, delete, modify securityNo
EMEA\Domain ComputersReadNo
NT AUTHORITY\Authenticated UsersReadNo
NT AUTHORITY\ENTERPRISE DOMAIN CONTROLLERSReadNo
NT AUTHORITY\SYSTEMEdit settings, delete, modify securityNo
ROOT\Enterprise AdminsEdit settings, delete, modify securityNo
S-1-5-21-513466819-3096973226-347852806-283361Edit settings, delete, modify securityNo
S-1-5-21-513466819-3096973226-347852806-367117Edit settings, delete, modify securityNo
Computer Configuration (Enabled)
Policies
Windows Settings
Security Settings
Local Policies/User Rights Assignment
PolicySetting
Deny log on locallyEMEA\AE-G-ORG-ServiceAccounts
Event Log
PolicySetting
Maximum security log size4000000 kilobytes
Retain security log90 days
Retention method for security logBy days
File System
%SystemRoot%\ImmersiveControlPanel\SystemSettings.exe
Configure this file or folder then: Replace existing permissions on all subfolders and files with inheritable permissions
OwnerEMEA\Domain Users
Permissions
TypeNamePermissionApply To
AllowBUILTIN\AdministratorsFull ControlThis folder, subfolders and files
AllowCREATOR OWNERFull ControlSubfolders and files only
AllowNT AUTHORITY\SYSTEMFull ControlThis folder, subfolders and files
AllowBUILTIN\UsersRead and ExecuteThis folder, subfolders and files
AllowAPPLICATION PACKAGE AUTHORITY\ALL APPLICATION PACKAGESRead and ExecuteThis folder, subfolders and files
Allow inheritable permissions from the parent to propagate to this object and all child objectsDisabled
Auditing
No auditing specified
%SystemRoot%\System32\UIRibbon.dll
Configure this file or folder then: Replace existing permissions on all subfolders and files with inheritable permissions
Owner
Permissions
TypeNamePermissionApply To
AllowNT AUTHORITY\SYSTEMFull ControlThis folder, subfolders and files
AllowEMEA\Domain UsersFull ControlThis folder, subfolders and files
AllowBUILTIN\AdministratorsFull ControlThis folder, subfolders and files
AllowBUILTIN\UsersRead and ExecuteThis folder, subfolders and files
Allow inheritable permissions from the parent to propagate to this object and all child objectsDisabled
Auditing
No auditing specified
Wireless Network (802.11) Policies
New Wireless Network Policy
Policy NameNew Wireless Network Policy
Policy DescriptionSample Description
Policy TypeWindows Vista and Later Releases
Global Settings
Use Windows wireless LAN network services for clientsEnabled
Shared user credentials for network authenticationEnabled
Hosted networksEnabled
Allow user to view denied networksEnabled
Allow everyone to create all user profilesEnabled
Only use Group Policy profiles for allowed networksDisabled
Network Filters
Prevent connection to infrastructure networksDisabled
Prevent connection to adhoc networksDisabled
Administrative Templates
Policy definitions (ADMX files) retrieved from the central store.
Control Panel
PolicySettingComment
Settings Page VisibilityEnabled
Settings Page Visibility:showonly: sound;display
Control Panel/Personalization
PolicySettingComment
Force a specific default lock screen and logon imageEnabled
Path to lock screen image:\\EGCAIFS01.emea.tpg.ads\EGCAIClients$\Settings\WallPaper & Screen Saver\COPC Audit 2.jpg
Example: Using a local path: C:\windows\web\screen\lockscreen.jpg
Example: Using a UNC path: \\Server\Share\Corp.jpg
Turn off fun facts, tips, tricks, and more on lock screenEnabled
PolicySettingComment
Prevent changing lock screen and logon imageEnabled
Network/Network Connections
PolicySettingComment
Prohibit use of Internet Connection Sharing on your DNS domain networkEnabled
Windows Components/OneDrive
PolicySettingComment
Prevent the usage of OneDrive for file storageEnabled
Windows Components/Windows Ink Workspace
PolicySettingComment
Allow Windows Ink WorkspaceEnabled
Choose one of the following actionsDisabled
Preferences
Windows Settings
Folders
Folder (Path: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3)
Group3 (Order: 1)
General
ActionDelete
Attributes
PathC:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3
Delete this folder (if emptied)Enabled
Recursively delete all subfolders (if emptied)Enabled
Delete all files in the folder(s)Enabled
Allow deletion of read-only files/foldersEnabled
Ignore errors for files/folders that cannot be deletedEnabled
Common
Options
Stop processing items on this extension if an error occurs on this itemNo
Apply once and do not reapplyNo
Folder (Path: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group2)
Group2 (Order: 2)
General
ActionDelete
Attributes
PathC:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group2
Delete this folder (if emptied)Enabled
Recursively delete all subfolders (if emptied)Enabled
Delete all files in the folder(s)Enabled
Allow deletion of read-only files/foldersEnabled
Ignore errors for files/folders that cannot be deletedEnabled
Common
Options
Stop processing items on this extension if an error occurs on this itemNo
Apply once and do not reapplyNo
Folder (Path: C:\Program Files\WindowsApps\Microsoft.MicrosoftStickyNotes_1.8.2.0_neutral_~_8wekyb3d8bbwe)
Microsoft.MicrosoftStickyNotes_1.8.2.0_neutral_~_8wekyb3d8bbwe (Order: 3)
General
ActionDelete
Attributes
PathC:\Program Files\WindowsApps\Microsoft.MicrosoftStickyNotes_1.8.2.0_neutral_~_8wekyb3d8bbwe
Delete this folder (if emptied)Enabled
Recursively delete all subfolders (if emptied)Enabled
Delete all files in the folder(s)Enabled
Allow deletion of read-only files/foldersEnabled
Ignore errors for files/folders that cannot be deletedEnabled
Common
Options
Stop processing items on this extension if an error occurs on this itemNo
Apply once and do not reapplyNo
Folder (Path: C:\Program Files\WindowsApps\Microsoft.MicrosoftStickyNotes_1.8.2.0_x64__8wekyb3d8bbwe)
Microsoft.MicrosoftStickyNotes_1.8.2.0_x64__8wekyb3d8bbwe (Order: 4)
General
ActionDelete
Attributes
PathC:\Program Files\WindowsApps\Microsoft.MicrosoftStickyNotes_1.8.2.0_x64__8wekyb3d8bbwe
Delete this folder (if emptied)Enabled
Recursively delete all subfolders (if emptied)Enabled
Delete all files in the folder(s)Enabled
Allow deletion of read-only files/foldersEnabled
Ignore errors for files/folders that cannot be deletedEnabled
Common
Options
Stop processing items on this extension if an error occurs on this itemNo
Apply once and do not reapplyNo
Folder (Path: C:\Program Files\WindowsApps\Microsoft.MicrosoftStickyNotes_1.8.2.0_neutral_split.scale-100_8wekyb3d8bbwe)
Microsoft.MicrosoftStickyNotes_1.8.2.0_neutral_split.scale-100_8wekyb3d8bbwe (Order: 5)
General
ActionDelete
Attributes
PathC:\Program Files\WindowsApps\Microsoft.MicrosoftStickyNotes_1.8.2.0_neutral_split.scale-100_8wekyb3d8bbwe
Delete this folder (if emptied)Enabled
Recursively delete all subfolders (if emptied)Enabled
Delete all files in the folder(s)Enabled
Allow deletion of read-only files/foldersEnabled
Ignore errors for files/folders that cannot be deletedEnabled
Common
Options
Stop processing items on this extension if an error occurs on this itemNo
Apply once and do not reapplyNo
Registry
AllowWindowsInkWorkspace (Order: 1)
General
ActionCreate
Properties
HiveHKEY_LOCAL_MACHINE
Key pathSOFTWARE\Policies\Microsoft\WindowsInkWorkspace
Value nameAllowWindowsInkWorkspace
Value typeREG_DWORD
Value data0x0 (0)
Common
Options
Stop processing items on this extension if an error occurs on this itemNo
Remove this item when it is no longer appliedNo
Apply once and do not reapplyNo
Scancode Map (Order: 2)
General
ActionDelete
Properties
HiveHKEY_LOCAL_MACHINE
Key pathSYSTEM\CurrentControlSet\Control\Keyboard Layout
Value nameScancode Map
Common
Options
Stop processing items on this extension if an error occurs on this itemNo
Apply once and do not reapplyNo
Control Panel Settings
Services
Service (Name: MSASCuiL.exe)
MSASCuiL.exe (Order: 1)
General
Service nameMSASCuiL.exe
ActionStop service
Startup type:Disabled
Wait timeout if service is locked:30 seconds
Service Account
Log on service as:No change
Recovery
First failure:Take no action
Second failure:Take no action
Subsequent failures:Take no action
Reset fail count after:0 days
Common
Options
Stop processing items on this extension if an error occurs on this itemNo
Apply once and do not reapplyNo
User Configuration (Enabled)
No settings defined.