Group Policy Management
body { font-size:68%;font-family:MS Shell Dlg; margin:0px,0px,0px,0px; border: 1px solid #666666; background:#F6F6F6; width:100%; word-break:normal; word-wrap:break-word; } .head { font-weight:bold; font-size:160%; font-family:MS Shell Dlg; width:100%; color:#6587DC; background:#E3EAF9; border:1px solid #5582D2; padding-left:8px; height:24px; } .path { margin-left: 10px; margin-top: 10px; margin-bottom:5px;width:100%; } .info { padding-left:10px;width:100%; } table { font-size:100%; width:100%; border:1px solid #999999; } th { border-bottom:1px solid #999999; text-align:left; padding-left:10px; height:24px; } td { background:#FFFFFF; padding-left:10px; padding-bottom:10px; padding-top:10px; } .btn { width:100%; text-align:right; margin-top:16px; } .hdr { font-weight:bold; border:1px solid #999999; text-align:left; padding-top: 4px; padding-left:10px; height:24px; margin-bottom:-1px; width:100%; } .bdy { width:100%; height:182px; display:block; overflow:scroll; z-index:2; background:#FFFFFF; padding-left:10px; padding-bottom:10px; padding-top:10px; border:1px solid #999999; } button { width:6.9em; height:2.1em; font-size:100%; font-family:MS Shell Dlg; margin-right:15px; } @media print { .bdy { display:block; overflow:visible; } button { display:none; } .head { color:#000000; background:#FFFFFF; border:1px solid #000000; } }
Setting Path:
Explanation
No explanation is available for this setting.
Supported On:
Not available
AE-PO-WIN-SEC-C-CIS_UserRights
Data collected on: 2-9-2025 09:01:36
General
Details
Domainemea.tpg.ads
OwnerEMEA\ygalal.5
Created12-2-2017 16:14:06
Modified9-2-2023 14:45:58
User Revisions1 (AD), 1 (SYSVOL)
Computer Revisions30 (AD), 30 (SYSVOL)
Unique ID{ff2dfdc0-f055-490e-9b49-07f4abb213e2}
GPO StatusEnabled
Links
LocationEnforcedLink StatusPath
DXBNoEnabledemea.tpg.ads/AE/Systems/Servers/DXB

This list only includes links in the domain of the GPO.
Security Filtering
The settings in this GPO can only apply to the following groups, users, and computers:
Name
None
Delegation
These groups and users have the specified permission for this GPO
NameAllowed PermissionsInherited
EMEA\AEDXBLDPXE01$CustomNo
Computer Configuration (Enabled)
Policies
Windows Settings
Security Settings
Local Policies/User Rights Assignment
PolicySetting
Access Credential Manager as a trusted caller
Access this computer from the networkBUILTIN\Administrators, NT AUTHORITY\Authenticated Users, EMEA\AE-G-ORG-OU Admins, EMEA\Domain Admins
Act as part of the operating system
Adjust memory quotas for a processBUILTIN\Administrators, NT AUTHORITY\LOCAL SERVICE, NT AUTHORITY\NETWORK SERVICE
Allow log on locallyBUILTIN\Administrators, EMEA\AE-G-ORG-OU Admins, EMEA\Domain Admins
Allow log on through Terminal ServicesEMEA\Domain Admins, EMEA\AE-G-ORG-OU Admins, BUILTIN\Administrators
Back up files and directoriesBUILTIN\Administrators, EMEA\AE-G-ORG-OU Admins, EMEA\Domain Admins
Change the system timeBUILTIN\Administrators, NT AUTHORITY\LOCAL SERVICE
Change the time zoneBUILTIN\Administrators, NT AUTHORITY\LOCAL SERVICE
Create a pagefileBUILTIN\Administrators
Create a token object
Create global objectsBUILTIN\Administrators, NT AUTHORITY\LOCAL SERVICE, NT AUTHORITY\NETWORK SERVICE, NT AUTHORITY\SERVICE
Create permanent shared objects
Create symbolic linksBUILTIN\Administrators
Debug programsBUILTIN\Administrators
Deny access to this computer from the networkBUILTIN\Guests, NT AUTHORITY\ANONYMOUS LOGON
Deny log on as a batch job
Deny log on as a service
Deny log on locallyEMEA\AE-G-ORG-ServiceAccounts
Deny log on through Terminal ServicesTpladmin, EMEA\AE-G-ORG-ServiceAccounts
Enable computer and user accounts to be trusted for delegation
Force shutdown from a remote systemBUILTIN\Administrators, EMEA\AE-G-ORG-OU Admins, EMEA\Domain Admins
Generate security auditsNT AUTHORITY\NETWORK SERVICE, NT AUTHORITY\LOCAL SERVICE
Increase scheduling priorityBUILTIN\Administrators
Load and unload device driversBUILTIN\Administrators
Lock pages in memoryBUILTIN\Administrators
Manage auditing and security logBUILTIN\Administrators
Modify an object label
Modify firmware environment valuesBUILTIN\Administrators
Perform volume maintenance tasksBUILTIN\Administrators
Profile single processBUILTIN\Administrators
Profile system performanceBUILTIN\Administrators, NT SERVICE\WdiServiceHost
Remove computer from docking stationBUILTIN\Administrators
Restore files and directoriesBUILTIN\Administrators
Shut down the systemBUILTIN\Administrators
Synchronize directory service data
Take ownership of files or other objectsBUILTIN\Administrators
Preferences
Control Panel Settings
Local Users and Groups
Group (Name: Administrators (built-in))
Administrators (built-in) (Order: 1)
Local Group
ActionUpdate
Properties
Group nameAdministrators (built-in)
Delete all member usersDisabled
Delete all member groupsDisabled
Add members
EMEA\AE-G-ORG-OU AdminsS-1-5-21-513466819-3096973226-347852806-258364
EMEA\Domain AdminsS-1-5-21-513466819-3096973226-347852806-512
EMEA\EMEA-G-ORG-Local Workstation and Server AdminsS-1-5-21-513466819-3096973226-347852806-321520
EMEA\epmtask.3S-1-5-21-513466819-3096973226-347852806-613746
EMEA\epmtask.1S-1-5-21-513466819-3096973226-347852806-491671
Common
Options
Stop processing items on this extension if an error occurs on this itemNo
Remove this item when it is no longer appliedNo
Apply once and do not reapplyNo
User Configuration (Enabled)
No settings defined.