Group Policy Management
body { font-size:68%;font-family:MS Shell Dlg; margin:0px,0px,0px,0px; border: 1px solid #666666; background:#F6F6F6; width:100%; word-break:normal; word-wrap:break-word; } .head { font-weight:bold; font-size:160%; font-family:MS Shell Dlg; width:100%; color:#6587DC; background:#E3EAF9; border:1px solid #5582D2; padding-left:8px; height:24px; } .path { margin-left: 10px; margin-top: 10px; margin-bottom:5px;width:100%; } .info { padding-left:10px;width:100%; } table { font-size:100%; width:100%; border:1px solid #999999; } th { border-bottom:1px solid #999999; text-align:left; padding-left:10px; height:24px; } td { background:#FFFFFF; padding-left:10px; padding-bottom:10px; padding-top:10px; } .btn { width:100%; text-align:right; margin-top:16px; } .hdr { font-weight:bold; border:1px solid #999999; text-align:left; padding-top: 4px; padding-left:10px; height:24px; margin-bottom:-1px; width:100%; } .bdy { width:100%; height:182px; display:block; overflow:scroll; z-index:2; background:#FFFFFF; padding-left:10px; padding-bottom:10px; padding-top:10px; border:1px solid #999999; } button { width:6.9em; height:2.1em; font-size:100%; font-family:MS Shell Dlg; margin-right:15px; } @media print { .bdy { display:block; overflow:visible; } button { display:none; } .head { color:#000000; background:#FFFFFF; border:1px solid #000000; } }
Setting Path:
Explanation
No explanation is available for this setting.
Supported On:
Not available
AE-PO-WIN-U-Agentpolicy
Data collected on: 2-9-2025 09:02:18
General
Details
Domainemea.tpg.ads
OwnerEMEA\ygalal.5
Created12-3-2017 17:28:26
Modified29-5-2025 02:01:42
User Revisions169 (AD), 169 (SYSVOL)
Computer Revisions3 (AD), 3 (SYSVOL)
Unique ID{597f5ad7-f031-4940-9b85-196367f95670}
GPO StatusEnabled
Links
LocationEnforcedLink StatusPath
AgentsYesEnabledemea.tpg.ads/AE/Agents

This list only includes links in the domain of the GPO.
Security Filtering
The settings in this GPO can only apply to the following groups, users, and computers:
Name
EMEA\AE-L-SEC-AgentPolicies Settings
Delegation
These groups and users have the specified permission for this GPO
NameAllowed PermissionsInherited
EMEA\abdelhakim.49-admEdit settings, delete, modify securityNo
EMEA\AE-G-ORG-OU AdminsEdit settings, delete, modify securityNo
EMEA\AE-L-SEC-AgentPolicies SettingsRead (from Security Filtering)No
EMEA\Domain AdminsEdit settings, delete, modify securityNo
EMEA\ygalal.5Edit settings, delete, modify securityNo
NT AUTHORITY\Authenticated UsersReadNo
NT AUTHORITY\ENTERPRISE DOMAIN CONTROLLERSReadNo
NT AUTHORITY\SYSTEMEdit settings, delete, modify securityNo
ROOT\Enterprise AdminsEdit settings, delete, modify securityNo
Computer Configuration (Enabled)
Policies
Windows Settings
Security Settings
System Services
helpsvc (Startup Mode: Disabled)
Permissions
TypeNamePermission
AllowBUILTIN\AdministratorsFull Control
AllowNT AUTHORITY\SYSTEMFull Control
AllowNT AUTHORITY\INTERACTIVERead
Auditing
TypeNameAccess
FailureEveryoneFull Control
User Configuration (Enabled)
Policies
Windows Settings
Security Settings
Software Restriction Policies
Enforcement
PolicySetting
Apply Software Restriction Policies to the followingAll software files except libraries (such as DLLs)
Apply Software Restriction Policies to the following usersAll users
When applying Software Restriction PoliciesIgnore certificate rules
Designated File Types
File ExtensionFile Type
ADEADE File
ADPADP File
BASBAS File
BATWindows Batch File
CHMCompiled HTML Help file
CMDWindows Command Script
COMMS-DOS Application
CPLControl panel item
CRTSecurity Certificate
EXEApplication
HLPHelp file
HTAHTML Application
INFSetup Information
INSINS File
ISPISP File
LNKShortcut
MDBMDB File
MDEMDE File
MSCMicrosoft Common Console Document
MSIWindows Installer Package
MSPWindows Installer Patch
MSTMST File
OCXActiveX control
PCDPCD File
PIFShortcut to MS-DOS Program
REGRegistration Entries
SCRScreen saver
SHSSHS File
URLInternet Shortcut
VBVisual Basic Source File
WSCWindows Script Component
Trusted Publishers
Trusted publisher managementAllow all administrators and users to manage user's own Trusted Publishers
Certificate verificationNone
Software Restriction Policies/Security Levels
PolicySetting
Default Security LevelUnrestricted
Software Restriction Policies/Additional Rules
Path Rules
%HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRoot%
Security LevelUnrestricted
Description
Date last modified12-3-2017 18:14:18
%HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ProgramFilesDir%
Security LevelUnrestricted
Description
Date last modified12-3-2017 18:14:18
%ProgramFiles%\Windows Media Player\wmplayer.exe
Security LevelDisallowed
Description
Date last modified12-3-2017 18:15:04
%ProgramFiles(x86)%\Windows Media Player\wmplayer.exe
Security LevelDisallowed
Description
Date last modified12-3-2017 18:15:17
Administrative Templates
Policy definitions (ADMX files) retrieved from the central store.
Control Panel
PolicySettingComment
Hide specified Control Panel itemsEnabled
List of disallowed Control Panel items
*
PolicySettingComment
Show only specified Control Panel itemsEnabled
List of allowed Control Panel items
Display
mmsys.cpl
sound
Power Options
Control Panel/Add or Remove Programs
PolicySettingComment
Hide Change or Remove Programs pageEnabled
Remove Add or Remove ProgramsEnabled
Control Panel/Display
PolicySettingComment
Disable the Display Control PanelEnabled
Control Panel/Personalization
PolicySettingComment
Enable screen saverDisabled
Prevent changing desktop iconsEnabled
Screen saver timeoutDisabled
Control Panel/Printers
PolicySettingComment
Browse a common web site to find printersDisabled
Browse the network to find printersDisabled
Prevent addition of printersEnabled
Prevent deletion of printersEnabled
Desktop
PolicySettingComment
Do not add shares of recently opened documents to Network LocationsEnabled
Hide Internet Explorer icon on desktopEnabled
Hide Network Locations icon on desktopEnabled
Prohibit User from manually redirecting Profile FoldersEnabled
Remove Computer icon on the desktopEnabled
Remove My Documents icon on the desktopEnabled
Remove Recycle Bin icon from desktopEnabled
Remove the Desktop Cleanup WizardEnabled
Desktop/Active Directory
PolicySettingComment
Hide Active Directory folderEnabled
Maximum size of Active Directory searchesEnabled
Number of objects returned: 0
Google/Google Chrome
PolicySettingComment
Allow user feedbackDisabled
Clear Browsing Data on ExitDisabled
Disable saving browser historyDisabled
Disable synchronization of data with GoogleEnabled
Enable deleting browser and download historyDisabled
Enable ending processes in Task ManagerDisabled
Enable or disable bookmark editingDisabled
Enable reporting of usage and crash-related dataDisabled
Ephemeral profileDisabled
Incognito mode availabilityEnabled
Incognito mode availabilityIncognito mode disabled
PolicySettingComment
Use hardware acceleration when availableDisabled
Google/Google Chrome/Content settings
PolicySettingComment
Default cookies settingEnabled
Default cookies settingAllow all sites to set local data
Google/Google Chrome/Deprecated policies
PolicySettingComment
Disable Developer ToolsEnabled
Enable AutoFillEnabled
Google/Google Chrome/Removed policies
PolicySettingComment
Allow users to show passwords in Password Manager (deprecated)Enabled
Block access to a list of URLsEnabled
Block access to a list of URLs
file
file:///*
d:/*
e:/*
f:/*
file:///c:/*
file:///d:/*
file:///e:/*
file:///f:/*
Microsoft Edge
PolicySettingComment
Allow importing of favoritesDisabled
Allow importing of saved passwordsDisabled
Browser sign-in settingsEnabled
Browser sign-in settingsDisable browser sign-in
PolicySettingComment
Clear browsing data when Microsoft Edge closesEnabled
Clear cached images and files when Microsoft Edge closesEnabled
Control where developer tools can be usedEnabled
Control where developer tools can be usedDon't allow using the developer tools
PolicySettingComment
Disable taking screenshotsEnabled
Enable the Collections featureDisabled
Microsoft Edge/Extensions
PolicySettingComment
Control which extensions cannot be installedEnabled
Extension IDs the user should be prevented from installing (or * for all)
*
Microsoft Edge/Password manager and protection
PolicySettingComment
Enable saving passwords to the password managerDisabled
Network/Network Connections
PolicySettingComment
Ability to Enable/Disable a LAN connectionDisabled
Ability to rename LAN connectionsEnabled
Prohibit access to properties of a LAN connectionEnabled
Prohibit viewing of status for an active connectionEnabled
Network/Offline Files
PolicySettingComment
Prevent use of Offline Files folderEnabled
Prohibit user configuration of Offline FilesEnabled
Prevents users from changing any cache configuration settings.
PolicySettingComment
Remove "Make Available Offline" commandEnabled
Start Menu and Taskbar
PolicySettingComment
Add Search Internet link to Start MenuDisabled
Add the Run command to the Start MenuDisabled
Clear history of recently opened documents on exitEnabled
Do not allow pinning programs to the TaskbarEnabled
Do not allow taskbars on more than one displayEnabled
Do not display any custom toolbars in the taskbarEnabled
Do not keep history of recently opened documentsEnabled
Do not search communicationsEnabled
Do not search for filesEnabled
Do not search InternetEnabled
Do not search programs and Control Panel itemsEnabled
Force classic Start MenuDisabled
Hide the TaskView buttonEnabled
Lock all taskbar settingsEnabled
Lock the TaskbarEnabled
Prevent changes to Taskbar and Start Menu SettingsEnabled
Prevent grouping of taskbar itemsEnabled
Prevent users from adding or removing toolbarsEnabled
Prevent users from customizing their Start ScreenEnabled
Prevent users from uninstalling applications from StartEnabled
Remove access to the context menus for the taskbarEnabled
Remove All Programs list from the Start menuEnabled
Choose one of the following actionsRemove and disable setting
PolicySettingComment
Remove Balloon Tips on Start Menu itemsEnabled
Remove common program groups from Start MenuEnabled
Remove Default Programs link from the Start menu.Enabled
Remove Documents icon from Start MenuEnabled
Remove Downloads link from Start MenuEnabled
Remove Favorites menu from Start MenuEnabled
Remove frequent programs list from the Start MenuEnabled
Remove Games link from Start MenuEnabled
Remove Help menu from Start MenuEnabled
Remove Homegroup link from Start MenuEnabled
Remove links and access to Windows UpdateEnabled
Remove Music icon from Start MenuEnabled
Remove Network Connections from Start MenuEnabled
Remove Network icon from Start MenuEnabled
Remove Pictures icon from Start MenuEnabled
Remove pinned programs from the TaskbarEnabled
Remove pinned programs list from the Start MenuEnabled
Remove programs on Settings menuEnabled
Remove Quick SettingsEnabled
Remove Recent Items menu from Start MenuEnabled
Remove Recorded TV link from Start MenuEnabled
Remove Run menu from Start MenuEnabled
Remove Search Computer linkEnabled
Remove Search link from Start MenuEnabled
Remove See More Results / Search Everywhere linkEnabled
Remove the People Bar from the taskbarEnabled
Remove user folder link from Start MenuEnabled
Remove user name from Start MenuEnabled
Remove user's folders from the Start MenuEnabled
Remove Videos link from Start MenuEnabled
Show QuickLaunch on TaskbarDisabled
Show Windows Store apps on the taskbarDisabled
System
PolicySettingComment
Prevent access to registry editing toolsEnabled
Disable regedit from running silently?Yes
PolicySettingComment
Prevent access to the command promptEnabled
Disable the command prompt script processing also?Yes
System/Ctrl+Alt+Del Options
PolicySettingComment
Remove Task ManagerEnabled
System/Group Policy
PolicySettingComment
Configure Group Policy slow link detectionEnabled
Connection speed (Kbps):10
Enter 0 to disable slow link detection.
System/Removable Storage Access
PolicySettingComment
All Removable Storage classes: Deny all accessEnabled
CD and DVD: Deny read accessEnabled
CD and DVD: Deny write accessEnabled
Floppy Drives: Deny read accessEnabled
Floppy Drives: Deny write accessEnabled
Removable Disks: Deny read accessEnabled
Removable Disks: Deny write accessEnabled
Tape Drives: Deny read accessEnabled
Tape Drives: Deny write accessEnabled
WPD Devices: Deny read accessEnabled
WPD Devices: Deny write accessEnabled
Windows Components/AutoPlay Policies
PolicySettingComment
Disallow Autoplay for non-volume devicesEnabled
Prevent AutoPlay from remembering user choices.Enabled
Set the default behavior for AutoRunEnabled
Default AutoRun BehaviorDo not execute any autorun commands
PolicySettingComment
Turn off AutoplayEnabled
Turn off Autoplay on:All drives
Windows Components/Desktop Gadgets
PolicySettingComment
Turn off desktop gadgetsEnabled
Turn Off user-installed desktop gadgetsEnabled
Windows Components/File Explorer
PolicySettingComment
Do not allow Folder Options to be opened from the Options button on the View tab of the ribbonEnabled
Do not display the Welcome Center at user logonEnabled
Hides the Manage item on the File Explorer context menuEnabled
No Computers Near Me in Network LocationsEnabled
No Entire Network in Network LocationsEnabled
Prevent access to drives from My ComputerEnabled
Pick one of the following combinationsRestrict all drives
PolicySettingComment
Prevent users from adding files to the root of their Users Files folder.Enabled
Remove "Map Network Drive" and "Disconnect Network Drive"Enabled
Remove CD Burning featuresEnabled
Remove File Explorer's default context menuEnabled
Remove File menu from File ExplorerEnabled
Remove Hardware tabEnabled
Remove Search button from File ExplorerEnabled
Remove Security tabEnabled
Remove Shared Documents from My ComputerEnabled
Remove the Search the Internet "Search again" linkEnabled
Start File Explorer with ribbon minimizedEnabled
Pick one of the following settings 
PolicySettingComment
Turn off display of recent search entries in the File Explorer search boxEnabled
Turn off Windows Key hotkeysEnabled
Turn off Windows Libraries features that rely on indexed file dataEnabled
Windows Components/File Explorer/Explorer Frame Pane
PolicySettingComment
Turn off Preview PaneEnabled
Turn on or off details paneEnabled
Configure details paneAlways hide
Windows Components/File Explorer/Previous Versions
PolicySettingComment
Hide previous versions list for local filesEnabled
Hide previous versions list for remote filesEnabled
Hide previous versions of files on backup locationEnabled
Prevent restoring local previous versionsEnabled
Prevent restoring previous versions from backupsEnabled
Prevent restoring remote previous versionsEnabled
Windows Components/Internet Explorer
PolicySettingComment
Disable changing Automatic Configuration settingsEnabled
Turn on the auto-complete feature for user names and passwords on formsDisabled
Windows Components/Internet Explorer/Browser menus
PolicySettingComment
Hide Favorites menuDisabled
Tools menu: Disable Internet Options... menu optionEnabled
View menu: Disable Source menu optionEnabled
Windows Components/Internet Explorer/Delete Browsing History
PolicySettingComment
Allow deleting browsing history on exitDisabled
Prevent access to Delete Browsing HistoryEnabled
Prevent deleting ActiveX Filtering, Tracking Protection, and Do Not Track dataEnabled
Prevent deleting cookiesEnabled
Prevent deleting download historyEnabled
Prevent deleting form dataEnabled
Prevent deleting temporary Internet filesEnabled
Prevent deleting websites that the user has visitedEnabled
Prevent the deletion of temporary Internet files and cookiesEnabled
Windows Components/Internet Explorer/Internet Control Panel
PolicySettingComment
Disable the Advanced pageEnabled
Disable the Connections pageEnabled
Disable the Content pageEnabled
Disable the General pageEnabled
Disable the Privacy pageEnabled
Disable the Programs pageEnabled
Disable the Security pageEnabled
Windows Components/Internet Explorer/Internet Control Panel/Advanced Page
PolicySettingComment
Empty Temporary Internet Files folder when browser is closedEnabled
Windows Components/Internet Explorer/Toolbars
PolicySettingComment
Turn off Developer ToolsEnabled
Windows Components/Microsoft Edge
PolicySettingComment
Allow clearing browsing data on exitEnabled
Configure AutofillDisabled
Configure Password ManagerDisabled
Windows Components/Network Sharing
PolicySettingComment
Prevent users from sharing files within their profile.Enabled
Windows Components/Task Scheduler
PolicySettingComment
Prevent Task Run or EndEnabled
Prohibit BrowseEnabled
Prohibit New Task CreationEnabled
Prohibit Task DeletionEnabled
Windows Components/Windows Installer
PolicySettingComment
Prevent removable media source for any installationEnabled
Windows Components/Windows Media Center
PolicySettingComment
Do not allow Windows Media Center to runEnabled
Windows Components/Windows Media Player
PolicySettingComment
Prevent CD and DVD Media Information RetrievalEnabled
Prevent Music File Media Information RetrievalEnabled
Prevent Radio Station Preset RetrievalEnabled
Windows Components/Windows Messenger
PolicySettingComment
Do not allow Windows Messenger to be runEnabled
Do not automatically start Windows Messenger initiallyEnabled