Group Policy Management
body { font-size:68%;font-family:MS Shell Dlg; margin:0px,0px,0px,0px; border: 1px solid #666666; background:#F6F6F6; width:100%; word-break:normal; word-wrap:break-word; } .head { font-weight:bold; font-size:160%; font-family:MS Shell Dlg; width:100%; color:#6587DC; background:#E3EAF9; border:1px solid #5582D2; padding-left:8px; height:24px; } .path { margin-left: 10px; margin-top: 10px; margin-bottom:5px;width:100%; } .info { padding-left:10px;width:100%; } table { font-size:100%; width:100%; border:1px solid #999999; } th { border-bottom:1px solid #999999; text-align:left; padding-left:10px; height:24px; } td { background:#FFFFFF; padding-left:10px; padding-bottom:10px; padding-top:10px; } .btn { width:100%; text-align:right; margin-top:16px; } .hdr { font-weight:bold; border:1px solid #999999; text-align:left; padding-top: 4px; padding-left:10px; height:24px; margin-bottom:-1px; width:100%; } .bdy { width:100%; height:182px; display:block; overflow:scroll; z-index:2; background:#FFFFFF; padding-left:10px; padding-bottom:10px; padding-top:10px; border:1px solid #999999; } button { width:6.9em; height:2.1em; font-size:100%; font-family:MS Shell Dlg; margin-right:15px; } @media print { .bdy { display:block; overflow:visible; } button { display:none; } .head { color:#000000; background:#FFFFFF; border:1px solid #000000; } }
Setting Path:
Explanation
No explanation is available for this setting.
Supported On:
Not available
CZ-PO-WIN-C-RDSAdmins
Data collected on: 2-9-2025 10:55:53
General
Details
Domainemea.tpg.ads
OwnerS-1-5-21-513466819-3096973226-347852806-532605
Created13-11-2022 22:37:04
Modified9-2-2023 16:36:30
User Revisions11 (AD), 11 (SYSVOL)
Computer Revisions10 (AD), 10 (SYSVOL)
Unique ID{dd67a609-48a3-4854-88b9-fb5200b6e5e9}
GPO StatusEnabled
Links
LocationEnforcedLink StatusPath
BRQNoEnabledemea.tpg.ads/CZ/Systems/Servers/BRQ

This list only includes links in the domain of the GPO.
Security Filtering
The settings in this GPO can only apply to the following groups, users, and computers:
Name
EMEA\CZBRQRDS01$
EMEA\CZ-G-ORG-RDS Admins
Delegation
These groups and users have the specified permission for this GPO
NameAllowed PermissionsInherited
EMEA\CZBRQRDS01$Read (from Security Filtering)No
EMEA\CZ-G-ORG-OU AdminsEdit settings, delete, modify securityNo
EMEA\CZ-G-ORG-RDS AdminsRead (from Security Filtering)No
EMEA\Domain AdminsEdit settings, delete, modify securityNo
NT AUTHORITY\Authenticated UsersReadNo
NT AUTHORITY\ENTERPRISE DOMAIN CONTROLLERSReadNo
NT AUTHORITY\SYSTEMEdit settings, delete, modify securityNo
ROOT\Enterprise AdminsEdit settings, delete, modify securityNo
S-1-5-21-513466819-3096973226-347852806-532605Edit settings, delete, modify securityNo
Computer Configuration (Enabled)
Policies
Windows Settings
Security Settings
Local Policies/User Rights Assignment
PolicySetting
Allow log on through Terminal ServicesEMEA\CZ-G-ORG-RDS Admins, EMEA\CZ-G-ORG-HeliosRDS
Restricted Groups
GroupMembersMember of
BUILTIN\Remote Desktop UsersEMEA\CZ-G-ORG-RDS Admins, EMEA\CZ-G-ORG-HeliosRDS
Administrative Templates
Policy definitions (ADMX files) retrieved from the central store.
System/Group Policy
PolicySettingComment
Configure user Group Policy loopback processing modeEnabled
Mode:Merge
Windows Components/Remote Desktop Services/Remote Desktop Session Host/Connections
PolicySettingComment
Allow users to connect remotely by using Remote Desktop ServicesEnabled
Automatic reconnectionEnabled
Configure keep-alive connection intervalEnabled
Keep-Alive interval:30
PolicySettingComment
Restrict Remote Desktop Services users to a single Remote Desktop Services sessionEnabled
Windows Components/Remote Desktop Services/Remote Desktop Session Host/Device and Resource Redirection
PolicySettingComment
Allow audio and video playback redirectionEnabled
Allow audio recording redirectionEnabled
Allow time zone redirectionEnabled
Do not allow LPT port redirectionEnabled
Windows Components/Remote Desktop Services/Remote Desktop Session Host/Printer Redirection
PolicySettingComment
Redirect only the default client printerEnabled
Use Remote Desktop Easy Print printer driver firstEnabled
Windows Components/Remote Desktop Services/Remote Desktop Session Host/Remote Session Environment
PolicySettingComment
Enforce Removal of Remote Desktop WallpaperEnabled
User Configuration (Enabled)
Policies
Windows Settings
Scripts
Logon
For this GPO, Script order: Not configured
NameParameters
Link02.ps1
Folder Redirection
Desktop
Setting: Basic (Redirect everyone's folder to the same location)
Path: \\czbrqfs01.emea.tpg.ads\Profiles$\%USERNAME%\Desktop
Options
Grant user exclusive rights to DesktopEnabled
Move the contents of Desktop to the new locationEnabled
Also apply redirection policy to Windows 2000, Windows 2000 server, Windows XP, and Windows Server 2003 operating systemsDisabled
Policy Removal BehaviorLeave contents
Configuration ControlGroup Policy
Primary Computer EvaluationNot evaluated because primary computer policy is not enabled
Administrative Templates
Policy definitions (ADMX files) retrieved from the central store.
Windows Components/File Explorer
PolicySettingComment
Do not move deleted files to the Recycle BinEnabled
No Entire Network in Network LocationsEnabled
Remove "Map Network Drive" and "Disconnect Network Drive"Enabled
Windows Components/Remote Desktop Services/Remote Desktop Session Host/Device and Resource Redirection
PolicySettingComment
Allow time zone redirectionEnabled
Windows Components/Remote Desktop Services/Remote Desktop Session Host/Printer Redirection
PolicySettingComment
Use Remote Desktop Easy Print printer driver firstEnabled
Windows Components/Remote Desktop Services/Remote Desktop Session Host/Remote Session Environment
PolicySettingComment
Always show desktop on connectionEnabled
Remove remote desktop wallpaperEnabled
Windows Components/Remote Desktop Services/Remote Desktop Session Host/Session Time Limits
PolicySettingComment
Set time limit for active but idle Remote Desktop Services sessionsEnabled
Idle session limit:6 hours
PolicySettingComment
Set time limit for disconnected sessionsEnabled
End a disconnected session2 hours
PolicySettingComment
Set time limit for logoff of RemoteApp sessionsEnabled
RemoteApp session logoff delay:2 hours
Preferences
Windows Settings
Shortcuts
Shortcut (Path: Helios)
Helios (Order: 1)
General
ActionUpdate
Attributes
Target typeFile system object
Shortcut pathHelios
Target path"\\czprghelios01\Helios IQ\Helios.exe"
Start in"\\czprghelios01\Helios IQ"
Shortcut keyNone
RunNormal window
Common
Options
Stop processing items on this extension if an error occurs on this itemNo
Run in logged-on user's security context (user policy option)Yes
Remove this item when it is no longer appliedNo
Apply once and do not reapplyNo
Item-level targeting: Security Group
AttributeValue
boolAND
not0
nameEMEA\CZ-G-ORG-HELIOS
sidS-1-5-21-513466819-3096973226-347852806-584016
userContext1
primaryGroup0
localGroup0