Group Policy Management
body { font-size:68%;font-family:MS Shell Dlg; margin:0px,0px,0px,0px; border: 1px solid #666666; background:#F6F6F6; width:100%; word-break:normal; word-wrap:break-word; } .head { font-weight:bold; font-size:160%; font-family:MS Shell Dlg; width:100%; color:#6587DC; background:#E3EAF9; border:1px solid #5582D2; padding-left:8px; height:24px; } .path { margin-left: 10px; margin-top: 10px; margin-bottom:5px;width:100%; } .info { padding-left:10px;width:100%; } table { font-size:100%; width:100%; border:1px solid #999999; } th { border-bottom:1px solid #999999; text-align:left; padding-left:10px; height:24px; } td { background:#FFFFFF; padding-left:10px; padding-bottom:10px; padding-top:10px; } .btn { width:100%; text-align:right; margin-top:16px; } .hdr { font-weight:bold; border:1px solid #999999; text-align:left; padding-top: 4px; padding-left:10px; height:24px; margin-bottom:-1px; width:100%; } .bdy { width:100%; height:182px; display:block; overflow:scroll; z-index:2; background:#FFFFFF; padding-left:10px; padding-bottom:10px; padding-top:10px; border:1px solid #999999; } button { width:6.9em; height:2.1em; font-size:100%; font-family:MS Shell Dlg; margin-right:15px; } @media print { .bdy { display:block; overflow:visible; } button { display:none; } .head { color:#000000; background:#FFFFFF; border:1px solid #000000; } }
Setting Path:
Explanation
No explanation is available for this setting.
Supported On:
Not available
CZ-PO-WIN-C-RDSUsers
Data collected on: 2-9-2025 10:27:51
General
Details
Domainemea.tpg.ads
OwnerS-1-5-21-513466819-3096973226-347852806-532605
Created20-5-2022 19:10:30
Modified20-9-2023 14:12:58
User Revisions52 (AD), 52 (SYSVOL)
Computer Revisions24 (AD), 24 (SYSVOL)
Unique ID{4ab1e363-f52f-4d47-ac7e-e943ebe810f1}
GPO StatusEnabled
Links
LocationEnforcedLink StatusPath
BRQNoEnabledemea.tpg.ads/CZ/Systems/Servers/BRQ

This list only includes links in the domain of the GPO.
Security Filtering
The settings in this GPO can only apply to the following groups, users, and computers:
Name
EMEA\brebera.5
EMEA\CZBRQRDS01$
EMEA\CZ-G-ORG-HeliosRDS
Delegation
These groups and users have the specified permission for this GPO
NameAllowed PermissionsInherited
EMEA\brebera.5Read (from Security Filtering)No
EMEA\CZBRQRDS01$Read (from Security Filtering)No
EMEA\CZ-G-ORG-HeliosRDSRead (from Security Filtering)No
EMEA\CZ-G-ORG-OU AdminsEdit settings, delete, modify securityNo
EMEA\Domain AdminsEdit settings, delete, modify securityNo
NT AUTHORITY\Authenticated UsersReadNo
NT AUTHORITY\ENTERPRISE DOMAIN CONTROLLERSReadNo
NT AUTHORITY\SYSTEMEdit settings, delete, modify securityNo
ROOT\Enterprise AdminsEdit settings, delete, modify securityNo
S-1-5-21-513466819-3096973226-347852806-532605Edit settings, delete, modify securityNo
Computer Configuration (Enabled)
Policies
Windows Settings
Security Settings
Local Policies/User Rights Assignment
PolicySetting
Allow log on through Terminal ServicesEMEA\CZ-G-ORG-RDS Admins, EMEA\CZ-G-ORG-HeliosRDS
Restricted Groups
GroupMembersMember of
BUILTIN\Remote Desktop UsersEMEA\CZ-G-ORG-RDS Admins, EMEA\CZ-G-ORG-HeliosRDS
Administrative Templates
Policy definitions (ADMX files) retrieved from the central store.
System/Group Policy
PolicySettingComment
Configure user Group Policy loopback processing modeEnabled
Mode:Merge
Windows Components/Remote Desktop Services/Remote Desktop Session Host/Connections
PolicySettingComment
Allow users to connect remotely by using Remote Desktop ServicesEnabled
Automatic reconnectionEnabled
Configure keep-alive connection intervalEnabled
Keep-Alive interval:30
PolicySettingComment
Restrict Remote Desktop Services users to a single Remote Desktop Services sessionEnabled
Windows Components/Remote Desktop Services/Remote Desktop Session Host/Device and Resource Redirection
PolicySettingComment
Allow audio and video playback redirectionEnabled
Allow audio recording redirectionEnabled
Allow time zone redirectionEnabled
Do not allow drive redirectionEnabled
Do not allow LPT port redirectionEnabled
Windows Components/Remote Desktop Services/Remote Desktop Session Host/Printer Redirection
PolicySettingComment
Redirect only the default client printerEnabled
Use Remote Desktop Easy Print printer driver firstEnabled
Windows Components/Remote Desktop Services/Remote Desktop Session Host/Remote Session Environment
PolicySettingComment
Enforce Removal of Remote Desktop WallpaperEnabled
User Configuration (Enabled)
Policies
Windows Settings
Scripts
Logon
For this GPO, Script order: Not configured
NameParameters
Link02.ps1
Folder Redirection
Desktop
Setting: Basic (Redirect everyone's folder to the same location)
Path: \\czbrqfs01.emea.tpg.ads\Profiles$\%USERNAME%\Desktop
Options
Grant user exclusive rights to DesktopEnabled
Move the contents of Desktop to the new locationEnabled
Also apply redirection policy to Windows 2000, Windows 2000 server, Windows XP, and Windows Server 2003 operating systemsDisabled
Policy Removal BehaviorLeave contents
Configuration ControlGroup Policy
Primary Computer EvaluationNot evaluated because primary computer policy is not enabled
Administrative Templates
Policy definitions (ADMX files) retrieved from the central store.
Windows Components/File Explorer
PolicySettingComment
Display the menu bar in File Explorer Disabled
Do not allow Folder Options to be opened from the Options button on the View tab of the ribbonEnabled
Do not move deleted files to the Recycle BinEnabled
Hide these specified drives in My ComputerEnabled
Pick one of the following combinationsRestrict all drives
PolicySettingComment
Hides the Manage item on the File Explorer context menuEnabled
No Computers Near Me in Network LocationsEnabled
No Entire Network in Network LocationsEnabled
Remove "Map Network Drive" and "Disconnect Network Drive"Enabled
Remove File Explorer's default context menuEnabled
Remove File menu from File ExplorerEnabled
Remove Hardware tabEnabled
Remove Security tabEnabled
Turn off Windows Libraries features that rely on indexed file dataEnabled
Windows Components/Remote Desktop Services/Remote Desktop Session Host/Device and Resource Redirection
PolicySettingComment
Allow time zone redirectionEnabled
Windows Components/Remote Desktop Services/Remote Desktop Session Host/Printer Redirection
PolicySettingComment
Use Remote Desktop Easy Print printer driver firstEnabled
Windows Components/Remote Desktop Services/Remote Desktop Session Host/Remote Session Environment
PolicySettingComment
Always show desktop on connectionEnabled
Remove remote desktop wallpaperEnabled
Windows Components/Remote Desktop Services/Remote Desktop Session Host/Session Time Limits
PolicySettingComment
Set time limit for active but idle Remote Desktop Services sessionsEnabled
Idle session limit:6 hours
PolicySettingComment
Set time limit for disconnected sessionsEnabled
End a disconnected session2 hours
PolicySettingComment
Set time limit for logoff of RemoteApp sessionsEnabled
RemoteApp session logoff delay:2 hours
Preferences
Windows Settings
Shortcuts
Shortcut (Path: Helios)
Helios (Order: 1)
General
ActionUpdate
Attributes
Target typeFile system object
Shortcut pathHelios
Target path"\\czprghelios01\Helios IQ\Helios.exe"
Start in"\\czprghelios01\Helios IQ"
Shortcut keyNone
RunNormal window
Common
Options
Stop processing items on this extension if an error occurs on this itemNo
Run in logged-on user's security context (user policy option)Yes
Remove this item when it is no longer appliedNo
Apply once and do not reapplyNo
Item-level targeting: Security Group
AttributeValue
boolAND
not0
nameEMEA\CZ-G-ORG-HELIOS
sidS-1-5-21-513466819-3096973226-347852806-584016
userContext1
primaryGroup0
localGroup0