| DACH-PO-ADM-U-Restrictions PCI Windows 10 | |
| Data collected on: 2-9-2025 09:14:16 | |
| Domain | emea.tpg.ads |
| Owner | S-1-5-21-513466819-3096973226-347852806-242371 |
| Created | 20-6-2018 09:43:08 |
| Modified | 3-4-2025 07:31:56 |
| User Revisions | 107 (AD), 107 (SYSVOL) |
| Computer Revisions | 0 (AD), 0 (SYSVOL) |
| Unique ID | {8eab7ae5-2194-4d31-a8f2-700f0e19408d} |
| GPO Status | Enabled |
| Location | Enforced | Link Status | Path |
|---|---|---|---|
| BA | No | Enabled | emea.tpg.ads/BA |
| CH | No | Enabled | emea.tpg.ads/CH |
| DE | No | Enabled | emea.tpg.ads/DE |
| GE | No | Enabled | emea.tpg.ads/GE |
| HR | No | Enabled | emea.tpg.ads/HR |
| MK | No | Enabled | emea.tpg.ads/MK |
| XK | No | Enabled | emea.tpg.ads/XK |
| Name |
|---|
| EMEA\BA-L-SEC-User Restrictions PCI Windows 10 |
| EMEA\CH-L-SEC-User Restrictions PCI Windows 10 |
| EMEA\DE-L-SEC-User Restrictions PCI Windows 10 |
| EMEA\GE-L-SEC-User Restrictions PCI Windows 10 |
| EMEA\HR-L-SEC-User Restrictions PCI Windows 10 |
| EMEA\MK-L-SEC-User Restrictions PCI Windows 10 |
| EMEA\XK-L-SEC-User Restrictions PCI Windows 10 |
| Name | Allowed Permissions | Inherited |
|---|---|---|
| EMEA\BA-L-SEC-User Restrictions PCI Windows 10 | Read (from Security Filtering) | No |
| EMEA\CH-L-SEC-User Restrictions PCI Windows 10 | Read (from Security Filtering) | No |
| EMEA\DE-L-SEC-Delegation Modify Group Policy Settings Access | Edit settings, delete, modify security | No |
| EMEA\DE-L-SEC-User Restrictions PCI Windows 10 | Read (from Security Filtering) | No |
| EMEA\Domain Admins | Edit settings, delete, modify security | No |
| EMEA\Domain Computers | Read | No |
| EMEA\GE-L-SEC-User Restrictions PCI Windows 10 | Read (from Security Filtering) | No |
| EMEA\HR-L-SEC-User Restrictions PCI Windows 10 | Read (from Security Filtering) | No |
| EMEA\MK-L-SEC-User Restrictions PCI Windows 10 | Read (from Security Filtering) | No |
| EMEA\XK-L-SEC-User Restrictions PCI Windows 10 | Read (from Security Filtering) | No |
| NT AUTHORITY\Authenticated Users | Read | No |
| NT AUTHORITY\ENTERPRISE DOMAIN CONTROLLERS | Read | No |
| NT AUTHORITY\SYSTEM | Edit settings, delete, modify security | No |
| ROOT\Enterprise Admins | Edit settings, delete, modify security | No |
| Enforcement | ||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||
| ||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||
| Designated File Types | ||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||
| ||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||
| Trusted Publishers | ||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||
|
| Policy | Setting |
|---|---|
| Default Security Level | Unrestricted |
| %HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRoot% | ||||||
| ||||||
| %HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ProgramFilesDir% | ||||||
| ||||||
| %programfiles%\WindowsApps\Microsoft.WindowsStore* | ||||||
| ||||||
| C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe | ||||||
| ||||||
| C:\Windows\System32\WindowsPowerShell\v1.0\powershell_ise.exe | ||||||
| ||||||
| C:\Windows\SysWOW64\WindowsPowerShell\v1.0\powershell.exe | ||||||
| ||||||
| C:\Windows\SysWOW64\WindowsPowerShell\v1.0\powershell_ise.exe | ||||||
|
| Policy | Setting | Comment |
|---|---|---|
| Browse a common web site to find printers | Disabled | |
| Browse the network to find printers | Disabled | |
| Prevent addition of printers | Enabled | |
| Prevent deletion of printers | Enabled | |
| Turn off Windows default printer management | Enabled |
| Policy | Setting | Comment |
|---|---|---|
| Do not search communications | Enabled | |
| Do not search for files | Enabled | |
| Do not search Internet | Enabled | |
| Do not search programs and Control Panel items | Enabled | |
| Do not use the search-based method when resolving shell shortcuts | Enabled | |
| Do not use the tracking-based method when resolving shell shortcuts | Enabled | |
| Remove Notifications and Action Center | Enabled | |
| Turn off all balloon notifications | Enabled |
| Policy | Setting | Comment |
|---|---|---|
| Turn off all Windows spotlight features | Enabled | |
| Turn off the Windows Welcome Experience | Enabled | |
| Turn off Windows Spotlight on Action Center | Enabled |
| Action | Replace |
| Hive | HKEY_CURRENT_USER |
| Key path | Software\Microsoft\Windows\CurrentVersion\ContentDeliveryManager |
| Value name | SilentInstalledAppsEnabled |
| Value type | REG_DWORD |
| Value data | 0x0 (0) |
| Stop processing items on this extension if an error occurs on this item | No |
| Run in logged-on user's security context (user policy option) | No |
| Remove this item when it is no longer applied | Yes |
| Action | Replace |
| Hive | HKEY_CURRENT_USER |
| Key path | SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer |
| Value name | SettingsPageVisibility |
| Value type | REG_SZ |
| Value data | showonly:display;printers;regionlanguage;taskbar;easeofaccess-mouse;mousetouchpad;network-vpn;personalization-colors |
| Stop processing items on this extension if an error occurs on this item | No |
| Run in logged-on user's security context (user policy option) | No |
| Remove this item when it is no longer applied | Yes |
| Action | Replace |
| Hive | HKEY_CURRENT_USER |
| Key path | SOFTWARE\Microsoft\Windows\CurrentVersion\Search\ |
| Value name | SearchboxTaskbarMode |
| Value type | REG_DWORD |
| Value data | 0x0 (0) |
| Stop processing items on this extension if an error occurs on this item | No |
| Run in logged-on user's security context (user policy option) | No |
| Remove this item when it is no longer applied | Yes |
| Stop processing items on this extension if an error occurs on this item | No |
| Run in logged-on user's security context (user policy option) | No |
| Apply once and do not reapply | No |
| Action | Replace |
| Hive | HKEY_CURRENT_USER |
| Key path | Software\Microsoft\GameBar |
| Value name | AllowAutoGameMode |
| Value type | REG_DWORD |
| Value data | 0x0 (0) |
| Stop processing items on this extension if an error occurs on this item | No |
| Run in logged-on user's security context (user policy option) | No |
| Remove this item when it is no longer applied | Yes |
| Action | Replace |
| Hive | HKEY_CURRENT_USER |
| Key path | Software\Microsoft\GameBar |
| Value name | ShowGameModeNotifications |
| Value type | REG_DWORD |
| Value data | 0x0 (0) |
| Stop processing items on this extension if an error occurs on this item | No |
| Run in logged-on user's security context (user policy option) | No |
| Remove this item when it is no longer applied | Yes |
| Stop processing items on this extension if an error occurs on this item | No |
| Run in logged-on user's security context (user policy option) | No |
| Apply once and do not reapply | No |
| Action | Replace |
| Hive | HKEY_CLASSES_ROOT |
| Key path | WOW6432Node\CLSID\{018D5C66-4533-4307-9B53-224DE2ED1FE6} |
| Value name | (Default) |
| Value type | REG_SZ |
| Value data | OneDrive |
| Stop processing items on this extension if an error occurs on this item | No |
| Run in logged-on user's security context (user policy option) | No |
| Remove this item when it is no longer applied | Yes |
| Action | Replace |
| Hive | HKEY_CLASSES_ROOT |
| Key path | CLSID\{018D5C66-4533-4307-9B53-224DE2ED1FE6} |
| Value name | (Default) |
| Value type | REG_SZ |
| Value data | OneDrive |
| Stop processing items on this extension if an error occurs on this item | No |
| Run in logged-on user's security context (user policy option) | No |
| Remove this item when it is no longer applied | Yes |
| Action | Replace |
| Hive | HKEY_CLASSES_ROOT |
| Key path | WOW6432Node\CLSID\{018D5C66-4533-4307-9B53-224DE2ED1FE6} |
| Value name | SortOrderIndex |
| Value type | REG_DWORD |
| Value data | 0x42 (66) |
| Stop processing items on this extension if an error occurs on this item | No |
| Run in logged-on user's security context (user policy option) | No |
| Remove this item when it is no longer applied | Yes |
| Action | Replace |
| Hive | HKEY_CLASSES_ROOT |
| Key path | CLSID\{018D5C66-4533-4307-9B53-224DE2ED1FE6} |
| Value name | SortOrderIndex |
| Value type | REG_DWORD |
| Value data | 0x42 (66) |
| Stop processing items on this extension if an error occurs on this item | No |
| Run in logged-on user's security context (user policy option) | No |
| Remove this item when it is no longer applied | Yes |
| Action | Replace |
| Hive | HKEY_CLASSES_ROOT |
| Key path | WOW6432Node\CLSID\{018D5C66-4533-4307-9B53-224DE2ED1FE6} |
| Value name | System.IsPinnedToNameSpaceTree |
| Value type | REG_DWORD |
| Value data | 0x1 (1) |
| Stop processing items on this extension if an error occurs on this item | No |
| Run in logged-on user's security context (user policy option) | No |
| Remove this item when it is no longer applied | No |
| Apply once and do not reapply | No |
| Action | Replace |
| Hive | HKEY_CLASSES_ROOT |
| Key path | CLSID\{018D5C66-4533-4307-9B53-224DE2ED1FE6} |
| Value name | System.IsPinnedToNameSpaceTree |
| Value type | REG_DWORD |
| Value data | 0x1 (1) |
| Stop processing items on this extension if an error occurs on this item | No |
| Run in logged-on user's security context (user policy option) | No |
| Remove this item when it is no longer applied | Yes |