| DE-PO-WIN-C-ThinClient Configuration | |
| Data collected on: 2-9-2025 08:57:04 | |
| Domain | emea.tpg.ads |
| Owner | S-1-5-21-513466819-3096973226-347852806-24979 |
| Created | 26-1-2016 12:55:52 |
| Modified | 2-8-2023 09:59:32 |
| User Revisions | 0 (AD), 0 (SYSVOL) |
| Computer Revisions | 212 (AD), 212 (SYSVOL) |
| Unique ID | {57d7926f-4379-42be-b613-af25040cdc27} |
| GPO Status | Enabled |
| Location | Enforced | Link Status | Path |
|---|---|---|---|
| Clients | No | Enabled | emea.tpg.ads/DE/Systems/Clients |
| Name |
|---|
| EMEA\DE-L-SEC-ThinClient Configuration |
| Name | Allowed Permissions | Inherited |
|---|---|---|
| EMEA\DE-L-SEC-Delegation Modify Group Policy Settings Access | Edit settings, delete, modify security | No |
| EMEA\DE-L-SEC-ThinClient Configuration | Read (from Security Filtering) | No |
| EMEA\Domain Admins | Edit settings, delete, modify security | No |
| EMEA\Domain Computers | Read | No |
| NT AUTHORITY\Authenticated Users | Read | No |
| NT AUTHORITY\ENTERPRISE DOMAIN CONTROLLERS | Read | No |
| NT AUTHORITY\SYSTEM | Edit settings, delete, modify security | No |
| ROOT\Enterprise Admins | Edit settings, delete, modify security | No |
| S-1-5-21-513466819-3096973226-347852806-203252 | Read | No |
| S-1-5-21-513466819-3096973226-347852806-24979 | Edit settings, delete, modify security | No |
| Policy | Setting |
|---|---|
| Minimum password length | 12 characters |
| Password must meet complexity requirements | Enabled |
| Policy | Setting |
|---|---|
| Allow log on locally | BUILTIN\Administrators, EMEA\DE-G-ORG-Service Desk Admins DACH, User |
| Allow log on through Terminal Services | BUILTIN\Administrators, EMEA\DE-G-ORG-Service Desk Admins DACH, User |
| Shut down the system | BUILTIN\Administrators, EMEA\DE-G-ORG-Service Desk Admins DACH |
| Policy | Setting |
|---|---|
| Interactive logon: Do not require CTRL+ALT+DEL | Enabled |
| Interactive logon: Message text for users attempting to log on |
| Policy | Setting |
|---|---|
| Shutdown: Allow system to be shut down without having to log on | Disabled |
| Policy | Setting |
|---|---|
| Accounts: Block Microsoft accounts | Users can't add or log on with Microsoft accounts |
| Policy | Setting |
|---|---|
| Policy version | 2.26 |
| Disable stateful FTP | Not Configured |
| Disable stateful PPTP | Not Configured |
| IPsec exempt | Not Configured |
| IPsec through NAT | Not Configured |
| Preshared key encoding | Not Configured |
| SA idle time | Not Configured |
| Strong CRL check | Not Configured |
| Policy | Setting |
|---|---|
| Firewall state | Off |
| Inbound connections | Not Configured |
| Outbound connections | Not Configured |
| Apply local firewall rules | Not Configured |
| Apply local connection security rules | Not Configured |
| Display notifications | Not Configured |
| Allow unicast responses | Not Configured |
| Log dropped packets | Not Configured |
| Log successful connections | Not Configured |
| Log file path | Not Configured |
| Log file maximum size (KB) | Not Configured |
| Policy | Setting | Comment |
|---|---|---|
| Windows Defender Firewall: Protect all network connections | Disabled |
| Policy | Setting | Comment | ||
|---|---|---|---|---|
| Select an active power plan | Enabled | |||
| ||||
| Policy | Setting | Comment |
|---|---|---|
| Require a password when a computer wakes (plugged in) | Disabled | |
| Turn on the ability for applications to prevent sleep transitions (plugged in) | Enabled |
| Action | Replace |
| Context | User |
| Variable | Temp |
| Value | %HOMEDRIVE%\Temp |
| Stop processing items on this extension if an error occurs on this item | No |
| Remove this item when it is no longer applied | Yes |
| Action | Replace |
| Context | User |
| Variable | Tmp |
| Value | %HOMEDRIVE%\Temp |
| Stop processing items on this extension if an error occurs on this item | No |
| Remove this item when it is no longer applied | Yes |
| Action | Replace |
| Hive | HKEY_LOCAL_MACHINE |
| Key path | \SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon |
| Value name | AutoAdminLogon |
| Value type | REG_SZ |
| Value data | 1 |
| Stop processing items on this extension if an error occurs on this item | No |
| Remove this item when it is no longer applied | Yes |
| Action | Replace |
| Hive | HKEY_LOCAL_MACHINE |
| Key path | \SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon |
| Value name | DefaultUserName |
| Value type | REG_SZ |
| Value data | .\User |
| Stop processing items on this extension if an error occurs on this item | No |
| Remove this item when it is no longer applied | Yes |
| Action | Replace |
| Hive | HKEY_LOCAL_MACHINE |
| Key path | \SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon |
| Value name | DefaultPassword |
| Value type | REG_SZ |
| Value data |
| Stop processing items on this extension if an error occurs on this item | No |
| Remove this item when it is no longer applied | Yes |
| Action | Replace |
| Target type | File system object |
| Shortcut path | %CommonDesktopDir%\shutdown.exe -r |
| Target path | shutdown.exe -r |
| Start in | %WINDIR%\System32\ |
| Icon path | %SystemRoot%\System32\SHELL32.dll |
| Icon index | 27 |
| Shortcut key | None |
| Run | Normal window |
| Stop processing items on this extension if an error occurs on this item | No |
| Remove this item when it is no longer applied | Yes |
| Action | Update |
| User name | User |
| Full name | ThinClient User |
| Description | ThinClient User |
| User cannot change password | True |
| Password never expires | True |
| Account is disabled | False |
| Account expires | Never |
| Stop processing items on this extension if an error occurs on this item | No |
| Remove this item when it is no longer applied | No |
| Apply once and do not reapply | No |