| EG-PO-WIN Direct access Client Setting | |
| Data collected on: 2-9-2025 09:40:37 | |
| Domain | EMEA.TPG.ADS |
| Owner | S-1-5-21-513466819-3096973226-347852806-409962 |
| Created | 15-3-2020 02:27:22 |
| Modified | 9-2-2023 14:51:28 |
| User Revisions | 5 (AD), 5 (SYSVOL) |
| Computer Revisions | 13 (AD), 13 (SYSVOL) |
| Unique ID | {31c2454d-4c86-4828-aed1-8fb88af23925} |
| GPO Status | Enabled |
| Location | Enforced | Link Status | Path |
|---|---|---|---|
| Clients | No | Disabled | emea.tpg.ads/EG/Systems/Clients |
| Name |
|---|
| EMEA\EG-G-ORG-DirectAccess Computers |
| Name | Allowed Permissions | Inherited |
|---|---|---|
| EMEA\Domain Admins | Edit settings, delete, modify security | No |
| EMEA\EG-G-ORG-DirectAccess Computers | Read (from Security Filtering) | No |
| NT AUTHORITY\Authenticated Users | Read | No |
| NT AUTHORITY\ENTERPRISE DOMAIN CONTROLLERS | Read | No |
| NT AUTHORITY\SYSTEM | Edit settings, delete, modify security | No |
| ROOT\Enterprise Admins | Edit settings, delete, modify security | No |
| S-1-5-21-513466819-3096973226-347852806-409962 | Edit settings, delete, modify security | No |
| Issued To | Issued By | Expiration Date | Intended Purposes |
|---|---|---|---|
| 41.33.125.73 | 41.33.125.73 | 14-3-2025 19:44:29 | Server Authentication |
| DirectAccess-NLS.emea.tpg.ads | DirectAccess-NLS.emea.tpg.ads | 14-3-2025 19:44:24 | Server Authentication |
| Policy | Setting |
|---|---|
| Policy version | 2.26 |
| Disable stateful FTP | Not Configured |
| Disable stateful PPTP | Not Configured |
| IPsec exempt | ICMP |
| IPsec through NAT | Not Configured |
| Preshared key encoding | Not Configured |
| SA idle time | Not Configured |
| Strong CRL check | Not Configured |
| Name | Description | ||||||||||||||||||||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| Core Networking - IPHTTPS (TCP-Out) | Outbound TCP rule to allow IPHTTPS tunneling technology to provide connectivity across HTTP proxies and firewalls. | ||||||||||||||||||||||||||||||||
| |||||||||||||||||||||||||||||||||
| Name | Description | ||||||||||||||||||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| DirectAccess Policy-ClientToCorpSimplified | |||||||||||||||||||||||||||||||
| |||||||||||||||||||||||||||||||
| DirectAccess Policy-ClientToDNS64NAT64PrefixExemption | |||||||||||||||||||||||||||||||
| |||||||||||||||||||||||||||||||
| Name | Description | ||||||
|---|---|---|---|---|---|---|---|
| DirectAccess - Phase1 Authentication Set {09A5736A-F97E-4427-8591-3C516544E5A8} | DirectAccess - Phase1 Authentication Set | ||||||
| |||||||
| Name | Description | ||||||
|---|---|---|---|---|---|---|---|
| DirectAccess - Phase2 Authentication Set {8FE01A29-0B72-4DDA-BF00-DE9DD7F1C35A} | DirectAccess - Phase2 Authentication Set | ||||||
| |||||||
| Name | Description | ||||||||||||||||||||||||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| Default set | DirectAccess - Phase1 Crypto Set | ||||||||||||||||||||||||||||||||||||
| |||||||||||||||||||||||||||||||||||||
| Name | Description | ||||||||||||||||||||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| DirectAccess - Phase2 Crypto Set {6664E94A-FEDB-4E49-97B2-E3D64A37C53A} | DirectAccess - Phase2 Crypto Set | ||||||||||||||||||||||||||||||||
| |||||||||||||||||||||||||||||||||
| Advanced | ||||||||
|---|---|---|---|---|---|---|---|---|
| Global Settings | ||||||||
|
| Namespace | ||||||||||||||||||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| DirectAccess-NLS.emea.tpg.ads | ||||||||||||||||||||||||||||||
| ||||||||||||||||||||||||||||||
| .tpg.ads | ||||||||||||||||||||||||||||||
|
| Policy | Setting | Comment | |||||
|---|---|---|---|---|---|---|---|
| Corporate Resources | Enabled | ||||||
| |||||||
| Policy | Setting | Comment | |||||
| Friendly Name | Enabled | ||||||
| |||||||
| Policy | Setting | Comment | |||||
| IPsec Tunnel Endpoints | Enabled | ||||||
| |||||||
| Policy | Setting | Comment | |||||
| Prefer Local Names Allowed | Enabled | ||||||
| Support Email Address | Enabled | ||||||
| |||||||
| Policy | Setting | Comment | |||||
| User Interface | Enabled | ||||||
| Policy | Setting | Comment | ||||||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| Specify corporate DNS probe host address | Enabled | |||||||||||||||||||
| ||||||||||||||||||||
| Policy | Setting | Comment | ||||||||||||||||||
| Specify corporate DNS probe host name | Enabled | |||||||||||||||||||
| ||||||||||||||||||||
| Policy | Setting | Comment | ||||||||||||||||||
| Specify corporate site prefix list | Enabled | |||||||||||||||||||
| ||||||||||||||||||||
| Policy | Setting | Comment | ||||||||||||||||||
| Specify corporate Website probe URL | Enabled | |||||||||||||||||||
| ||||||||||||||||||||
| Policy | Setting | Comment | ||||||||||||||||||
| Specify domain location determination URL | Enabled | |||||||||||||||||||
| ||||||||||||||||||||
| Policy | Setting | Comment | ||||
|---|---|---|---|---|---|---|
| Set IP-HTTPS State | Enabled | |||||
| ||||||
| Policy | Setting | Comment | ||||||||||||||||||||||||||||||||||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| Disable revocation checking for the SSL certificate of KDC proxy servers | Enabled | |||||||||||||||||||||||||||||||||||||||||||||||
| Specify KDC proxy servers for Kerberos clients | Enabled | |||||||||||||||||||||||||||||||||||||||||||||||
| ||||||||||||||||||||||||||||||||||||||||||||||||
| Setting | State |
|---|---|
| SOFTWARE\Policies\Microsoft\Windows\RemoteAccess\Config\GlobalVersion | {D1D40403-5864-4F6B-9D85-30CC14C3A78F} |
| SOFTWARE\Policies\Microsoft\Windows\RemoteAccess\Config\SiteVersion | {CA5F947E-2DED-44B1-93E2-A36720B94B83} |
| SOFTWARE\Policies\Microsoft\Windows\RemoteAccess\Config\TimeStamp | 20200315014906.083000+000 |
| SOFTWARE\Policies\Microsoft\Windows\Tcpip\v6Transition\IPHTTPS\iphttpsinterface\InterfaceRole | 0 |
| SOFTWARE\Policies\Microsoft\Windows\Tcpip\v6Transition\IPHTTPS\iphttpsinterface\IPHTTPS_NoRevocationCheck | 1 |
| SYSTEM\CurrentControlSet\services\LanmanWorkstation\Parameters\SMB1NATCompatibilityLevel | 1 |