| EGCAI-PO-ADM-U-Nahdi Policies | |
| Data collected on: 2-9-2025 09:36:02 | |
| Domain | emea.tpg.ads |
| Owner | S-1-5-21-513466819-3096973226-347852806-503948 |
| Created | 1-1-2020 21:39:26 |
| Modified | 7-6-2023 15:31:50 |
| User Revisions | 24 (AD), 24 (SYSVOL) |
| Computer Revisions | 73 (AD), 73 (SYSVOL) |
| Unique ID | {a3994b67-9cd4-42d3-93f6-73cec3807fd2} |
| GPO Status | Enabled |
| Location | Enforced | Link Status | Path |
|---|---|---|---|
| Clients | No | Enabled | emea.tpg.ads/EG/Systems/Clients |
| Name |
|---|
| EMEA\EGCAI-G-ORG-Client Systems Nahdi |
| Name | Allowed Permissions | Inherited |
|---|---|---|
| EMEA\Domain Admins | Edit settings, delete, modify security | No |
| EMEA\Domain Computers | Read | No |
| EMEA\EGCAI-G-ORG-Client Systems Nahdi | Read (from Security Filtering) | No |
| EMEA\EG-G-ORG-OU Admins | Edit settings, delete, modify security | No |
| NT AUTHORITY\Authenticated Users | Read | No |
| NT AUTHORITY\ENTERPRISE DOMAIN CONTROLLERS | Read | No |
| NT AUTHORITY\SYSTEM | Edit settings, delete, modify security | No |
| ROOT\Enterprise Admins | Edit settings, delete, modify security | No |
| S-1-5-21-513466819-3096973226-347852806-503948 | Edit settings, delete, modify security | No |
| Owner |
| Type | Name | Permission | Apply To |
|---|---|---|---|
| Allow | APPLICATION PACKAGE AUTHORITY\ALL APPLICATION PACKAGES | Read | This key and subkeys |
| Allow | CREATOR OWNER | Full control | Subkeys only |
| Allow | NT AUTHORITY\SYSTEM | Full control | This key and subkeys |
| Allow | BUILTIN\Administrators | Full control | This key and subkeys |
| Allow | BUILTIN\Users | Full control | This key and subkeys |
| Allow inheritable permissions from the parent to propagate to this object and all child objects | Disabled |
| Policy | Setting | Comment | ||||||
|---|---|---|---|---|---|---|---|---|
| Run these programs at user logon | Enabled | |||||||
| ||||||||
| Policy | Setting | Comment | ||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| Site to Zone Assignment List | Enabled | |||||||||||||
| ||||||||||||||
| Action | Create |
| Source file(s) | \\emea.tpg.ads\sysvol\emea.tpg.ads\Policies\{3E37B931-7978-40C4-BCB9-8EA5BE51E9D6}\Machine\Nahdi\exception.sites |
| Destination file | %uSERPROFILE%\AppData\LocalLow\Sun\Java\Deployment\security\exception.sites |
| Read-only | Disabled |
| Hidden | Disabled |
| Archive | Enabled |
| Stop processing items on this extension if an error occurs on this item | No |
| Remove this item when it is no longer applied | No |
| Apply once and do not reapply | No |
| Action | Update |
| Hive | HKEY_LOCAL_MACHINE |
| Key path | SOFTWARE\WOW6432Node\JavaSoft\Java Update\Policy |
| Value name | EnableJavaUpdate |
| Value type | REG_DWORD |
| Value data | 0x1 (1) |
| Stop processing items on this extension if an error occurs on this item | No |
| Remove this item when it is no longer applied | No |
| Apply once and do not reapply | No |
| Startup options | Start with tabs from the last session |
| Delete browsing history on exit | No |
| Internet | Custom |
| Loose XAML | Disabled |
| XAML browser applications | Disabled |
| XPS documents | Enabled |
| Permissions for components with manifests | High Safety |
| Run components not signed with Authenticode | Enabled |
| Run components signed with Authenticode | Enabled |
| Allow ActiveX Filtering | Enabled |
| Allow previously unused ActiveX controls to run without prompt | Disabled |
| Allow Scriptlets | Disabled |
| Automatic prompting for ActiveX controls | Disabled |
| Binary and script behaviors | Enabled |
| Display video and animation on a webpage that does not use external media player | Disabled |
| Download signed ActiveX controls | Enabled |
| Download unsigned ActiveX controls | Enabled |
| Initialize and script ActiveX controls not marked as safe for Scripting | Disabled |
| Only allow approved domains to use ActiveX without prompt | Disabled |
| Run ActiveX controls and plug-ins | Enabled |
| Script ActiveX controls marked safe for scripting | Enabled |
| File download | Enabled |
| Font download | Enabled |
| Enable .NET Framework setup | Enabled |
| Access data sources across domains | Disabled |
| Render legacy filters | Disabled |
| Allow dragging of content between domains into separate windows | Disabled |
| Allow dragging of content between domains into the same window | Disabled |
| Allow METAREFRESH | Enabled |
| Allow scripting of Internet Explorer web browser control | Disabled |
| Allow script-initiated windows without size or position constraints | Disabled |
| Allow webpages to use restricted protocols for active content | Prompt |
| Allow websites to open windows without address or status bars | Disabled |
| Display mixed content | Prompt |
| Do not prompt for client certificate selection when no certificates or only one certificate exists. | Disabled |
| Drag and drop or copy and paste files | Enabled |
| Enable MIME Sniffing | Enabled |
| Include local directory path when uploading files to server | Disabled |
| Launching applications and unsafe files | Prompt |
| Launching programs and files in an IFRAME | Prompt |
| Navigate sub-frames across different domains | Disabled |
| Submit nonencrypted form data | Enabled |
| Use Phishing Filter | Enabled |
| Use Pop-up Blocker | Enabled |
| Userdata persistence | Enabled |
| Websites in less privileged web content zone can navigate into this zone | Enabled |
| Active scripting | Enabled |
| Allow Programmatic clipboard access | Prompt |
| Allow Status bar updates via script | Disabled |
| Allow websites to prompt for information using scripted windows | Disabled |
| Enable XSS filter | Enabled |
| Scripting of java applets | Enabled |
| User Authentication | Automatic logon only in Intranet zone |
| Enable Protected Mode | Enabled |
| Connection behavior | Never dial a connection |
| Stop processing items on this extension if an error occurs on this item | No |
| Run in logged-on user's security context (user policy option) | No |
| Apply once and do not reapply | No |