| EGCAI-PR-U- Expedia Policies | |
| Data collected on: 2-9-2025 11:31:50 | |
| Domain | emea.tpg.ads |
| Owner | EMEA\ghalib.6-adm |
| Created | 17-9-2023 11:39:22 |
| Modified | 24-9-2023 11:18:36 |
| User Revisions | 20 (AD), 20 (SYSVOL) |
| Computer Revisions | 7 (AD), 7 (SYSVOL) |
| Unique ID | {5073f9d9-049f-417f-bf3a-a323c6f16c9d} |
| GPO Status | Enabled |
| Location | Enforced | Link Status | Path |
|---|---|---|---|
| Agents | No | Enabled | emea.tpg.ads/EG/Agents |
| Name |
|---|
| EMEA\EG-L-SEC-Expedia Okta |
| Name | Allowed Permissions | Inherited |
|---|---|---|
| EMEA\Domain Admins | Edit settings, delete, modify security | No |
| EMEA\EG-G-ORG-OU Admins | Edit settings, delete, modify security | No |
| EMEA\EG-L-SEC-Expedia Okta | Read (from Security Filtering) | No |
| NT AUTHORITY\Authenticated Users | Read | No |
| NT AUTHORITY\ENTERPRISE DOMAIN CONTROLLERS | Read | No |
| NT AUTHORITY\SYSTEM | Edit settings, delete, modify security | No |
| ROOT\Enterprise Admins | Edit settings, delete, modify security | No |
| S-1-5-21-513466819-3096973226-347852806-503948 | Edit settings, delete, modify security | No |
| Policy | Setting | Comment | ||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| Block access to a list of URLs | Enabled | |||||||||||||||
| ||||||||||||||||
| Policy | Setting | Comment | ||
|---|---|---|---|---|
| Allow importing of autofill form data | Disabled | |||
| Allow importing of saved passwords | Disabled | |||
| Clear browsing data when Microsoft Edge closes | Enabled | |||
| Clear cached images and files when Microsoft Edge closes | Enabled | |||
| Control where developer tools can be used | Enabled | |||
| ||||
| Policy | Setting | Comment | ||
| Enable AutoFill for payment instruments | Disabled | |||
| Enable the Collections feature | Disabled | |||
| Policy | Setting | Comment |
|---|---|---|
| Enable saving passwords to the password manager | Disabled |
| Policy | Setting | Comment |
|---|---|---|
| Enable printing | Disabled |
| Policy | Setting | Comment | |||||||||||||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| Block about:config | Enabled | ||||||||||||||||||||||||||
| Block about:profiles | Enabled | ||||||||||||||||||||||||||
| Block Add-ons Manager | Enabled | ||||||||||||||||||||||||||
| Block Troubleshooting Information | Enabled | ||||||||||||||||||||||||||
| Blocked websites | Enabled | ||||||||||||||||||||||||||
| |||||||||||||||||||||||||||
| Policy | Setting | Comment | |||||||||||||||||||||||||
| Default Download Directory | Enabled | ||||||||||||||||||||||||||
| |||||||||||||||||||||||||||
| Policy | Setting | Comment | |||||||||||||||||||||||||
| Disable Developer Tools | Enabled | ||||||||||||||||||||||||||
| Disable Feedback Commands | Enabled | ||||||||||||||||||||||||||
| Disable Firefox Accounts | Enabled | ||||||||||||||||||||||||||
| Disable Firefox Screenshots | Enabled | ||||||||||||||||||||||||||
| Disable Form History | Enabled | ||||||||||||||||||||||||||
| Disable Master Password Creation | Enabled | ||||||||||||||||||||||||||
| Disable Private Browsing | Enabled | ||||||||||||||||||||||||||
| Disable Profile Import | Enabled | ||||||||||||||||||||||||||
| Disable Safe Mode | Enabled | ||||||||||||||||||||||||||
| Disable Set Desktop Background | Enabled | ||||||||||||||||||||||||||
| Display Menu Bar | Enabled | ||||||||||||||||||||||||||
| |||||||||||||||||||||||||||
| Policy | Setting | Comment | |||||||||||||||||||||||||
| Do not allow passwords to be revealed in saved logins | Enabled | ||||||||||||||||||||||||||
| Don't Check Default Browser | Enabled | ||||||||||||||||||||||||||
| Download Directory | Enabled | ||||||||||||||||||||||||||
| |||||||||||||||||||||||||||
| Policy | Setting | Comment | |||||||||||||||||||||||||
| Exceptions to blocked websites | Enabled | ||||||||||||||||||||||||||
| |||||||||||||||||||||||||||
| Policy | Setting | Comment | |||||||||||||||||||||||||
| Offer to save logins | Disabled | ||||||||||||||||||||||||||
| Offer to save logins (default) | Disabled | ||||||||||||||||||||||||||
| Password Manager | Disabled | ||||||||||||||||||||||||||
| Preferences (JSON on one line) | Disabled | ||||||||||||||||||||||||||
| Primary (Master) Password | Disabled | ||||||||||||||||||||||||||
| Prompt for download location | Disabled | ||||||||||||||||||||||||||
| Windows SSO | Disabled | ||||||||||||||||||||||||||
| Policy | Setting | Comment |
|---|---|---|
| Active Logins | Enabled | |
| Browsing History | Enabled | |
| Cache | Enabled | |
| Cookies | Enabled | |
| Download History | Enabled | |
| Form & Search History | Enabled | |
| Offline Website Data | Enabled | |
| Site Preferences | Enabled |
| Policy | Setting | Comment |
|---|---|---|
| Extension Management (JSON on one line) | Disabled | |
| Extensions to Install | Disabled |
| Policy | Setting | Comment | ||||||||
|---|---|---|---|---|---|---|---|---|---|---|
| Automatic proxy configuration URL | Enabled | |||||||||
| ||||||||||
| Policy | Setting | Comment | ||||||||
| Connection Type | Enabled | |||||||||
| ||||||||||
| Policy | Setting | Comment | ||||||||
| Do not allow proxy settings to be changed | Enabled | |||||||||
| Do not prompt for authentication if password is saved | Disabled | |||||||||
| HTTP Proxy | Enabled | |||||||||
| ||||||||||
| Policy | Setting | Comment | ||||||||
| HTTPS Proxy | Enabled | |||||||||
| ||||||||||
| Policy | Setting | Comment | ||||||||
| Proxy DNS when using SOCKS v5 | Disabled | |||||||||
| Proxy Passthrough | Enabled | |||||||||
| ||||||||||
| Policy | Setting | Comment | ||||||||
| SOCKS Host | Enabled | |||||||||
| ||||||||||
| Policy | Setting | Comment | ||||||||
| Use HTTP proxy for HTTPS | Enabled | |||||||||
| Policy | Setting | Comment |
|---|---|---|
| Allow InPrivate browsing | Disabled |
| Setting | State |
|---|---|
| Software\Policies\Mozilla\Firefox\Proxy\FTPProxy | |
| Software\Policies\Mozilla\Firefox\SanitizeOnShutdown | 1 |
| Action | Delete |
| Destination file | %USERPROFILE%\appdata\local\waterfox\waterfox.exe |
| Suppress errors on individual file actions | Disabled |
| Read-only | Disabled |
| Hidden | Disabled |
| Archive | Enabled |
| Stop processing items on this extension if an error occurs on this item | No |
| Run in logged-on user's security context (user policy option) | No |
| Apply once and do not reapply | No |
| Action | Create |
| File Extension | jnlp |
| Associated Program | C:\Program Files (x86)\Java\jre1.8.0_251\bin\javaws.exe |
| Set as default | Enabled |
| Stop processing items on this extension if an error occurs on this item | No |
| Run in logged-on user's security context (user policy option) | Yes |
| Remove this item when it is no longer applied | No |
| Apply once and do not reapply | No |
| Action | Update |
| File Extension | jnlp |
| Associated Program | C:\Program Files (x86)\Java\jre1.8.0_251\bin\javaws.exe |
| Set as default | Enabled |
| Stop processing items on this extension if an error occurs on this item | No |
| Run in logged-on user's security context (user policy option) | Yes |
| Remove this item when it is no longer applied | No |
| Apply once and do not reapply | No |
| Standard language identifier: | en-US |
| Currency symbol: | $ |
| Positive currency format: | $1.1 |
| Negative currency format: | ($1.1) |
| Decimal symbol: | . |
| Number of digits after decimal: | 2 |
| Digit grouping symbol: | , |
| Digit grouping: | 123,456,789 |
| Stop processing items on this extension if an error occurs on this item | No |
| Run in logged-on user's security context (user policy option) | Yes |
| Apply once and do not reapply | No |
| Startup options | Start with tabs from the last session |
| Delete browsing history on exit | No |
| Internet | Custom |
| Local Intranet | Custom |
| Trusted | Custom |
| Loose XAML | Disabled |
| XAML browser applications | Disabled |
| XPS documents | Enabled |
| Permissions for components with manifests | High Safety |
| Run components not signed with Authenticode | Enabled |
| Run components signed with Authenticode | Enabled |
| Allow ActiveX Filtering | Enabled |
| Allow previously unused ActiveX controls to run without prompt | Disabled |
| Allow Scriptlets | Disabled |
| Automatic prompting for ActiveX controls | Disabled |
| Binary and script behaviors | Enabled |
| Display video and animation on a webpage that does not use external media player | Disabled |
| Download signed ActiveX controls | Prompt |
| Download unsigned ActiveX controls | Disabled |
| Initialize and script ActiveX controls not marked as safe for Scripting | Disabled |
| Only allow approved domains to use ActiveX without prompt | Disabled |
| Run ActiveX controls and plug-ins | Enabled |
| Script ActiveX controls marked safe for scripting | Enabled |
| File download | Enabled |
| Font download | Enabled |
| Enable .NET Framework setup | Enabled |
| Access data sources across domains | Enabled |
| Render legacy filters | Disabled |
| Allow dragging of content between domains into separate windows | Disabled |
| Allow dragging of content between domains into the same window | Disabled |
| Allow METAREFRESH | Enabled |
| Allow scripting of Internet Explorer web browser control | Disabled |
| Allow script-initiated windows without size or position constraints | Disabled |
| Allow webpages to use restricted protocols for active content | Prompt |
| Allow websites to open windows without address or status bars | Disabled |
| Display mixed content | Enabled |
| Do not prompt for client certificate selection when no certificates or only one certificate exists. | Disabled |
| Drag and drop or copy and paste files | Enabled |
| Enable MIME Sniffing | Enabled |
| Include local directory path when uploading files to server | Disabled |
| Launching applications and unsafe files | Prompt |
| Launching programs and files in an IFRAME | Prompt |
| Navigate sub-frames across different domains | Disabled |
| Submit nonencrypted form data | Enabled |
| Use Phishing Filter | Enabled |
| Use Pop-up Blocker | Enabled |
| Userdata persistence | Enabled |
| Websites in less privileged web content zone can navigate into this zone | Enabled |
| Active scripting | Enabled |
| Allow Programmatic clipboard access | Prompt |
| Allow Status bar updates via script | Disabled |
| Allow websites to prompt for information using scripted windows | Disabled |
| Enable XSS filter | Enabled |
| Scripting of java applets | Enabled |
| User Authentication | Automatic logon only in Intranet zone |
| Enable Protected Mode | Enabled |
| Loose XAML | Enabled |
| XAML browser applications | Enabled |
| XPS documents | Enabled |
| Permissions for components with manifests | High Safety |
| Run components not signed with Authenticode | Enabled |
| Run components signed with Authenticode | Enabled |
| Allow ActiveX Filtering | Disabled |
| Allow previously unused ActiveX controls to run without prompt | Enabled |
| Allow Scriptlets | Enabled |
| Automatic prompting for ActiveX controls | Enabled |
| Binary and script behaviors | Enabled |
| Display video and animation on a webpage that does not use external media player | Disabled |
| Download signed ActiveX controls | Prompt |
| Download unsigned ActiveX controls | Disabled |
| Initialize and script ActiveX controls not marked as safe for Scripting | Disabled |
| Only allow approved domains to use ActiveX without prompt | Enabled |
| Run ActiveX controls and plug-ins | Enabled |
| Script ActiveX controls marked safe for scripting | Enabled |
| File download | Enabled |
| Font download | Enabled |
| Enable .NET Framework setup | Enabled |
| Access data sources across domains | Enabled |
| Render legacy filters | Enabled |
| Allow dragging of content between domains into separate windows | Disabled |
| Allow dragging of content between domains into the same window | Disabled |
| Allow METAREFRESH | Enabled |
| Allow scripting of Internet Explorer web browser control | Enabled |
| Allow script-initiated windows without size or position constraints | Enabled |
| Allow webpages to use restricted protocols for active content | Prompt |
| Allow websites to open windows without address or status bars | Enabled |
| Display mixed content | Enabled |
| Do not prompt for client certificate selection when no certificates or only one certificate exists. | Enabled |
| Drag and drop or copy and paste files | Enabled |
| Enable MIME Sniffing | Enabled |
| Include local directory path when uploading files to server | Enabled |
| Launching applications and unsafe files | Enabled |
| Launching programs and files in an IFRAME | Prompt |
| Navigate sub-frames across different domains | Enabled |
| Submit nonencrypted form data | Enabled |
| Use Phishing Filter | Disabled |
| Use Pop-up Blocker | Disabled |
| Userdata persistence | Enabled |
| Websites in less privileged web content zone can navigate into this zone | Enabled |
| Active scripting | Enabled |
| Allow Programmatic clipboard access | Enabled |
| Allow Status bar updates via script | Enabled |
| Allow websites to prompt for information using scripted windows | Enabled |
| Enable XSS filter | Disabled |
| Scripting of java applets | Enabled |
| User Authentication | Automatic logon only in Intranet zone |
| Enable Protected Mode | Disabled |
| Loose XAML | Enabled |
| XAML browser applications | Enabled |
| XPS documents | Enabled |
| Permissions for components with manifests | High Safety |
| Run components not signed with Authenticode | Enabled |
| Run components signed with Authenticode | Enabled |
| Allow ActiveX Filtering | Enabled |
| Allow previously unused ActiveX controls to run without prompt | Enabled |
| Allow Scriptlets | Disabled |
| Automatic prompting for ActiveX controls | Disabled |
| Binary and script behaviors | Enabled |
| Display video and animation on a webpage that does not use external media player | Disabled |
| Download signed ActiveX controls | Prompt |
| Download unsigned ActiveX controls | Disabled |
| Initialize and script ActiveX controls not marked as safe for Scripting | Disabled |
| Only allow approved domains to use ActiveX without prompt | Enabled |
| Run ActiveX controls and plug-ins | Enabled |
| Script ActiveX controls marked safe for scripting | Enabled |
| File download | Enabled |
| Font download | Enabled |
| Enable .NET Framework setup | Enabled |
| Access data sources across domains | Enabled |
| Render legacy filters | Enabled |
| Allow dragging of content between domains into separate windows | Disabled |
| Allow dragging of content between domains into the same window | Disabled |
| Allow METAREFRESH | Enabled |
| Allow scripting of Internet Explorer web browser control | Disabled |
| Allow script-initiated windows without size or position constraints | Disabled |
| Allow webpages to use restricted protocols for active content | Prompt |
| Allow websites to open windows without address or status bars | Enabled |
| Display mixed content | Enabled |
| Do not prompt for client certificate selection when no certificates or only one certificate exists. | Disabled |
| Drag and drop or copy and paste files | Enabled |
| Enable MIME Sniffing | Enabled |
| Include local directory path when uploading files to server | Enabled |
| Launching applications and unsafe files | Prompt |
| Launching programs and files in an IFRAME | Prompt |
| Navigate sub-frames across different domains | Disabled |
| Submit nonencrypted form data | Enabled |
| Use Phishing Filter | Enabled |
| Use Pop-up Blocker | Disabled |
| Userdata persistence | Enabled |
| Websites in less privileged web content zone can navigate into this zone | Enabled |
| Active scripting | Enabled |
| Allow Programmatic clipboard access | Prompt |
| Allow Status bar updates via script | Enabled |
| Allow websites to prompt for information using scripted windows | Enabled |
| Enable XSS filter | Enabled |
| Scripting of java applets | Enabled |
| User Authentication | Automatic logon only in Intranet zone |
| Enable Protected Mode | Disabled |
| Connection behavior | Never dial a connection |
| User software rendering instead of GPU rendering | Enabled |
| Always expand ALT text for images | Disabled |
| Enable Caret Browser for new windows and tabs | Disabled |
| Move system caret with focus/selection changes | Disabled |
| Play system sounds | Disabled |
| Reset text size to medium for new windows and tabs | Disabled |
| Reset Zoom level for new windows and tabs | Disabled |
| Automatically recover from page layout errors with Compatibility View | Enabled |
| Close unused folders in History and Favorites (requires restart) | Disabled |
| Disable Script debugging (Internet Explorer) | Enabled |
| Disable Script debugging (Other) | Enabled |
| Display a notification about every script error | Disabled |
| Display Accelerator button on selection | Disabled |
| Enable automatic crash recovery | Enabled |
| Enable flip ahead | Disabled |
| Enable FTP folder view (outside of Internet Explorer) | Enabled |
| Enable Suggested Sites | Disabled |
| Enable third-party browser extensions (requires restart) | Disabled |
| Enable visual styles on buttons and controls in webpages | Enabled |
| Enable websites to use the search pane | Disabled |
| Go to an intranet site for a single word entry in the Address bar | Disabled |
| Notify when downloads complete | Enabled |
| Reuse windows for launching shortcuts | Enabled |
| Show Friendly HTTP Error messages | Enabled |
| Tell me if Internet Explorer is not the default web browser | Enabled |
| Underline links | Always |
| Use inline AutoComplete | Enabled |
| Use inline Autocomplete in File Explorer and Run Dialog | Disabled |
| Use most recent order when switching tabs with Ctrl+Tab | Disabled |
| Use Passive FTP (for firewall and DSL model compatibility) | Enabled |
| Use smooth scrolling | Enabled |
| Use HTTP 1.1 | Enabled |
| Use HTTP 1.1 through proxy connections | Enabled |
| Always show encoded addresses | Disabled |
| Send IDN server names | Enabled |
| Send IDN server names for Intranet addresses | Disabled |
| Send UTF-8 URLs | Enabled |
| Show Information Bar for encoded addresses | Enabled |
| Enable alternative codecs in HTML5 media elements | Enabled |
| Enable Automatic Image Resizing | Enabled |
| Play animations in webpages | Disabled |
| Play sounds in webpages | Disabled |
| Show image download placeholders | Disabled |
| Show pictures | Enabled |
| Allow active content from CDs to run on My Computer | Disabled |
| Allow active content to run in files on My Computer | Disabled |
| Always send Do Not Track header | Disabled |
| Allow software to run or install even if the signature is invalid | Disabled |
| Block unsecured images with other mixed content | Disabled |
| Check for publisher's certificate revocation | Enabled |
| Check for server certificate revocation (requires restart) | Enabled |
| Check for signatures on downloaded programs | Enabled |
| Do not save encrypted pages to disk | Enabled |
| Empty Temporary Internet Files folder when browser is closed | Enabled |
| Enable memory protection to help mitigate online attacks | Disabled |
| Enable DOM Storage | Enabled |
| Enable Enhanced Protected Mode | Enabled |
| Enable Integrated Windows Authentication (requires restart) | Enabled |
| Enable native XMLHTTP support | Enabled |
| Enable SmartScreen Filter | Disabled |
| Use SSL 2.0 | Disabled |
| Use SSL 3.0 | Enabled |
| Use TLS 1.0 | Enabled |
| Use TLS 1.1 | Enabled |
| Use TLS 1.2 | Enabled |
| Warn about certificate address mismatch | Enabled |
| Warn if changing between secure and not secure mode | Enabled |
| Warn if POST submittal is redirected to a zone that does not permit posts | Enabled |
| Stop processing items on this extension if an error occurs on this item | No |
| Run in logged-on user's security context (user policy option) | No |
| Apply once and do not reapply | No |