Group Policy Management
body { font-size:68%;font-family:MS Shell Dlg; margin:0px,0px,0px,0px; border: 1px solid #666666; background:#F6F6F6; width:100%; word-break:normal; word-wrap:break-word; } .head { font-weight:bold; font-size:160%; font-family:MS Shell Dlg; width:100%; color:#6587DC; background:#E3EAF9; border:1px solid #5582D2; padding-left:8px; height:24px; } .path { margin-left: 10px; margin-top: 10px; margin-bottom:5px;width:100%; } .info { padding-left:10px;width:100%; } table { font-size:100%; width:100%; border:1px solid #999999; } th { border-bottom:1px solid #999999; text-align:left; padding-left:10px; height:24px; } td { background:#FFFFFF; padding-left:10px; padding-bottom:10px; padding-top:10px; } .btn { width:100%; text-align:right; margin-top:16px; } .hdr { font-weight:bold; border:1px solid #999999; text-align:left; padding-top: 4px; padding-left:10px; height:24px; margin-bottom:-1px; width:100%; } .bdy { width:100%; height:182px; display:block; overflow:scroll; z-index:2; background:#FFFFFF; padding-left:10px; padding-bottom:10px; padding-top:10px; border:1px solid #999999; } button { width:6.9em; height:2.1em; font-size:100%; font-family:MS Shell Dlg; margin-right:15px; } @media print { .bdy { display:block; overflow:visible; } button { display:none; } .head { color:#000000; background:#FFFFFF; border:1px solid #000000; } }
Setting Path:
Explanation
No explanation is available for this setting.
Supported On:
Not available
GCRUH-PO-SEC-C-HALA Supervisor Policy
Data collected on: 2-9-2025 13:17:54
General
Details
Domainemea.tpg.ads
OwnerEMEA\atyya.6-adm
Created27-8-2025 12:53:30
Modified27-8-2025 14:42:50
User Revisions7 (AD), 7 (SYSVOL)
Computer Revisions1 (AD), 1 (SYSVOL)
Unique ID{8a32235e-47dd-429c-9e05-3c916048c3dc}
GPO StatusEnabled
Links
LocationEnforcedLink StatusPath
AgentsYesEnabledemea.tpg.ads/Special-Services/GC/Agents

This list only includes links in the domain of the GPO.
Security Filtering
The settings in this GPO can only apply to the following groups, users, and computers:
Name
EMEA\GC-G-ORG-RUH-Hala Supervisors
Delegation
These groups and users have the specified permission for this GPO
NameAllowed PermissionsInherited
EMEA\atyya.6-admEdit settings, delete, modify securityNo
EMEA\Domain AdminsEdit settings, delete, modify securityNo
EMEA\GC-G-ORG-RUH-Hala SupervisorsRead (from Security Filtering)No
EMEA\GC-G-ORG-ServerAdminEdit settings, delete, modify securityNo
NT AUTHORITY\Authenticated UsersReadNo
NT AUTHORITY\ENTERPRISE DOMAIN CONTROLLERSReadNo
NT AUTHORITY\SYSTEMEdit settings, delete, modify securityNo
ROOT\Enterprise AdminsEdit settings, delete, modify securityNo
Computer Configuration (Enabled)
Policies
Windows Settings
Security Settings
Software Restriction Policies
Enforcement
PolicySetting
Apply Software Restriction Policies to the followingAll software files except libraries (such as DLLs)
Apply Software Restriction Policies to the following usersAll users
When applying Software Restriction PoliciesIgnore certificate rules
Designated File Types
File ExtensionFile Type
ADEADE File
ADPADP File
BASBAS File
BATWindows Batch File
CHMCompiled HTML Help file
CMDWindows Command Script
COMMS-DOS Application
CPLControl panel item
CRTSecurity Certificate
EXEApplication
HLPHelp file
HTAHTML Application
INFSetup Information
INSINS File
ISPISP File
LNKShortcut
MDBMDB File
MDEMDE File
MSCMicrosoft Common Console Document
MSIWindows Installer Package
MSPWindows Installer Patch
MSTMST File
OCXActiveX control
PCDPCD File
PIFShortcut to MS-DOS Program
REGRegistration Entries
SCRScreen saver
SHSSHS File
URLInternet Shortcut
VBVisual Basic Source File
WSCWindows Script Component
Trusted Publishers
Trusted publisher managementAllow all administrators and users to manage user's own Trusted Publishers
Certificate verificationNone
Software Restriction Policies/Security Levels
PolicySetting
Default Security LevelUnrestricted
Software Restriction Policies/Additional Rules
Path Rules
%HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRoot%
Security LevelUnrestricted
Description
Date last modified11-5-2025 11:48:26
%HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ProgramFilesDir%
Security LevelUnrestricted
Description
Date last modified11-5-2025 11:48:26
Administrative Templates
Policy definitions (ADMX files) retrieved from the central store.
Google/Google Chrome/Allow or deny screen capture
PolicySettingComment
Allow or deny screen captureNot ConfiguredGoogle Chrome Policy
Windows Components/App Privacy
PolicySettingComment
Let Windows apps access account informationDisabledDisable Windows APPs.
Let Windows apps access call historyDisabledDisable Windows APPs.
Let Windows apps access locationDisabledDisable Windows APPs.
Let Windows apps access the calendarDisabledDisable Windows APPs.
Let Windows apps access the cameraDisabledDisable Windows APPs.
Windows Components/Application Compatibility
PolicySettingComment
Turn off Steps RecorderEnabled
Windows Components/File Explorer
PolicySettingComment
Do not show the 'new application installed' notificationEnabled
Windows Components/OneDrive
PolicySettingComment
Prevent the usage of OneDrive for file storageEnabledDisable Windows APPs.
Prevent the usage of OneDrive for file storage on Windows 8.1EnabledDisable Windows APPs.
Windows Components/Windows Calendar
PolicySettingComment
Turn off Windows CalendarEnabledDisable Windows APPs.
Windows Components/Windows Game Recording and Broadcasting
PolicySettingComment
Enables or disables Windows Game Recording and BroadcastingDisabledDisable Windows APPs.
Windows Components/Windows Security/App and browser protection
PolicySettingComment
Prevent users from modifying settingsEnabledDisable Windows APPs.
User Configuration (Enabled)
Policies
Windows Settings
Security Settings
Software Restriction Policies
Enforcement
PolicySetting
Apply Software Restriction Policies to the followingAll software files except libraries (such as DLLs)
Apply Software Restriction Policies to the following usersAll users
When applying Software Restriction PoliciesIgnore certificate rules
Designated File Types
File ExtensionFile Type
ADEADE File
ADPADP File
BASBAS File
BATWindows Batch File
CHMCompiled HTML Help file
CMDWindows Command Script
COMMS-DOS Application
CPLControl panel item
CRTSecurity Certificate
EXEApplication
HLPHelp file
HTAHTML Application
INFSetup Information
INSINS File
ISPISP File
LNKShortcut
MDBMDB File
MDEMDE File
MSCMicrosoft Common Console Document
MSIWindows Installer Package
MSPWindows Installer Patch
MSTMST File
OCXActiveX control
PCDPCD File
PIFShortcut to MS-DOS Program
REGRegistration Entries
SCRScreen saver
SHSSHS File
URLInternet Shortcut
VBVisual Basic Source File
WSCWindows Script Component
Trusted Publishers
Trusted publisher managementAllow all administrators and users to manage user's own Trusted Publishers
Certificate verificationNone
Software Restriction Policies/Security Levels
PolicySetting
Default Security LevelUnrestricted
Software Restriction Policies/Additional Rules
Path Rules
%HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRoot%
Security LevelUnrestricted
Description
Date last modified12-5-2025 12:45:45
%HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ProgramFilesDir%
Security LevelUnrestricted
Description
Date last modified12-5-2025 12:45:45
%ProgramFiles%\WindowsApps\microsoft.windowscommunicationsapps_*\App\HxCalendarApp.exe
Security LevelDisallowed
DescriptionDisallow Calendar
Date last modified15-5-2025 12:17:54
%programfiles%\WindowsApps\Microsoft.WindowsStore*
Security LevelDisallowed
DescriptionDisable WindowsStore
Date last modified15-5-2025 12:18:39
%windir%\system32\mspaint.exe
Security LevelDisallowed
DescriptionDisable MSpaint
Date last modified15-5-2025 12:19:14
%windir%\system32\osk.exe
Security LevelDisallowed
DescriptionDisable OSK
Date last modified15-5-2025 12:19:45
%WINDIR%\SystemApps\Microsoft.MicrosoftEdge*
Security LevelDisallowed
DescriptionDisable Edge
Date last modified15-5-2025 12:20:20
C:\Program Files\Common Files\Microsoft Shared\Ink\mip.exe
Security LevelDisallowed
DescriptionMath Input Panel
Date last modified15-5-2025 09:32:18
C:\Program Files\Windows NT\Accessories\Wordpad.exe
Security LevelDisallowed
DescriptionDisable Wordpad
Date last modified15-5-2025 09:36:26
C:\Program Files\WindowsApps\Microsoft.GetHelp_10.2407.22431.0_x64__8wekyb3d8bbwe
Security LevelDisallowed
DescriptionDisable Microsoft.GetHelp
Date last modified15-5-2025 12:20:50
C:\Program Files\WindowsApps\Microsoft.MicrosoftSticky*
Security LevelDisallowed
DescriptionDisable MicrosoftStickyNotes
Date last modified15-5-2025 12:22:20
C:\Program Files\WindowsApps\Microsoft.MicrosoftSticky*
Security LevelDisallowed
DescriptionDisable MicrosoftSticky
Date last modified15-5-2025 09:37:32
C:\Program Files\WindowsApps\Microsoft.MicrosoftStickyNotes*
Security LevelDisallowed
DescriptionDisable MicrosoftStickyNotes
Date last modified15-5-2025 12:23:08
C:\Program Files\WindowsApps\Microsoft.MicrosoftStickyNotes*
Security LevelDisallowed
DescriptionDisable MicrosoftStickyNotes
Date last modified15-5-2025 12:23:44
C:\Program Files\WindowsApps\Microsoft.MicrosoftStickyNotes*
Security LevelDisallowed
DescriptionDisable Microsoft Sticky Notes
Date last modified15-5-2025 09:38:29
C:\Program Files\WindowsApps\Microsoft.WindowsCalc*
Security LevelDisallowed
DescriptionDisable Windows Calc
Date last modified15-5-2025 09:39:13
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
Security LevelDisallowed
DescriptionDisable OneDrive
Date last modified15-5-2025 17:59:21
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sticky Notes (new).lnk
Security LevelDisallowed
DescriptionDisable Sticky Notes
Date last modified15-5-2025 17:58:22
C:\Windows\regedit.exe
Security LevelDisallowed
DescriptionDisabel Regedit
Date last modified15-5-2025 09:40:31
C:\windows\system32\charmap.exe
Security LevelDisallowed
DescriptionDisable Character Map
Date last modified15-5-2025 09:43:00
C:\Windows\System32\cmd.exe
Security LevelDisallowed
DescriptionDisable CMD
Date last modified15-5-2025 09:43:42
C:\Windows\System32\mspaint.exe
Security LevelDisallowed
DescriptionDisable MS Paint
Date last modified15-5-2025 09:44:34
C:\Windows\System32\notepad.exe
Security LevelDisallowed
DescriptionDisable Notepad
Date last modified15-5-2025 09:45:11
C:\windows\system32\psr.exe
Security LevelDisallowed
DescriptionDisable PrintScreen
Date last modified15-5-2025 09:45:58
C:\Windows\System32\regedt32.exe
Security LevelDisallowed
DescriptionDisable Regedit
Date last modified15-5-2025 09:47:07
C:\windows\system32\WFS.exe
Security LevelDisallowed
DescriptionDisable FAX
Date last modified15-5-2025 09:47:39
Administrative Templates
Policy definitions (ADMX files) retrieved from the central store.
Control Panel
PolicySettingComment
Prohibit access to Control Panel and PC settingsEnabledDisable Panel Control
Show only specified Control Panel itemsEnabledDisable Panel Control
List of allowed Control Panel items
Microsoft.WindowsUpdate
Control Panel/Add or Remove Programs
PolicySettingComment
Hide Add New Programs pageEnabledDisable Control Panel Policy
Hide Add/Remove Windows Components pageEnabledDisable Control Panel Policy
Hide Change or Remove Programs pageEnabledDisable Control Panel Policy
Hide the "Add a program from CD-ROM or floppy disk" optionEnabledDisable Control Panel Policy
Hide the "Add programs from Microsoft" optionEnabledDisable Control Panel Policy
Hide the "Add programs from your network" optionEnabledDisable Control Panel Policy
Hide the Set Program Access and Defaults pageEnabledDisable Control Panel Policy
Remove Add or Remove ProgramsEnabledDisable Control Panel Policy
Remove Support InformationEnabledDisable Control Panel Policy
Control Panel/Display
PolicySettingComment
Hide Settings tabEnabledDisable Control Panel Policy
Control Panel/Personalization
PolicySettingComment
Prevent changing desktop backgroundEnabledDisable Control Panel Policy
Control Panel/Printers
PolicySettingComment
Prevent addition of printersEnabledDisable Control Panel Policy
Prevent deletion of printersEnabledDisable Control Panel Policy
Control Panel/Programs
PolicySettingComment
Hide "Get Programs" pageEnabledDisable Control Panel Policy
Hide "Programs and Features" pageEnabledDisable Control Panel Policy
Hide the Programs Control PanelEnabledDisable Control Panel Policy
Control Panel/Regional and Language Options
PolicySettingComment
Hide the geographic location optionDisabled
Desktop
PolicySettingComment
Don't save settings at exitEnabledDisable Control Panel Policy
Hide and disable all items on the desktopNot ConfiguredDisable Control Panel
Hide Network Locations icon on desktopEnabledDisable Control Panel Policy
Prevent adding, dragging, dropping and closing the Taskbar's toolbarsEnabledDisable Control Panel Policy
Prohibit User from manually redirecting Profile FoldersEnabled
Remove Computer icon on the desktopEnabledDisable Control Panel Policy
Remove My Documents icon on the desktopEnabledDisable Control Panel Policy
Remove Properties from the Computer icon context menuEnabledDisable Control Panel Policy
Remove Properties from the Documents icon context menuEnabledDisable Control Panel Policy
Remove Properties from the Recycle Bin context menuEnabledDisable Control Panel Policy
Remove Recycle Bin icon from desktopEnabled
Remove the Desktop Cleanup WizardEnabledDisable Control Panel Policy
Desktop/Desktop
PolicySettingComment
Enable Active DesktopEnabled
Allows HTML and JPEG Wallpaper
Google/Google Chrome
PolicySettingComment
Allow Dinosaur Easter Egg GameDisabledGoogle Chrome Policy
Allow download restrictionsEnabled
Download restrictionsBlock all downloads.
PolicySettingComment
Allow invocation of file selection dialogsEnabled
Allow queries to a Google time serviceDisabled
Allow remote debuggingDisabled
Allow user feedbackDisabled
Always Open PDF files externallyDisabled
Block access to a list of URLsEnabled
Block access to a list of URLs
chrome://image-editor
chrome://Flags
chrome://System
chrome://Net-Internals
chrome://Net-export
chrome://Inspect
file://*
file:///*
data:*
chrome://chrome-urls
PolicySettingComment
Continue running background apps when Google Chrome is closedDisabled
Control SafeSites adult content filtering.Enabled
Control SafeSites adult content filtering.Filter top level sites (but not embedded iframes) for adult content
PolicySettingComment
Control where Developer Tools can be usedEnabled
Control where Developer Tools can be usedDisallow usage of the Developer Tools
PolicySettingComment
Define domains allowed to access Google WorkspaceEnabled
Define domains allowed to access Google Workspaceext.uber.com,majorel.com,uber.com,mj.teleperformance.com
PolicySettingComment
Disable saving browser historyEnabled
Disable synchronization of data with GoogleEnabled
Disable taking screenshotsEnabled
Enable AutoFill for addressesDisabled
Enable AutoFill for credit cardsDisabled
Enable Bookmark BarDisabled
Enable guest mode in browserDisabled
Enable or disable bookmark editingDisabled
Enable or disable spell checking web serviceDisabled
Enable reporting of usage and crash-related dataDisabled
Enable Safe Browsing for trusted sourcesDisabled
Enable scrolling to text specified in URL fragmentsDisabled
Enable search suggestionsDisabled
Enable TranslateEnabled
Enforce browser guest modeDisabled
Hide the web store from the New Tab Page and app launcherEnabled
Import autofill form data from default browser on first runDisabled
Import bookmarks from default browser on first runDisabled
Import browsing history from default browser on first runDisabled
Import saved passwords from default browser on first runDisabled
Import search engines from default browser on first runDisabled
Incognito mode availabilityEnabledGoogle Chrome Policy
Incognito mode availabilityIncognito mode disabled
PolicySettingComment
Set Google Chrome as Default BrowserEnabled
Google/Google Chrome - Default Settings (users can override)
PolicySettingComment
Allow download restrictionsEnabled
Download restrictionsBlock all downloads.
PolicySettingComment
Always Open PDF files externallyDisabled
Enable AutoFill for addressesDisabled
Enable AutoFill for credit cardsDisabled
Enable Bookmark BarDisabled
Enable or disable spell checking web serviceEnabled
Enable search suggestionsDisabled
Enable TranslateEnabled
Import autofill form data from default browser on first runDisabled
Import bookmarks from default browser on first runDisabled
Import browsing history from default browser on first runDisabled
Import saved passwords from default browser on first runDisabled
Import search engines from default browser on first runDisabled
Google/Google Chrome - Default Settings (users can override)/Password manager
PolicySettingComment
Enable saving passwords to the password managerDisabled
Google/Google Chrome/Allow or deny screen capture
PolicySettingComment
Allow or deny screen captureDisabled
Google/Google Chrome/Extensions
PolicySettingComment
Blocks external extensions from being installedEnabled
Configure extension installation blocklistEnabled
Extension IDs the user should be prevented from installing (or * for all)
*
PolicySettingComment
Configure the list of force-installed apps and extensionsEnabled
Extension/App IDs and update URLs to be silently installed
https://chromewebstore.google.com/detail/blissnxt-phone-extension/cljbpojnchfhfkemfblgbaefkalbfke
Google/Google Chrome/Google Cast
PolicySettingComment
Enable Google CastDisabled
Google/Google Chrome/Printing
PolicySettingComment
Enable printingDisabled
Google/Google Chrome/Removed policies
PolicySettingComment
Block access to a list of URLsEnabled
Block access to a list of URLs
file:///C:/
file:///D:/
file:///E:/
Google/Google Chrome/Safe Browsing settings
PolicySettingComment
Disable proceeding from the Safe Browsing warning pageEnabled
Keyboard Layout
PolicySettingComment
Keyboard layoutEnabled
Enable EnglishEnabled
Enable ArabicEnabled
PolicySettingComment
Keyboard Layout switchingEnabled
Microsoft Outlook 2016/Account Settings/E-mail
PolicySettingComment
Prevent Office 365 E-mail accounts from being configured within a simplified InterfaceEnabled
Prevent Outlook from interacting with the account settings detection serviceEnabled
Prevent saving credentials for Basic Authentication policyEnabled
Specify Offline Address Book pathDisabled
Microsoft Outlook 2016/Account Settings/Exchange
PolicySettingComment
Prevent adding non-default Exchange accountsEnabled
Microsoft Outlook 2016/Miscellaneous
PolicySettingComment
Prevent users from adding e-mail account typesEnabled
Prevent users from adding Exchange e-mail accountsEnabled
Prevent users from adding Exchange ActiveSync e-mail accountsEnabled
Prevent users from adding POP3 e-mail accountsEnabled
Prevent users from adding IMAP e-mail accountsEnabled
Prevent users from adding other types of e-mail accountsEnabled
Microsoft Teams
PolicySettingComment
Prevent Microsoft Teams from starting automatically after installationEnabled
Restrict sign in to Teams to accounts in specific tenantsEnabled
Tenant IDs:ext.uber.com,majorel.com,uber.com,mj.teleperformance.com
Start Menu and Taskbar
PolicySettingComment
Add Search Internet link to Start MenuEnabledDisable Windows APPs
Add the Run command to the Start MenuEnabledDisable Windows APPs
Clear history of recently opened documents on exitEnabledDisable Windows APPs
Clear the recent programs list for new usersEnabledDisable Windows APPs
Disable context menus in the Start MenuEnabledDisable Windows APPs.
Do not keep history of recently opened documentsEnabledDisable Windows APPs.
Remove "Recently added" list from Start MenuEnabledDisable Windows APPs.
Remove All Programs list from the Start menuEnabledDisable Windows APPs.
Choose one of the following actionsNone
PolicySettingComment
Remove frequent programs list from the Start MenuEnabledDisable Windows APPs.
Show or hide "Most used" list from Start menuEnabledDisable Windows APPs.
Choose one of the following actionsHide
System
PolicySettingComment
Don't run specified Windows applicationsEnabled
List of disallowed applications
SnippingTool.exe
ScreenClippingHost.exe
psr.exe
mspaaint.exe
Paint3D.exe
Microsoft.Sketch
notepad.exe
mspaint.exe
MSACCESS.EXE
Notepad*.exe
stickynote.exe
notepad.exe
Microsoft.StickyNote.exe
Compmgmt.msc
Eventvwr.msc
Lusrmgr.msc
Msconfig.exe
appwiz.cpl
gpedit.msc
regedit.exe
schedtasks.exe
services.msc
taskmgr.exe
mmc.exe
Msconfig.exe
appwiz.cpl
gpedit.msc
regedit.exe
schedtasks.exe
services.msc
taskmgr.exe
mmc.exe
cmd.exe
command.exe
Powershell.exe
Powershell_ISE.exe
freecell.exe
magnify.exe
mmc.exe
mobsync.exe
msimn.exe
mstsc.exe
narrator.exe
osk.exe
spider.exe
utilman.exe
wab.exe
winmine.exe
StikyNot.exe
wordpad.exe
notepad.exe
firefox.exe
control.exe
chess.exe
hearts.exe
SpiderSolitaire.exe
regedit32.exe
helpctr.exe
iexplore.exe
HxTsr.exe
Solitaire.exe
HxCalendarAppImm.exe
Microsoft.Msn.weather.exe
MicrosoftSearchInBing.exe
PolicySettingComment
Prevent access to registry editing toolsEnabled
Disable regedit from running silently?Yes
PolicySettingComment
Prevent access to the command promptEnabled
Disable the command prompt script processing also?No
System/Ctrl+Alt+Del Options
PolicySettingComment
Remove Task ManagerEnabledDisable Windows APPs
System/Group Policy
PolicySettingComment
Configure Group Policy slow link detectionEnabled
Connection speed (Kbps):10
Enter 0 to disable slow link detection.
Windows Components/AutoPlay Policies
PolicySettingComment
Turn off AutoplayEnabled
Turn off Autoplay on:All drives
Windows Components/Cloud Content
PolicySettingComment
Turn off all Windows spotlight featuresEnabledDisable Windows APPs
Turn off Windows Spotlight on Action CenterEnabledDisable Windows APPs
Windows Components/Edge UI
PolicySettingComment
Disable help tipsEnabledDisable Windows APPs
Turn off tracking of app usageEnabledDisable Windows APPs
Windows Components/File Explorer
PolicySettingComment
Disable Known FoldersEnabledDisable Windows APPs
Disable these Known Folders.
Recent Places
Documents
Music
Pictures
Videos
Desktops
Liabraries
Favorites
Network
PolicySettingComment
Display confirmation dialog when deleting filesEnabledDisable Windows APPs
Display the menu bar in File Explorer DisabledDisable Windows APPs
Do not allow Folder Options to be opened from the Options button on the View tab of the ribbonEnabledDisable Windows APPs
Hides the Manage item on the File Explorer context menuEnabledDisable Windows APPs
No Computers Near Me in Network LocationsEnabledDisable Windows APPs
No Entire Network in Network LocationsEnabled
Prevent access to drives from My ComputerEnabled
Pick one of the following combinationsRestrict all drives
PolicySettingComment
Remove "Map Network Drive" and "Disconnect Network Drive"EnabledDisable Windows APPs
Remove CD Burning featuresEnabledDisable Windows APPs
Remove DFS tabEnabledDisable Windows APPs
Remove File Explorer's default context menuEnabledDisable Windows APPs
Remove File menu from File ExplorerEnabledDisable Windows APPs
Turn off Windows Key hotkeysEnabled
Windows Components/Microsoft Edge
PolicySettingComment
Allow Developer ToolsDisabled
Allow Saving HistoryDisabled
Windows Components/Microsoft Management Console
PolicySettingComment
Restrict the user from entering author modeEnabled
Windows Components/Microsoft User Experience Virtualization/Applications
PolicySettingComment
Access 2013 backup onlyDisabledDisable Windows APPs
Access 2016 backup onlyDisabledDisable Windows APPs
CalculatorDisabledDisable Windows APPs
Common 2013 backup onlyDisabledDisable Windows APPs
Common 2016 backup onlyDisabledDisable Windows APPs
Excel 2013 backup onlyDisabledDisable Windows APPs
Excel 2016 backup onlyDisabledDisable Windows APPs
InfoPath 2013 backup onlyDisabledDisable Windows APPs
Internet Explorer 10DisabledDisable Windows APPs
Internet Explorer 11DisabledDisable Windows APPs
Internet Explorer 8DisabledDisable Windows APPs
Internet Explorer 9DisabledDisable Windows APPs
Internet Explorer Common SettingsDisabledDisable Windows APPs
Lync 2013 backup onlyDisabledDisable Windows APPs
Lync 2016 backup onlyDisabledDisable Windows APPs
Microsoft Access 2010DisabledDisable Windows APPs
Microsoft Access 2013DisabledDisable Windows APPs
Microsoft Access 2016DisabledDisable Windows APPs
Microsoft Excel 2010DisabledDisable Windows APPs
Microsoft Excel 2013Disabled
Microsoft Excel 2016DisabledDisable Windows APPs
Microsoft InfoPath 2010DisabledDisable Windows APPs
Microsoft InfoPath 2013Disabled
Microsoft Lync 2010DisabledDisable Windows APPs
Microsoft Lync 2013DisabledDisable Windows APPs
Microsoft Lync 2016DisabledDisable Windows APPs
Microsoft Office 2010 Common SettingsDisabledDisable Windows APPs
Microsoft Office 2013 Common SettingsDisabledDisable Windows APPs
Microsoft Office 2013 Upload CenterDisabledDisable Windows APPs
Microsoft Office 2016 Common SettingsDisabledDisable Windows APPs
Microsoft Office 2016 Upload CenterDisabledDisable Windows APPs
Microsoft Office 365 Access 2013DisabledDisable Windows APPs
Microsoft Office 365 Access 2016DisabledDisable Windows APPs
Microsoft Office 365 Common 2013DisabledDisable Windows APPs
Microsoft Office 365 Common 2016DisabledDisable Windows APPs
Microsoft Office 365 Excel 2013DisabledDisable Windows APPs
Microsoft Office 365 Excel 2016DisabledDisable Windows APPs
Microsoft Office 365 InfoPath 2013DisabledDisable Windows APPs
Microsoft Office 365 Lync 2013DisabledDisable Windows APPs
Microsoft Office 365 Lync 2016DisabledDisable Windows APPs
Microsoft Office 365 OneNote 2013DisabledDisable Windows APPs
Microsoft Office 365 OneNote 2016DisabledDisable Windows APPs
Microsoft Office 365 Outlook 2013DisabledDisable Windows APPs
Microsoft Office 365 Outlook 2016Not ConfiguredDisable Windows APPs
Microsoft OneDrive for Business 2013Disabled
Microsoft OneDrive for Business 2016Disabled
Microsoft OneNote 2010Disabled
Microsoft OneNote 2013Disabled
Microsoft OneNote 2016Disabled
Microsoft Outlook 2010Disabled
Microsoft Outlook 2013Disabled
Microsoft Outlook 2016Disabled
Microsoft PowerPoint 2010Disabled
Microsoft PowerPoint 2013Disabled
Microsoft PowerPoint 2016Disabled
Microsoft Project 2010Disabled
Microsoft Project 2013Disabled
Microsoft Project 2016Disabled
Microsoft Publisher 2010Disabled
Microsoft Publisher 2013Disabled
Microsoft Publisher 2016Disabled
Microsoft SharePoint Designer 2010Disabled
Microsoft SharePoint Designer 2013Disabled
Microsoft SharePoint Workspace 2010Disabled
Microsoft Visio 2010Disabled
Microsoft Visio 2016Disabled
Microsoft Word 2010Disabled
Microsoft Word 2013Disabled
Microsoft Word 2016Disabled
OneNote 2013 backup onlyDisabled
OneNote 2016 backup onlyDisabled
Outlook 2016 backup onlyDisabled
PowerPoint 2016 backup onlyDisabled
Project 2013 backup onlyDisabled
Project 2016 backup onlyDisabled
Publisher 2013 backup onlyDisabled
Publisher 2016 backup onlyDisabled
SharePoint Designer 2013 backup onlyDisabled
Visio 2013 backup onlyDisabled
Visio 2016 backup onlyDisabled
Word 2013 backup onlyDisabled
Word 2016 backup onlyDisabled
Windows Components/Sound Recorder
PolicySettingComment
Do not allow Sound Recorder to runEnabled
Windows Components/Store
PolicySettingComment
Turn off the Store applicationEnabledDisabale Windows Store
Windows Components/Tablet PC/Accessories
PolicySettingComment
Do not allow Inkball to runEnabledDisable Sniping tool & Win+Shift+S
Do not allow printing to Journal Note WriterEnabledDisable Sniping tool & Win+Shift+S
Do not allow Snipping Tool to runEnabledDisable Sniping tool & Win+Shift+S
Do not allow Windows Journal to be runEnabledDisable Sniping tool & Win+Shift+S
Windows Components/Windows Calendar
PolicySettingComment
Turn off Windows CalendarEnabledDisable Windows APPs.
Windows Components/Windows Messenger
PolicySettingComment
Do not allow Windows Messenger to be runEnabled
Do not automatically start Windows Messenger initiallyEnabled
Preferences
Windows Settings
Registry
Scancode Map (Order: 1)
General
ActionUpdate
Properties
HiveHKEY_LOCAL_MACHINE
Key pathSYSTEM\CurrentControlSet\Control\Keyboard Layout
Value nameScancode Map
Value typeREG_BINARY
Value data00,00,00,00,00,00,00,00,04,00,00,00,00,00,2a,e0,00,00,37,e0,00,00,54,00,00,00,00,00 00,00,00,00,00,00,00,00,04,00,00,00,00,00,2a,e0,00,00,37,e0,00,00,54,00,00,00,00,00 00,00,00,00,00,00,00,00,04,00,00,00,00,00,2a,e0,00,00,37,e0,00,00,54,00,00,00,00,0000,00,00,00,00,00,00,00,04,00,00,00,00,00,2a,e0,00,00,37,e0,00,00,54,00,00,00,00,00 00,00,00,00,00,00,00,00,04,00,00,00,00,00,2a,e0,00,00,37,e0,00,00,54,00,00,00,00,00 00,00,00,00,00,00,00,00,04,00,00,00,00,00,2a,e0,00,00,37,e0,00,00,54,00,00,00,00,00
Common
Options
Stop processing items on this extension if an error occurs on this itemNo
Run in logged-on user's security context (user policy option)No
Remove this item when it is no longer appliedNo
Apply once and do not reapplyNo
Description
Disable Sniping tool & Win+Shift+S
PrintScreenKeyForSnippingEnabled (Order: 2)
General
ActionUpdate
Properties
HiveHKEY_CURRENT_USER
Key pathControl Panel\Keyboard
Value namePrintScreenKeyForSnippingEnabled
Value typeREG_DWORD
Value data0x0 (0)
Common
Options
Stop processing items on this extension if an error occurs on this itemNo
Run in logged-on user's security context (user policy option)No
Remove this item when it is no longer appliedNo
Apply once and do not reapplyNo
Description
Disable Sniping tool & Win+Shift+S
NoWinKeys (Order: 3)
General
ActionUpdate
Properties
HiveHKEY_CURRENT_USER
Key pathSoftware\Microsoft\Windows\CurrentVersion\Policies\Explorer
Value nameNoWinKeys
Value typeREG_DWORD
Value data0x1 (1)
Common
Options
Stop processing items on this extension if an error occurs on this itemNo
Run in logged-on user's security context (user policy option)No
Remove this item when it is no longer appliedNo
Apply once and do not reapplyNo
Description
Disable Sniping tool & Win+Shift+S
value (Order: 4)
General
ActionUpdate
Properties
HiveHKEY_LOCAL_MACHINE
Key pathSOFTWARE\Microsoft\PolicyManager\default\Experience\AllowScreenCapture
Value namevalue
Value typeREG_DWORD
Value data0x0 (0)
Common
Options
Stop processing items on this extension if an error occurs on this itemNo
Run in logged-on user's security context (user policy option)No
Remove this item when it is no longer appliedNo
Apply once and do not reapplyNo
Description
Disable Sniping tool & Win+Shift+S
Toggle (Order: 5)
General
ActionUpdate
Properties
HiveHKEY_CURRENT_USER
Key pathKeyboard Layout\Toggle
Value name(Default)
Value typeREG_SZ
Value data1
Common
Options
Stop processing items on this extension if an error occurs on this itemNo
Run in logged-on user's security context (user policy option)No
Remove this item when it is no longer appliedNo
Apply once and do not reapplyNo
1 (Order: 6)
General
ActionUpdate
Properties
HiveHKEY_CURRENT_USER
Key pathKeyboard Layout\Preload
Value name1
Value typeREG_SZ
Value data00000409
Common
Options
Stop processing items on this extension if an error occurs on this itemNo
Run in logged-on user's security context (user policy option)No
Remove this item when it is no longer appliedNo
Apply once and do not reapplyNo
2 (Order: 7)
General
ActionUpdate
Properties
HiveHKEY_CURRENT_USER
Key pathKeyboard Layout\Preload
Value name2
Value typeREG_SZ
Value data00000401
Common
Options
Stop processing items on this extension if an error occurs on this itemNo
Run in logged-on user's security context (user policy option)No
Remove this item when it is no longer appliedNo
Apply once and do not reapplyNo
Shortcuts
Shortcut (Path: %DesktopDir%\Zscaler)
Zscaler (Order: 1)
General
ActionCreate
Attributes
Target typeFile system object
Shortcut path%DesktopDir%\Zscaler
Target pathC:\Program Files\Zscaler\ZSATray\ZSATray.exe
Start inC:\Program Files\Zscaler\ZSATray\ZSATray.exe
Icon pathC:\Program Files\Zscaler\ZSATray\ZSATray.exe
Icon index0
Shortcut keyNone
RunNormal window
Common
Options
Stop processing items on this extension if an error occurs on this itemNo
Run in logged-on user's security context (user policy option)Yes
Remove this item when it is no longer appliedNo
Apply once and do not reapplyNo
Shortcut (Path: %DesktopDir%\Google Chrome)
Google Chrome (Order: 2)
General
ActionCreate
Attributes
Target typeFile system object
Shortcut path%DesktopDir%\Google Chrome
Target pathC:\Program Files\Google\Chrome\Application\chrome.exe
Start inC:\Program Files\Google\Chrome\Application\chrome.exe
Icon pathC:\Program Files\Google\Chrome\Application\chrome.exe
Icon index0
Shortcut keyNone
RunNormal window
Common
Options
Stop processing items on this extension if an error occurs on this itemNo
Run in logged-on user's security context (user policy option)Yes
Remove this item when it is no longer appliedNo
Apply once and do not reapplyNo
Shortcut (Path: %DesktopDir%\InteractionWorkspace)
InteractionWorkspace (Order: 3)
General
ActionCreate
Attributes
Target typeFile system object
Shortcut path%DesktopDir%\InteractionWorkspace
Target pathC:\Workspace Desktop Edition\InteractionWorkspace.exe
Start inC:\Workspace Desktop Edition\InteractionWorkspace.exe
Icon pathC:\Workspace Desktop Edition\InteractionWorkspace.exe
Icon index0
Shortcut keyNone
RunNormal window
Common
Options
Stop processing items on this extension if an error occurs on this itemNo
Run in logged-on user's security context (user policy option)Yes
Remove this item when it is no longer appliedNo
Apply once and do not reapplyNo
Shortcut (Path: %DesktopDir%\Forti VPN)
Forti VPN (Order: 4)
General
ActionCreate
Attributes
Target typeFile system object
Shortcut path%DesktopDir%\Forti VPN
Target pathC:\Program Files\Fortinet\FortiClient\FortiClient.exe
Start inC:\Program Files\Fortinet\FortiClient\FortiClient.exe
Icon path%SystemRoot%\Installer\{32123CA3-C24D-4A99-9347-70049B8E4C23}\Icon_FCTLogo
Icon index0
Shortcut keyNone
RunNormal window
Common
Options
Stop processing items on this extension if an error occurs on this itemNo
Run in logged-on user's security context (user policy option)Yes
Remove this item when it is no longer appliedNo
Apply once and do not reapplyNo
Shortcut (Path: %DesktopDir%\WINWORD)
WINWORD (Order: 5)
General
ActionCreate
Attributes
Target typeFile system object
Shortcut path%DesktopDir%\WINWORD
Target pathC:\Program Files\Microsoft Office\root\Office16\WINWORD.EXE
Icon path%ProgramFiles%\Microsoft Office\Root\VFS\Windows\Installer\{90160000-000F-0000-1000-0000000FF1CE}\wordicon.exe
Icon index0
Shortcut keyNone
RunNormal window
Common
Options
Stop processing items on this extension if an error occurs on this itemNo
Run in logged-on user's security context (user policy option)Yes
Remove this item when it is no longer appliedNo
Apply once and do not reapplyNo
Shortcut (Path: %DesktopDir%\EXCEL)
EXCEL (Order: 6)
General
ActionCreate
Attributes
Target typeFile system object
Shortcut path%DesktopDir%\EXCEL
Target pathC:\Program Files\Microsoft Office\root\Office16\EXCEL.EXE
Start inC:\Program Files\Microsoft Office\root\Office16\EXCEL.EXE
Icon path%ProgramFiles%\Microsoft Office\Root\VFS\Windows\Installer\{90160000-000F-0000-1000-0000000FF1CE}\xlicons.exe
Icon index0
Shortcut keyNone
RunNormal window
Common
Options
Stop processing items on this extension if an error occurs on this itemNo
Run in logged-on user's security context (user policy option)Yes
Remove this item when it is no longer appliedNo
Apply once and do not reapplyNo
Shortcut (Path: %DesktopDir%\OneDrive)
OneDrive (Order: 7)
General
ActionCreate
Attributes
Target typeFile system object
Shortcut path%DesktopDir%\OneDrive
Target pathC:\Program Files\Microsoft OneDrive\OneDrive.exe
Icon path%ProgramFiles%\Microsoft OneDrive\OneDrive.exe
Icon index0
Shortcut keyNone
RunNormal window
Common
Options
Stop processing items on this extension if an error occurs on this itemNo
Run in logged-on user's security context (user policy option)Yes
Remove this item when it is no longer appliedNo
Apply once and do not reapplyNo