Group Policy Management
body { font-size:68%;font-family:MS Shell Dlg; margin:0px,0px,0px,0px; border: 1px solid #666666; background:#F6F6F6; width:100%; word-break:normal; word-wrap:break-word; } .head { font-weight:bold; font-size:160%; font-family:MS Shell Dlg; width:100%; color:#6587DC; background:#E3EAF9; border:1px solid #5582D2; padding-left:8px; height:24px; } .path { margin-left: 10px; margin-top: 10px; margin-bottom:5px;width:100%; } .info { padding-left:10px;width:100%; } table { font-size:100%; width:100%; border:1px solid #999999; } th { border-bottom:1px solid #999999; text-align:left; padding-left:10px; height:24px; } td { background:#FFFFFF; padding-left:10px; padding-bottom:10px; padding-top:10px; } .btn { width:100%; text-align:right; margin-top:16px; } .hdr { font-weight:bold; border:1px solid #999999; text-align:left; padding-top: 4px; padding-left:10px; height:24px; margin-bottom:-1px; width:100%; } .bdy { width:100%; height:182px; display:block; overflow:scroll; z-index:2; background:#FFFFFF; padding-left:10px; padding-bottom:10px; padding-top:10px; border:1px solid #999999; } button { width:6.9em; height:2.1em; font-size:100%; font-family:MS Shell Dlg; margin-right:15px; } @media print { .bdy { display:block; overflow:visible; } button { display:none; } .head { color:#000000; background:#FFFFFF; border:1px solid #000000; } }
Setting Path:
Explanation
No explanation is available for this setting.
Supported On:
Not available
GR-PO-SEC-C-Dell PC Settings
Data collected on: 2-9-2025 09:01:52
General
Details
Domainemea.tpg.ads
OwnerEMEA\tentolouris.5
Created21-2-2017 09:51:28
Modified19-4-2024 11:43:32
User Revisions0 (AD), 0 (SYSVOL)
Computer Revisions111 (AD), 111 (SYSVOL)
Unique ID{9f0c669e-6b30-47ae-a5ed-ecbe8ba902a7}
GPO StatusEnabled
Links
LocationEnforcedLink StatusPath
ClientsYesEnabledemea.tpg.ads/GR/Systems/Clients

This list only includes links in the domain of the GPO.
Security Filtering
The settings in this GPO can only apply to the following groups, users, and computers:
Name
EMEA\GR-L-SEC-Systems Clients Dell Computers
Delegation
These groups and users have the specified permission for this GPO
NameAllowed PermissionsInherited
EMEA\Domain AdminsEdit settings, delete, modify securityNo
EMEA\Domain ComputersReadNo
EMEA\GR-G-ORG-OU AdminsEdit settings, delete, modify securityNo
EMEA\GR-L-SEC-Systems Clients Dell ComputersRead (from Security Filtering)No
EMEA\tentolouris.5Edit settings, delete, modify securityNo
NT AUTHORITY\Authenticated UsersReadNo
NT AUTHORITY\ENTERPRISE DOMAIN CONTROLLERSReadNo
NT AUTHORITY\SYSTEMEdit settings, delete, modify securityNo
ROOT\Enterprise AdminsEdit settings, delete, modify securityNo
Computer Configuration (Enabled)
Policies
Software Settings
Assigned Applications
Defender Soft Token for Windows 5.8.1
Product Information
NameDefender Soft Token for Windows 5.8.1
Version5.8
LanguageEnglish (United States)
Platformx86
Support URLhttps://support.software.dell.com/defender/
Deployment Information
GeneralSetting
Deployment typeAssigned
Deployment source\\grkalfs01.emea.tpg.ads\netconfigfiles\Dell\DefenderSoftToken_x86_reg.msi
Uninstall this application when it falls out of the scope of managementDisabled

Advanced Deployment OptionsSetting
Ignore language when deploying this packageDisabled
Make this 32-bit X86 application available to Win64 computersEnabled
Include OLE class and product informationEnabled

Diagnostic InformationSetting
Product code{d9c31078-0a29-403f-8364-5e1f3d1c5886}
Deployment Count0
Security
Permissions
TypeNamePermissionInherited
AllowEMEA\Domain AdminsFull controlNo
AllowNT AUTHORITY\Authenticated UsersReadNo
AllowNT AUTHORITY\SYSTEMFull controlNo
AllowEMEA\Domain ComputersReadYes
AllowEMEA\GR-L-SEC-Systems Clients Dell ComputersReadYes
AllowEMEA\GR-G-ORG-OU AdminsReadYes
AllowROOT\Enterprise AdminsRead, WriteYes
AllowEMEA\Domain AdminsRead, WriteYes
AllowNT AUTHORITY\Authenticated UsersReadYes
AllowNT AUTHORITY\ENTERPRISE DOMAIN CONTROLLERSReadYes
AllowNT AUTHORITY\SYSTEMRead, WriteYes
AllowEMEA\tentolouris.5Read, WriteYes
AllowCREATOR OWNERRead, WriteYes
Allow inheritable permissions from the parent to propagate to this object and all child objectsEnabled
Advanced
UpgradesSetting
Required upgrade for existing packagesEnabled
Packages that this package will upgradeGPO
None
Packages in the current GPO that will upgrade this packageNone

Categories
None

Transforms
None
Defender Soft Token for Windows 5.8.1 (2)
Product Information
NameDefender Soft Token for Windows 5.8.1 (2)
Version5.8
LanguageEnglish (United States)
Platformx64
Support URLhttps://support.software.dell.com/defender/
Deployment Information
GeneralSetting
Deployment typeAssigned
Deployment source\\grkalfs01.emea.tpg.ads\netconfigfiles\Dell\DefenderSoftToken_x64_reg (1).msi
Uninstall this application when it falls out of the scope of managementDisabled

Advanced Deployment OptionsSetting
Ignore language when deploying this packageDisabled
Make this 32-bit X86 application available to Win64 computersEnabled
Include OLE class and product informationEnabled

Diagnostic InformationSetting
Product code{e2f2a6a8-b65b-4303-8b62-f8d8472ab297}
Deployment Count0
Security
Permissions
TypeNamePermissionInherited
AllowEMEA\Domain AdminsFull controlNo
AllowNT AUTHORITY\Authenticated UsersReadNo
AllowNT AUTHORITY\SYSTEMFull controlNo
AllowEMEA\Domain ComputersReadYes
AllowEMEA\GR-L-SEC-Systems Clients Dell ComputersReadYes
AllowEMEA\GR-G-ORG-OU AdminsReadYes
AllowROOT\Enterprise AdminsRead, WriteYes
AllowEMEA\Domain AdminsRead, WriteYes
AllowNT AUTHORITY\Authenticated UsersReadYes
AllowNT AUTHORITY\ENTERPRISE DOMAIN CONTROLLERSReadYes
AllowNT AUTHORITY\SYSTEMRead, WriteYes
AllowEMEA\tentolouris.5Read, WriteYes
AllowCREATOR OWNERRead, WriteYes
Allow inheritable permissions from the parent to propagate to this object and all child objectsEnabled
Advanced
UpgradesSetting
Required upgrade for existing packagesEnabled
Packages that this package will upgradeGPO
None
Packages in the current GPO that will upgrade this packageNone

Categories
None

Transforms
None
Windows Settings
Scripts
Startup
For this GPO, Script order: Not configured
NameParameters
\\grkalfs01\netconfigfiles\Dell\ddmsilent.bat
\\grkalfs01.emea.tpg.ads\netconfigfiles\GlobalSettings\WAHA\tpaux_waha.bat
Shutdown
For this GPO, Script order: Not configured
NameParameters
\\grkalfs01.emea.tpg.ads\netconfigfiles\Dell\Citrix\install.bat
\\grkalfs01\netconfigfiles\GlobalSettings\WAHA\tpaux_waha.bat
Administrative Templates
Policy definitions (ADMX files) retrieved from the central store.
VMware Horizon Client Configuration
PolicySettingComment
Enable Horizon Client online updateDisabled
Windows Components/Windows Update/Manage updates offered from Windows Server Update Service
PolicySettingComment
Enable client-side targetingEnabled
Target group name for this computerDell
Preferences
Windows Settings
Files
File (Target Path: C:\TPSTUFF\LandeskRepairVuln.bat)
LandeskRepairVuln.bat (Order: 1)
General
ActionUpdate
Properties
Source file(s)\\grkalfs01\netconfigfiles\GlobalSettings\Landesk\LandeskRepairVuln.bat
Destination fileC:\TPSTUFF\LandeskRepairVuln.bat
Suppress errors on individual file actionsDisabled
Attributes
Read-onlyDisabled
HiddenDisabled
ArchiveDisabled
Common
Options
Stop processing items on this extension if an error occurs on this itemNo
Remove this item when it is no longer appliedNo
Apply once and do not reapplyNo
Registry
Enable (Order: 1)
General
ActionUpdate
Properties
HiveHKEY_LOCAL_MACHINE
Key pathSOFTWARE\Policies\Citrix\ICA Client\AutoUpdate
Value nameEnable
Value typeREG_SZ
Value dataFalse
Common
Options
Stop processing items on this extension if an error occurs on this itemNo
Remove this item when it is no longer appliedNo
Apply once and do not reapplyNo
Collection: Registry Wizard Values/HKEY_LOCAL_MACHINE/SOFTWARE/TP
Common
Options
Stop processing items on this extension if an error occurs on this itemNo
Apply once and do not reapplyNo
Registry item: TP
General
ActionUpdate
Properties
HiveHKEY_LOCAL_MACHINE
Key pathSOFTWARE\TP
Common
Options
Stop processing items on this extension if an error occurs on this itemNo
Remove this item when it is no longer appliedNo
Apply once and do not reapplyNo
Control Panel Settings
Local Users and Groups
Group (Name: Administrators (built-in))
Administrators (built-in) (Order: 1)
Local Group
ActionUpdate
Properties
Group nameAdministrators (built-in)
Delete all member usersDisabled
Delete all member groupsEnabled
Add members
EMEA\GR-G-ORG-Remote Admin UsersS-1-5-21-513466819-3096973226-347852806-613115
Common
Options
Stop processing items on this extension if an error occurs on this itemNo
Remove this item when it is no longer appliedNo
Apply once and do not reapplyNo
Group (Name: Users (built-in))
Users (built-in) (Order: 2)
Local Group
ActionUpdate
Properties
Group nameUsers (built-in)
Delete all member usersDisabled
Delete all member groupsEnabled
Add members
EMEA\GR-G-ORG-Remote Admin UsersS-1-5-21-513466819-3096973226-347852806-613115
tpadmin
EMEA\GR-G-ORG-USERS Dell Sales SLAM AccessS-1-5-21-513466819-3096973226-347852806-1300096
Common
Options
Stop processing items on this extension if an error occurs on this itemNo
Remove this item when it is no longer appliedNo
Apply once and do not reapplyNo
Scheduled Tasks
Scheduled Task (At least Windows 7) (Name: Daily Shutdown_New)
Daily Shutdown_New (Order: 1)
General
ActionUpdate
Task
Name Daily Shutdown_New
Author EMEA\lewke.7
Description
Run only when user is logged on S4U
UserId NT AUTHORITY\System
Run with highest privileges HighestAvailable
Hidden No
Configure for 1.3
Enabled Yes
Triggers
1. Daily
Activate 28-9-2018 02:00:00Synchronize across time zones No
Enabled Yes
Recur every 1 days
Actions
1. Start a program
Program/script C:\Windows\System32\shutdown.exe
Arguments -r -f -t 0
Settings
Stop if the computer ceases to be idle No
Restart if the idle state resumes No
Start the task only if the computer is on AC power No
Stop if the computer switches to battery power No
Wake the computer to run this task Yes
Allow task to be run on demand Yes
Stop task if it runs longer than 3 days
If the running task does not end when requested, force it to stop Yes
If the task is already running, then the following rule applies IgnoreNew
Common
Options
Stop processing items on this extension if an error occurs on this itemNo
Remove this item when it is no longer appliedNo
Apply once and do not reapplyNo
Scheduled Task (At least Windows 7) (Name: Daily Shutdown_New_2)
Daily Shutdown_New_2 (Order: 2)
General
ActionUpdate
Task
Name Daily Shutdown_New_2
Author EMEA\lewke.7
Description
Run only when user is logged on S4U
UserId NT AUTHORITY\System
Run with highest privileges HighestAvailable
Hidden No
Configure for 1.3
Enabled Yes
Triggers
1. Daily
Activate 28-9-2018 05:00:00Synchronize across time zones No
Enabled Yes
Recur every 1 days
Actions
1. Start a program
Program/script C:\Windows\System32\shutdown.exe
Arguments -r -f -t 0
Settings
Stop if the computer ceases to be idle No
Restart if the idle state resumes No
Start the task only if the computer is on AC power No
Stop if the computer switches to battery power No
Wake the computer to run this task Yes
Allow task to be run on demand Yes
Stop task if it runs longer than 3 days
If the running task does not end when requested, force it to stop Yes
If the task is already running, then the following rule applies IgnoreNew
Common
Options
Stop processing items on this extension if an error occurs on this itemNo
Remove this item when it is no longer appliedNo
Apply once and do not reapplyNo
Scheduled Task (At least Windows 7) (Name: LandeskRepairVuln)
LandeskRepairVuln (Order: 3)
General
ActionUpdate
Task
Name LandeskRepairVuln
Author EMEA\tentolouris.5-adm
Description
Run only when user is logged on
GroupId NT AUTHORITY\SYSTEM
Run with highest privileges HighestAvailable
Hidden No
Configure for 1.2
Enabled Yes
Triggers
1. Weekly
Stop task if it runs longer than 8 hours
Activate 7-7-2020 21:53:37Synchronize across time zones No
Enabled Yes
Recur every 1 weeks on maandag
Actions
1. Start a program
Program/script C:\TPSTUFF\LandeskRepairVuln.bat
Settings
Stop if the computer ceases to be idle No
Restart if the idle state resumes No
Start the task only if the computer is on AC power No
Stop if the computer switches to battery power No
Wake the computer to run this task Yes
Allow task to be run on demand Yes
Run task as soon as possible after a scheduled start is missed Yes
Stop task if it runs longer than 12 hours
If the running task does not end when requested, force it to stop Yes
If the task is already running, then the following rule applies StopExisting
Common
Options
Stop processing items on this extension if an error occurs on this itemNo
Remove this item when it is no longer appliedNo
Apply once and do not reapplyNo
Scheduled Task (At least Windows 7) (Name: Office StartUP update)
Office StartUP update (Order: 4)
General
ActionUpdate
Task
Name Office StartUP update
Author EMEA\tentolouris.5-adm
Description
Run only when user is logged on
GroupId NT AUTHORITY\SYSTEM
Run with highest privileges HighestAvailable
Hidden No
Configure for 1.2
Enabled Yes
Triggers
1. At startup
Enabled Yes
Actions
1. Start a program
Program/script C:\Windows\System32\cmd.exe
Arguments /c if exist "C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeC2RClient.exe" ( "C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeC2RClient.exe" /update user displaylevel=false forceappshutdown=true )
Settings
Stop if the computer ceases to be idle No
Restart if the idle state resumes No
Start the task only if the computer is on AC power No
Stop if the computer switches to battery power No
Allow task to be run on demand No
Stop task if it runs longer than Immediately
If the running task does not end when requested, force it to stop No
If the task is already running, then the following rule applies IgnoreNew
Common
Options
Stop processing items on this extension if an error occurs on this itemNo
Remove this item when it is no longer appliedNo
Apply once and do not reapplyNo
User Configuration (Enabled)
No settings defined.