Group Policy Management
body { font-size:68%;font-family:MS Shell Dlg; margin:0px,0px,0px,0px; border: 1px solid #666666; background:#F6F6F6; width:100%; word-break:normal; word-wrap:break-word; } .head { font-weight:bold; font-size:160%; font-family:MS Shell Dlg; width:100%; color:#6587DC; background:#E3EAF9; border:1px solid #5582D2; padding-left:8px; height:24px; } .path { margin-left: 10px; margin-top: 10px; margin-bottom:5px;width:100%; } .info { padding-left:10px;width:100%; } table { font-size:100%; width:100%; border:1px solid #999999; } th { border-bottom:1px solid #999999; text-align:left; padding-left:10px; height:24px; } td { background:#FFFFFF; padding-left:10px; padding-bottom:10px; padding-top:10px; } .btn { width:100%; text-align:right; margin-top:16px; } .hdr { font-weight:bold; border:1px solid #999999; text-align:left; padding-top: 4px; padding-left:10px; height:24px; margin-bottom:-1px; width:100%; } .bdy { width:100%; height:182px; display:block; overflow:scroll; z-index:2; background:#FFFFFF; padding-left:10px; padding-bottom:10px; padding-top:10px; border:1px solid #999999; } button { width:6.9em; height:2.1em; font-size:100%; font-family:MS Shell Dlg; margin-right:15px; } @media print { .bdy { display:block; overflow:visible; } button { display:none; } .head { color:#000000; background:#FFFFFF; border:1px solid #000000; } }
Setting Path:
Explanation
No explanation is available for this setting.
Supported On:
Not available
GR-PO-WIN-C-Microsoft OutlookCom PC Settings-TBD
Data collected on: 2-9-2025 09:28:01
General
Details
Domainemea.tpg.ads
OwnerEMEA\tentolouris.5
Created7-6-2019 15:14:10
Modified9-2-2023 14:49:12
User Revisions2 (AD), 2 (SYSVOL)
Computer Revisions99 (AD), 99 (SYSVOL)
Unique ID{8e358c3a-25b1-4891-9a61-51b38b904b50}
GPO StatusEnabled
Links
LocationEnforcedLink StatusPath
ClientsYesEnabledemea.tpg.ads/GR/Systems/Clients

This list only includes links in the domain of the GPO.
Security Filtering
The settings in this GPO can only apply to the following groups, users, and computers:
Name
S-1-5-21-513466819-3096973226-347852806-635710
Delegation
These groups and users have the specified permission for this GPO
NameAllowed PermissionsInherited
EMEA\Domain AdminsEdit settings, delete, modify securityNo
EMEA\Domain ComputersReadNo
EMEA\GR-G-ORG-OU AdminsEdit settings, delete, modify securityNo
EMEA\tentolouris.5Edit settings, delete, modify securityNo
NT AUTHORITY\Authenticated UsersReadNo
NT AUTHORITY\ENTERPRISE DOMAIN CONTROLLERSReadNo
NT AUTHORITY\SYSTEMEdit settings, delete, modify securityNo
ROOT\Enterprise AdminsEdit settings, delete, modify securityNo
S-1-5-21-513466819-3096973226-347852806-635710Read (from Security Filtering)No
Computer Configuration (Enabled)
Policies
Software Settings
Assigned Applications
Microsoft Edge
Product Information
NameMicrosoft Edge
Version83.0
LanguageEnglish (United States)
Platformx86
Support URL
Deployment Information
GeneralSetting
Deployment typeAssigned
Deployment source\\grkalfs01\netconfigfiles\GlobalSettings\Setups\ChromiumEdge\MicrosoftEdgeEnterpriseX64.msi
Uninstall this application when it falls out of the scope of managementDisabled

Advanced Deployment OptionsSetting
Ignore language when deploying this packageDisabled
Make this 32-bit X86 application available to Win64 computersEnabled
Include OLE class and product informationEnabled

Diagnostic InformationSetting
Product code{3302f80d-07a3-36d5-8f95-2830910afbd7}
Deployment Count0
Security
Permissions
TypeNamePermissionInherited
AllowEMEA\Domain AdminsFull controlNo
AllowNT AUTHORITY\Authenticated UsersReadNo
AllowNT AUTHORITY\SYSTEMFull controlNo
AllowEMEA\Domain ComputersReadYes
AllowS-1-5-21-513466819-3096973226-347852806-635710ReadYes
AllowEMEA\GR-G-ORG-OU AdminsReadYes
AllowROOT\Enterprise AdminsRead, WriteYes
AllowEMEA\Domain AdminsRead, WriteYes
AllowNT AUTHORITY\Authenticated UsersReadYes
AllowNT AUTHORITY\ENTERPRISE DOMAIN CONTROLLERSReadYes
AllowNT AUTHORITY\SYSTEMRead, WriteYes
AllowEMEA\tentolouris.5-admRead, WriteYes
AllowCREATOR OWNERRead, WriteYes
Allow inheritable permissions from the parent to propagate to this object and all child objectsEnabled
Advanced
UpgradesSetting
Required upgrade for existing packagesEnabled
Packages that this package will upgradeGPO
None
Packages in the current GPO that will upgrade this packageNone

Categories
None

Transforms
None
Windows Settings
Scripts
Startup
For this GPO, Script order: Not configured
NameParameters
\\grkalfs01\netconfigfiles\Microsoft\Setups\QuickAssist\copyquickassist.bat
\\grkalfs01\netconfigfiles\Microsoft\Setups\DeleteOneDrive.bat
\\grkalfs01\netconfigfiles\Microsoft\Setups\MSWIN101607\OneDriveRemove.bat
\\grkalfs01\netconfigfiles\Microsoft\Setups\spellcheck\Microsoft_spellcheck.bat
\\grkalfs01\netconfigfiles\Microsoft\Setups\yubicoauth.bat
\\grkalfs01\netconfigfiles\Microsoft\Hosts_file\CopyHostFile_MS_ASD.bat
\\grkalfs01.emea.tpg.ads\netconfigfiles\GlobalSettings\Landesk\Landesk_scan_v2.bat
\\grkalfs01\netconfigfiles\Microsoft\Setups\MSWIN101607\UninstallWin10Apps.ps1
Security Settings
Account Policies/Account Lockout Policy
PolicySetting
Account lockout duration0 minutes
Account lockout threshold6 invalid logon attempts
Reset account lockout counter after15 minutes
File System
%ProgramFiles% (x86)\Avaya
Configure this file or folder then: Propagate inheritable permissions to all subfolders and files
Owner
Permissions
TypeNamePermissionApply To
AllowAPPLICATION PACKAGE AUTHORITY\ALL APPLICATION PACKAGESRead and ExecuteThis folder, subfolders and files
AllowCREATOR OWNERFull ControlSubfolders and files only
AllowNT AUTHORITY\SYSTEMFull ControlThis folder, subfolders and files
AllowBUILTIN\AdministratorsFull ControlThis folder, subfolders and files
AllowBUILTIN\UsersModifyThis folder, subfolders and files
Allow inheritable permissions from the parent to propagate to this object and all child objectsDisabled
Auditing
No auditing specified
Public Key Policies/Trusted Root Certification Authorities
Certificates
Issued ToIssued ByExpiration DateIntended Purposes
WebTitan CloudWebTitan Cloud4-6-2028 16:16:43<All>

For additional information about individual settings, launch the Local Group Policy Object Editor.
Application Control Policies
Appx Rules
PolicySetting
Enforce rules of this typeTrue

No rules of type 'Appx Rules' are defined.
Dll Rules
No rules of type 'Dll Rules' are defined.
Executable Rules
PolicySetting
Enforce rules of this typeFalse

ActionUserNameRule TypeExceptions
DenyEMEA\GR-G-ORG-USERS Microsoft ALL T1 AgentsMICROSOFT OFFICE 2016, from O=MICROSOFT CORPORATION, L=REDMOND, S=WASHINGTON, C=USPublisherNo
DenyEMEA\GR-G-ORG-USERS Microsoft ALL T1 Agents%PROGRAMFILES%\Microsoft Office\*PathNo
AllowEveryone(Default Rule) All files located in the Program Files folderPathNo
AllowEveryone(Default Rule) All files located in the Windows folderPathNo
AllowBUILTIN\Administrators(Default Rule) All filesPathNo
Windows Installer Rules
PolicySetting
Enforce rules of this typeFalse

No rules of type 'Windows Installer Rules' are defined.
Script Rules
PolicySetting
Enforce rules of this typeFalse

No rules of type 'Script Rules' are defined.
Administrative Templates
Policy definitions (ADMX files) retrieved from the central store.
System/User Profiles
PolicySettingComment
Delete cached copies of roaming profilesEnabled
Delete user profiles older than a specified number of days on system restartEnabled
Delete user profiles older than (days)30
PolicySettingComment
Do not log users on with temporary profilesEnabled
Windows Components/Windows Update/Manage updates offered from Windows Server Update Service
PolicySettingComment
Enable client-side targetingEnabled
Target group name for this computerMicrosoft
Preferences
Control Panel Settings
Local Users and Groups
Group (Name: Users (built-in))
Users (built-in) (Order: 1)
Local Group
ActionUpdate
Properties
Group nameUsers (built-in)
Delete all member usersDisabled
Delete all member groupsEnabled
Add members
EMEA\GR-G-ORG-USERS MS-OutlookCom CCMS-1-5-21-513466819-3096973226-347852806-635711
EMEA\GR-G-ORG-USERS MS-OutlookCom ACMS-1-5-21-513466819-3096973226-347852806-635712
EMEA\GR-G-ORG-USERS MS-OutlookCom SupervisorsS-1-5-21-513466819-3096973226-347852806-635713
EMEA\GR-G-ORG-USERS MS-OutlookCom AdminS-1-5-21-513466819-3096973226-347852806-635714
EMEA\GR-G-ORG-USERS MS-OutlookCom QAS-1-5-21-513466819-3096973226-347852806-635715
EMEA\GR-G-ORG-USERS MS-OutlookCom AgentsS-1-5-21-513466819-3096973226-347852806-635716
EMEA\GR-G-ORG-Remote Admin UsersS-1-5-21-513466819-3096973226-347852806-613115
tpadmin
EMEA\GR-G-ORG-USERS MICROSOFT AD AGENTSS-1-5-21-513466819-3096973226-347852806-356203
Common
Options
Stop processing items on this extension if an error occurs on this itemNo
Remove this item when it is no longer appliedNo
Apply once and do not reapplyNo
Group (Name: Administrators (built-in))
Administrators (built-in) (Order: 2)
Local Group
ActionUpdate
Properties
Group nameAdministrators (built-in)
Delete all member usersDisabled
Delete all member groupsEnabled
Add members
EMEA\GR-G-ORG-Remote Admin UsersS-1-5-21-513466819-3096973226-347852806-613115
Common
Options
Stop processing items on this extension if an error occurs on this itemNo
Remove this item when it is no longer appliedNo
Apply once and do not reapplyNo
Scheduled Tasks
Scheduled Task (At least Windows 7) (Name: InstallVisioVWR)
InstallVisioVWR (Order: 1)
General
ActionCreate
Task
Name InstallVisioVWR
Author EMEA\tentolouris.5
Description
Run only when user is logged on
GroupId NT AUTHORITY\SYSTEM
Run with highest privileges HighestAvailable
Hidden Yes
Configure for 1.3
Enabled Yes
Triggers
1. At task creation/modification
Activate 16-6-2020 12:44:32Synchronize across time zones No
Enabled Yes
Actions
1. Start a program
Program/script \\kalfs1.tphellas.legacy\netconfigfiles\Microsoft\Setups\visiovwrinstall.bat
Settings
Stop if the computer ceases to be idle Yes
Restart if the idle state resumes No
Start the task only if the computer is on AC power No
Stop if the computer switches to battery power Yes
Allow task to be run on demand Yes
Stop task if it runs longer than 8 hours
If the running task does not end when requested, force it to stop Yes
If the task is already running, then the following rule applies StopExisting
Common
Options
Stop processing items on this extension if an error occurs on this itemNo
Remove this item when it is no longer appliedNo
Apply once and do not reapplyYes
Scheduled Task (At least Windows 7) (Name: Perform Updates)
Perform Updates (Order: 2)
General
ActionCreate
Task
Name Perform Updates
Author EMEA\tentolouris.5
Description
Run only when user is logged on
GroupId NT AUTHORITY\SYSTEM
Run with highest privileges HighestAvailable
Hidden Yes
Configure for 1.3
Enabled Yes
Triggers
1. At startup
Enabled Yes
Actions
1. Start a program
Program/script \\grkalfs01\netconfigfiles\GlobalSettings\WindowsUpdate-Forced\caller.bat
Settings
Stop if the computer ceases to be idle Yes
Restart if the idle state resumes No
Start the task only if the computer is on AC power No
Stop if the computer switches to battery power Yes
Allow task to be run on demand Yes
Stop task if it runs longer than 8 hours
If the running task does not end when requested, force it to stop Yes
If the task is already running, then the following rule applies StopExisting
Common
Options
Stop processing items on this extension if an error occurs on this itemNo
Remove this item when it is no longer appliedNo
Apply once and do not reapplyNo
Scheduled Task (At least Windows 7) (Name: Uninstall PAPopup)
Uninstall PAPopup (Order: 3)
General
ActionCreate
Task
Name Uninstall PAPopup
Author EMEA\tentolouris.5
Description
Run only when user is logged on
GroupId NT AUTHORITY\SYSTEM
Run with highest privileges HighestAvailable
Hidden Yes
Configure for 1.3
Enabled Yes
Triggers
1. One time
Activate 22-3-2021 12:45:22Synchronize across time zones No
Expire 31-3-2021 10:45:18Synchronize across time zones No
Enabled Yes
Actions
1. Start a program
Program/script MsiExec.exe
Arguments /QN /NORESTART /X{942FF230-40D4-4105-951C-3612BA1DB948}
Settings
Stop if the computer ceases to be idle Yes
Restart if the idle state resumes No
Start the task only if the computer is on AC power No
Stop if the computer switches to battery power Yes
Allow task to be run on demand Yes
Run task as soon as possible after a scheduled start is missed Yes
Stop task if it runs longer than 8 hours
If the running task does not end when requested, force it to stop Yes
If the task is already running, then the following rule applies StopExisting
Common
Options
Stop processing items on this extension if an error occurs on this itemNo
Remove this item when it is no longer appliedNo
Apply once and do not reapplyNo
Scheduled Task (At least Windows 7) (Name: Host_File_Copyv2)
Host_File_Copyv2 (Order: 4)
General
ActionUpdate
Task
Name Host_File_Copyv2
Author EMEA\tentolouris.5
Description
Run only when user is logged on
GroupId NT AUTHORITY\SYSTEM
Run with highest privileges HighestAvailable
Hidden No
Configure for 1.3
Enabled Yes
Triggers
1. Run at user logon
Delay task for 30 seconds
Repeat task every 5 minutes for a duration of 1 hour
Stop all running tasks at end of repetition duration No
Activate 6-4-2020 14:33:02Synchronize across time zones No
Enabled Yes
Actions
1. Start a program
Program/script \\grkalfs01\netconfigfiles\Microsoft\Hosts_file\CopyHostFile_MS_ASD.bat
Settings
Stop if the computer ceases to be idle Yes
Restart if the idle state resumes No
Start the task only if the computer is on AC power No
Stop if the computer switches to battery power Yes
Allow task to be run on demand Yes
Stop task if it runs longer than 3 days
If the running task does not end when requested, force it to stop Yes
If the task is already running, then the following rule applies IgnoreNew
Common
Options
Stop processing items on this extension if an error occurs on this itemNo
Remove this item when it is no longer appliedNo
Apply once and do not reapplyNo
Scheduled Task (At least Windows 7) (Name: Office StartUP update)
Office StartUP update (Order: 5)
General
ActionUpdate
Task
Name Office StartUP update
Author EMEA\tentolouris.5-adm
Description
Run only when user is logged on
GroupId NT AUTHORITY\SYSTEM
Run with highest privileges HighestAvailable
Hidden No
Configure for 1.2
Enabled Yes
Triggers
1. At startup
Enabled Yes
Actions
1. Start a program
Program/script C:\Windows\System32\cmd.exe
Arguments /c if exist "C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeC2RClient.exe" ( "C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeC2RClient.exe" /update user displaylevel=false forceappshutdown=true )
Settings
Stop if the computer ceases to be idle No
Restart if the idle state resumes No
Start the task only if the computer is on AC power No
Stop if the computer switches to battery power No
Allow task to be run on demand No
Stop task if it runs longer than Immediately
If the running task does not end when requested, force it to stop No
If the task is already running, then the following rule applies IgnoreNew
Common
Options
Stop processing items on this extension if an error occurs on this itemNo
Remove this item when it is no longer appliedNo
Apply once and do not reapplyNo
User Configuration (Enabled)
No settings defined.