| IT-PO-WIN-U-Powershell Block | |
| Data collected on: 2-9-2025 09:30:04 | |
| Domain | emea.tpg.ads |
| Owner | S-1-5-21-513466819-3096973226-347852806-255910 |
| Created | 23-7-2019 11:24:12 |
| Modified | 15-2-2024 18:22:58 |
| User Revisions | 15 (AD), 15 (SYSVOL) |
| Computer Revisions | 0 (AD), 0 (SYSVOL) |
| Unique ID | {0c76b427-2e71-458f-8589-ddd41c68ec83} |
| GPO Status | Computer settings disabled |
| Location | Enforced | Link Status | Path |
|---|---|---|---|
| Agents | No | Enabled | emea.tpg.ads/IT/Agents |
| Staff | No | Enabled | emea.tpg.ads/IT/Staff |
| Name |
|---|
| EMEA\IT-L-SEC-Powershell Block |
| Name | Allowed Permissions | Inherited |
|---|---|---|
| EMEA\Domain Admins | Edit settings, delete, modify security | No |
| EMEA\IT-G-ORG-OU Admins | Edit settings, delete, modify security | No |
| EMEA\IT-L-SEC-Delegation Full Access | Edit settings, delete, modify security | No |
| EMEA\IT-L-SEC-Powershell Block | Read (from Security Filtering) | No |
| NT AUTHORITY\Authenticated Users | Read | No |
| NT AUTHORITY\ENTERPRISE DOMAIN CONTROLLERS | Read | No |
| NT AUTHORITY\SYSTEM | Edit settings, delete, modify security | No |
| ROOT\Enterprise Admins | Edit settings, delete, modify security | No |
| Enforcement | ||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||
| ||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||
| Designated File Types | ||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||
| ||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||
| Trusted Publishers | ||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||
|
| Policy | Setting |
|---|---|
| Default Security Level | Unrestricted |
| PowerShell.EXE (6.3.9600.17415); POWERSHELL; Windows PowerShell; Microsoft® Windows® Operating System; Microsoft Corporation | ||||||
| ||||||
| powershell_ise.EXE (6.3.9600.17399); POWERSHELL_ISE; Windows PowerShell ISE; Microsoft® Windows® Operating System; Microsoft Corporation | ||||||
|
| %HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRoot% | ||||||
| ||||||
| %HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ProgramFilesDir% | ||||||
| ||||||
| C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe | ||||||
| ||||||
| C:\Windows\System32\WindowsPowerShell\v1.0\powershell_ise.exe | ||||||
|
| Policy | Setting | Comment | |||||||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| Don't run specified Windows applications | Enabled | ||||||||||||||||||||
| |||||||||||||||||||||
| Policy | Setting | Comment | |||||||||||||||||||
| Restrict these programs from being launched from Help | Enabled | ||||||||||||||||||||
| |||||||||||||||||||||