Group Policy Management
body { font-size:68%;font-family:MS Shell Dlg; margin:0px,0px,0px,0px; border: 1px solid #666666; background:#F6F6F6; width:100%; word-break:normal; word-wrap:break-word; } .head { font-weight:bold; font-size:160%; font-family:MS Shell Dlg; width:100%; color:#6587DC; background:#E3EAF9; border:1px solid #5582D2; padding-left:8px; height:24px; } .path { margin-left: 10px; margin-top: 10px; margin-bottom:5px;width:100%; } .info { padding-left:10px;width:100%; } table { font-size:100%; width:100%; border:1px solid #999999; } th { border-bottom:1px solid #999999; text-align:left; padding-left:10px; height:24px; } td { background:#FFFFFF; padding-left:10px; padding-bottom:10px; padding-top:10px; } .btn { width:100%; text-align:right; margin-top:16px; } .hdr { font-weight:bold; border:1px solid #999999; text-align:left; padding-top: 4px; padding-left:10px; height:24px; margin-bottom:-1px; width:100%; } .bdy { width:100%; height:182px; display:block; overflow:scroll; z-index:2; background:#FFFFFF; padding-left:10px; padding-bottom:10px; padding-top:10px; border:1px solid #999999; } button { width:6.9em; height:2.1em; font-size:100%; font-family:MS Shell Dlg; margin-right:15px; } @media print { .bdy { display:block; overflow:visible; } button { display:none; } .head { color:#000000; background:#FFFFFF; border:1px solid #000000; } }
Setting Path:
Explanation
No explanation is available for this setting.
Supported On:
Not available
KE-PO-WIN-U-Global Production User Settings
Data collected on: 2-9-2025 10:39:05
General
Details
Domainemea.tpg.ads
OwnerEMEA\tentolouris.5-adm
Created11-8-2022 09:46:42
Modified6-8-2025 12:47:24
User Revisions158 (AD), 158 (SYSVOL)
Computer Revisions12 (AD), 12 (SYSVOL)
Unique ID{8c43b089-df2f-490b-819b-75ca852e23af}
GPO StatusComputer settings disabled
Links
LocationEnforcedLink StatusPath
AgentsNoEnabledemea.tpg.ads/KE/Agents
StaffNoEnabledemea.tpg.ads/KE/Staff

This list only includes links in the domain of the GPO.
Security Filtering
The settings in this GPO can only apply to the following groups, users, and computers:
Name
NT AUTHORITY\Authenticated Users
Delegation
These groups and users have the specified permission for this GPO
NameAllowed PermissionsInherited
EMEA\Domain AdminsEdit settings, delete, modify securityNo
EMEA\KE-G-ORG-OU AdminsEdit settings, delete, modify securityNo
EMEA\tentolouris.5-admEdit settings, delete, modify securityNo
NT AUTHORITY\Authenticated UsersRead (from Security Filtering)No
NT AUTHORITY\ENTERPRISE DOMAIN CONTROLLERSReadNo
NT AUTHORITY\SYSTEMEdit settings, delete, modify securityNo
ROOT\Enterprise AdminsEdit settings, delete, modify securityNo
Computer Configuration (Disabled)
No settings defined.
User Configuration (Enabled)
Policies
Windows Settings
Security Settings
Software Restriction Policies
Enforcement
PolicySetting
Apply Software Restriction Policies to the followingAll software files except libraries (such as DLLs)
Apply Software Restriction Policies to the following usersAll users
When applying Software Restriction PoliciesIgnore certificate rules
Designated File Types
File ExtensionFile Type
ADEADE File
ADPADP File
BASBAS File
BATWindows Batch File
CHMCompiled HTML Help file
CMDWindows Command Script
COMMS-DOS Application
CPLControl panel item
CRTSecurity Certificate
EXEApplication
HLPHelp file
HTAHTML Application
INFSetup Information
INSINS File
ISPISP File
LNKShortcut
MDBMDB File
MDEMDE File
MSCMicrosoft Common Console Document
MSIWindows Installer Package
MSPWindows Installer Patch
MSTMST File
OCXActiveX control
PCDPCD File
PIFShortcut to MS-DOS Program
REGRegistration Entries
SCRScreen saver
SHSSHS File
URLInternet Shortcut
VBVisual Basic Source File
WSCWindows Script Component
Trusted Publishers
Trusted publisher managementAllow all administrators and users to manage user's own Trusted Publishers
Certificate verificationNone
Software Restriction Policies/Security Levels
PolicySetting
Default Security LevelUnrestricted
Software Restriction Policies/Additional Rules
Path Rules
C:\Windows\HelpPane.exe
Security LevelDisallowed
Description
Date last modified2-9-2022 08:11:55
C:\Windows\System32\cmd.exe
Security LevelDisallowed
Description
Date last modified2-9-2022 12:04:21
C:\Windows\System32\conhost.exe
Security LevelDisallowed
Description
Date last modified2-9-2022 12:04:58
C:\Windows\System32\help.exe
Security LevelDisallowed
Description
Date last modified2-9-2022 08:12:07
C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe
Security LevelDisallowed
Description
Date last modified2-9-2022 12:05:08
C:\Windows\System32\WindowsPowerShell\v1.0\powershell_ise.exe
Security LevelDisallowed
Description
Date last modified2-9-2022 12:05:22
Administrative Templates
Policy definitions (ADMX files) retrieved from the central store.
Control Panel
PolicySettingComment
Always open All Control Panel Items when opening Control PanelEnabled
Settings Page VisibilityEnabled
Settings Page Visibility:showonly:display;regionlanguage;mousetouchpad;taskbar;colors;defaultapps;dateandtime;easeofaccess-highcontrast;sound;devices-touchpad;about;easeofaccess-audio;nightlight;windowsupdate
PolicySettingComment
Show only specified Control Panel itemsEnabled
List of allowed Control Panel items
Microsoft.RegionAndLanguage
Microsoft.Sound
Control Panel/Add or Remove Programs
PolicySettingComment
Hide Add New Programs pageEnabled
Hide Add/Remove Windows Components pageEnabled
Hide Change or Remove Programs pageEnabled
Hide the "Add a program from CD-ROM or floppy disk" optionEnabled
Hide the "Add programs from Microsoft" optionEnabled
Hide the "Add programs from your network" optionEnabled
Hide the Set Program Access and Defaults pageEnabled
Remove Add or Remove ProgramsEnabled
Remove Support InformationEnabled
Control Panel/Personalization
PolicySettingComment
Force specific screen saverEnabled
Screen saver executable name\\grkalfs01\netconfigfiles\Kenya\Settings\Screensaver\MyTPSlideshow.scr
PolicySettingComment
Prevent changing color and appearanceEnabled
Prevent changing desktop iconsEnabled
Prevent changing mouse pointersEnabled
Prevent changing soundsEnabled
Prevent changing visual style for windows and buttonsEnabled
Prohibit selection of visual style font sizeEnabled
Control Panel/Printers
PolicySettingComment
Browse a common web site to find printersDisabled
Browse the network to find printersDisabled
Prevent addition of printersEnabled
Prevent deletion of printersEnabled
Control Panel/Programs
PolicySettingComment
Hide "Get Programs" pageEnabled
Hide "Installed Updates" pageEnabled
Hide "Programs and Features" pageEnabled
Hide "Set Program Access and Computer Defaults" pageEnabled
Hide "Windows Features"Enabled
Hide "Windows Marketplace"Enabled
Hide the Programs Control PanelEnabled
Desktop/Desktop
PolicySettingComment
Desktop WallpaperEnabled
Wallpaper Name:C:\ProgramData\TPBackground\Background.jpg
Example: Using a local path: C:\windows\web\wallpaper\home.jpg
Example: Using a UNC path: \\Server\Share\Corp.jpg
Wallpaper Style:Stretch
PolicySettingComment
Enable Active DesktopEnabled
Allows HTML and JPEG Wallpaper
PolicySettingComment
Prohibit adding itemsEnabled
Prohibit changesEnabled
Google/Google Chrome
PolicySettingComment
Ads setting for sites with intrusive adsEnabled
Ads setting for sites with intrusive adsDo not allow ads on sites with intrusive ads
PolicySettingComment
Allow Dinosaur Easter Egg GameDisabled
Allow user feedbackDisabled
Block access to a list of URLsEnabled
Block access to a list of URLs
file:///C:/
file:///D:/
chrome://flags
chrome://System
chrome://Net-Internals
chrome://Net-export
chrome://Inspect
chrome://Policy
data:*
PolicySettingComment
Browser sign in settingsEnabled
Browser sign in settingsDisable browser sign-in
PolicySettingComment
Control where Developer Tools can be usedEnabled
Control where Developer Tools can be usedDisallow usage of the Developer Tools
PolicySettingComment
Disable synchronization of data with GoogleEnabled
Enable add person in user managerDisabled
Enable AutoFill for addressesDisabled
Enable AutoFill for credit cardsDisabled
Google/Google Chrome/Extensions
PolicySettingComment
Configure extension installation allow listEnabled
Extension IDs to exempt from the blocklist
iicapmagmhahddefgokbabbgieiogjop
unseen/iicapmagmhahddefgokbabbgieiogjop
aabcgdmkeabbnleenpncegpcngjpnjkc
easy-auto-refresh/aabcgdmkeabbnleenpncegpcngjpnjkc
PolicySettingComment
Configure extension installation blocklistEnabled
Extension IDs the user should be prevented from installing (or * for all)
*
Google/Google Chrome/Google Cast
PolicySettingComment
Allow Google Cast to connect to Cast devices on all IP addresses.Disabled
Enable Google CastDisabled
Show the Google Cast toolbar iconDisabled
Google/Google Chrome/Printing
PolicySettingComment
Enable Google Cloud Print proxyDisabled
Google/Google Chrome/Remote access
PolicySettingComment
Restrict the UDP port range used by the remote access hostEnabled
Restrict the UDP port range used by the remote access host
Google/Google Chrome/Removed policies
PolicySettingComment
Control how Chrome Cleanup reports data to GoogleDisabled
Enable Chrome Cleanup on WindowsDisabled
Enable submission of documents to Google Cloud PrintDisabled
Microsoft Edge
PolicySettingComment
Allow Google Cast to connect to Cast devices on all IP addressesDisabled
Allow user feedbackDisabled
Block access to a list of URLsEnabled
Block access to a list of URLs
edge://System
edge://Net-Internals
edge://Net-export
edge://Inspect
edge://flags
edge://Policy
file:///C:/
file:///D:/
PolicySettingComment
Browser sign-in settingsEnabled
Browser sign-in settingsDisable browser sign-in
PolicySettingComment
Control where developer tools can be usedEnabled
Control where developer tools can be usedDon't allow using the developer tools
PolicySettingComment
Disable synchronization of data using Microsoft sync servicesEnabled
Enable the Collections featureDisabled
Hide the First-run experience and splash screenEnabled
Microsoft Edge/Cast
PolicySettingComment
Enable Google CastDisabled
Microsoft Edge/Extensions
PolicySettingComment
Allow specific extensions to be installedEnabled
Extension IDs to exempt from the block list
njjljiblognghfjfpcdpdbpbfcmhgafg
PolicySettingComment
Control which extensions cannot be installedEnabled
Extension IDs the user should be prevented from installing (or * for all)
*
Microsoft Edge/Printing
PolicySettingComment
Enable printingDisabled
Mozilla/Firefox
PolicySettingComment
Block about:configEnabled
Block about:profilesEnabled
Disable Feedback CommandsEnabled
Disable Firefox AccountsEnabled
Disable Firefox ScreenshotsEnabled
Disable Firefox StudiesEnabled
Disable Master Password CreationEnabled
Disable PocketEnabled
Disable Profile ImportEnabled
Disable Profile RefreshEnabled
Disable Set Desktop BackgroundEnabled
Disable TelemetryEnabled
Disable the default browser agentEnabled
Override the first run pageEnabled
URL:https://sebra.ccms.teleperformance.com/
PolicySettingComment
Override the upgrade pageEnabled
URL:https://sebra.ccms.teleperformance.com/
Mozilla/Firefox/Certificates
PolicySettingComment
Import Enterprise RootsEnabled
Network/Network Connections
PolicySettingComment
Ability to change properties of an all user remote access connectionDisabled
Ability to delete all user remote access connectionsDisabled
Ability to rename all user remote access connectionsDisabled
Ability to rename LAN connectionsDisabled
Ability to rename LAN connections or remote access connections available to all usersDisabled
Prohibit access to properties of a LAN connectionEnabled
Prohibit access to properties of components of a LAN connectionEnabled
Prohibit access to properties of components of a remote access connectionEnabled
Prohibit access to the Advanced Settings item on the Advanced menuEnabled
Prohibit access to the New Connection WizardEnabled
Prohibit access to the Remote Access Preferences item on the Advanced menuEnabled
Prohibit adding and removing components for a LAN or remote access connectionEnabled
Prohibit changing properties of a private remote access connectionEnabled
Prohibit deletion of remote access connectionsEnabled
Prohibit Enabling/Disabling components of a LAN connectionEnabled
Prohibit renaming private remote access connectionsEnabled
Prohibit TCP/IP advanced configurationEnabled
Network/Offline Files
PolicySettingComment
Turn off reminder balloonsEnabled
Network/Windows Connect Now
PolicySettingComment
Prohibit access of the Windows Connect Now wizardsEnabled
Start Menu and Taskbar
PolicySettingComment
Remove Run menu from Start MenuEnabled
System
PolicySettingComment
Prevent access to registry editing toolsEnabled
Disable regedit from running silently?Yes
PolicySettingComment
Prevent access to the command promptEnabled
Disable the command prompt script processing also?No
Preferences
Windows Settings
Registry
ShowSecondsInSystemClock (Order: 1)
General
ActionUpdate
Properties
HiveHKEY_CURRENT_USER
Key pathSoftware\Microsoft\Windows\CurrentVersion\Explorer\Advanced
Value nameShowSecondsInSystemClock
Value typeREG_DWORD
Value data0x1 (1)
Common
Options
Stop processing items on this extension if an error occurs on this itemNo
Run in logged-on user's security context (user policy option)No
Remove this item when it is no longer appliedNo
Apply once and do not reapplyNo