Group Policy Management
body { font-size:68%;font-family:MS Shell Dlg; margin:0px,0px,0px,0px; border: 1px solid #666666; background:#F6F6F6; width:100%; word-break:normal; word-wrap:break-word; } .head { font-weight:bold; font-size:160%; font-family:MS Shell Dlg; width:100%; color:#6587DC; background:#E3EAF9; border:1px solid #5582D2; padding-left:8px; height:24px; } .path { margin-left: 10px; margin-top: 10px; margin-bottom:5px;width:100%; } .info { padding-left:10px;width:100%; } table { font-size:100%; width:100%; border:1px solid #999999; } th { border-bottom:1px solid #999999; text-align:left; padding-left:10px; height:24px; } td { background:#FFFFFF; padding-left:10px; padding-bottom:10px; padding-top:10px; } .btn { width:100%; text-align:right; margin-top:16px; } .hdr { font-weight:bold; border:1px solid #999999; text-align:left; padding-top: 4px; padding-left:10px; height:24px; margin-bottom:-1px; width:100%; } .bdy { width:100%; height:182px; display:block; overflow:scroll; z-index:2; background:#FFFFFF; padding-left:10px; padding-bottom:10px; padding-top:10px; border:1px solid #999999; } button { width:6.9em; height:2.1em; font-size:100%; font-family:MS Shell Dlg; margin-right:15px; } @media print { .bdy { display:block; overflow:visible; } button { display:none; } .head { color:#000000; background:#FFFFFF; border:1px solid #000000; } }
Setting Path:
Explanation
No explanation is available for this setting.
Supported On:
Not available
MATMT-PO-WIN-U-Browser_Chrome_Bookmark_Wise
Data collected on: 2-9-2025 12:45:18
General
Details
Domainemea.tpg.ads
OwnerEMEA\abdessalem.13-adm
Created20-2-2025 14:21:36
Modified15-5-2025 15:32:46
User Revisions90 (AD), 90 (SYSVOL)
Computer Revisions10 (AD), 10 (SYSVOL)
Unique ID{6073bce2-9194-41d7-a397-3a6e28c33cce}
GPO StatusComputer settings disabled
Links
LocationEnforcedLink StatusPath
MAYesEnabledemea.tpg.ads/MA

This list only includes links in the domain of the GPO.
Security Filtering
The settings in this GPO can only apply to the following groups, users, and computers:
Name
EMEA\MATMT-L-SEC-GPO-Browser_Chrome_Bookmark_Wise
Delegation
These groups and users have the specified permission for this GPO
NameAllowed PermissionsInherited
EMEA\abdessalem.13-admEdit settings, delete, modify securityNo
EMEA\Domain AdminsEdit settings, delete, modify securityNo
EMEA\MA-G-ORG-OU AdminsEdit settings, delete, modify securityNo
EMEA\MA-L-SEC-Delegation Modify Group Policy Settings AccessEdit settings, delete, modify securityNo
EMEA\MATMT-L-SEC-GPO-Browser_Chrome_Bookmark_WiseRead (from Security Filtering)No
NT AUTHORITY\Authenticated UsersReadNo
NT AUTHORITY\ENTERPRISE DOMAIN CONTROLLERSReadNo
NT AUTHORITY\SYSTEMEdit settings, delete, modify securityNo
ROOT\Enterprise AdminsEdit settings, delete, modify securityNo
Computer Configuration (Disabled)
No settings defined.
User Configuration (Enabled)
Policies
Windows Settings
Scripts
Logon
For this GPO, Script order: Not configured
NameParameters
Download_folder_permission.ps1powershell.exe -ExecutionPolicy Bypass -File "Download_folder_permission.ps1"
Administrative Templates
Policy definitions (ADMX files) retrieved from the central store.
Google/Google Chrome
PolicySettingComment
Enable Bookmark BarEnabled
Enable or disable bookmark editingEnabled
Import bookmarks from default browser on first runEnabled
Managed BookmarksEnabled
Managed Bookmarks[ { "name": "Expand All", "url": "javascript:document.querySelectorAll('.expand-control, button[aria-labelledby^=\"expand-title\"]').forEach(e => e.click());" } ]
PolicySettingComment
Set download directoryEnabled
Set download directory%USERPROFILE%\Downloads
Google/Google Chrome - Default Settings (users can override)
PolicySettingComment
Enable Bookmark BarEnabled
Google/Google Chrome/Content settings
PolicySettingComment
Allow JavaScript on these sitesEnabled
Allow JavaScript on these sites
[*.]atlassian.net
[*.]atlassian.com
PolicySettingComment
Default JavaScript settingEnabled
Default JavaScript settingAllow all sites to run JavaScript
Google/Google Chrome/Deprecated policies
PolicySettingComment
Disable Developer ToolsEnabled
Enable JavaScriptEnabled
Microsoft Edge
PolicySettingComment
Configure the list of commands for which to disable keyboard shortcutsEnabled
Configure the list of commands for which to disable keyboard shortcuts{"disabled": ["save_page"]}
PolicySettingComment
Show Hubs SidebarDisabled
Start Menu and Taskbar
PolicySettingComment
Remove Downloads link from Start MenuDisabled
Windows Components/File Explorer
PolicySettingComment
Prevent access to drives from My ComputerEnabled
Pick one of the following combinationsRestrict A and B drives only
Windows Components/Internet Explorer/Toolbars
PolicySettingComment
Turn off Developer ToolsEnabled
Preferences
Windows Settings
Files
File (Target Path: C:\Windows\Endpoint\Scripts\delete_now.ps1)
delete_now.ps1 (Order: 1)
General
ActionUpdate
Properties
Source file(s)\\emea.tpg.ads\sysvol\emea.tpg.ads\Policies\{6073BCE2-9194-41D7-A397-3A6E28C33CCE}\User\Scripts\Logon\delete now\delete_now.ps1
Destination fileC:\Windows\Endpoint\Scripts\delete_now.ps1
Suppress errors on individual file actionsDisabled
Attributes
Read-onlyDisabled
HiddenDisabled
ArchiveEnabled
Common
Options
Stop processing items on this extension if an error occurs on this itemNo
Run in logged-on user's security context (user policy option)No
Remove this item when it is no longer appliedNo
Apply once and do not reapplyNo
Folders
Folder (Path: C:\Windows\Endpoint)
Endpoint (Order: 1)
General
ActionCreate
Attributes
PathC:\Windows\Endpoint
Read-onlyDisabled
HiddenDisabled
ArchiveEnabled
Common
Options
Stop processing items on this extension if an error occurs on this itemNo
Run in logged-on user's security context (user policy option)No
Remove this item when it is no longer appliedNo
Apply once and do not reapplyNo
Folder (Path: C:\Windows\Endpoint\Scripts)
Scripts (Order: 2)
General
ActionCreate
Attributes
PathC:\Windows\Endpoint\Scripts
Read-onlyDisabled
HiddenDisabled
ArchiveEnabled
Common
Options
Stop processing items on this extension if an error occurs on this itemNo
Run in logged-on user's security context (user policy option)No
Remove this item when it is no longer appliedNo
Apply once and do not reapplyNo
Registry
DeveloperToolsAvailability (Order: 1)
General
ActionUpdate
Properties
HiveHKEY_LOCAL_MACHINE
Key pathSOFTWARE\Policies\Microsoft\Edge
Value nameDeveloperToolsAvailability
Value typeREG_DWORD
Value data0x1 (1)
Common
Options
Stop processing items on this extension if an error occurs on this itemNo
Run in logged-on user's security context (user policy option)No
Remove this item when it is no longer appliedNo
Apply once and do not reapplyNo
DisableDeveloperTools (Order: 2)
General
ActionUpdate
Properties
HiveHKEY_LOCAL_MACHINE
Key pathSOFTWARE\Policies\\Mozilla\Firefox
Value nameDisableDeveloperTools
Value typeREG_DWORD
Value data0x1 (1)
Common
Options
Stop processing items on this extension if an error occurs on this itemNo
Run in logged-on user's security context (user policy option)No
Remove this item when it is no longer appliedNo
Apply once and do not reapplyNo
DownloadRestrictions (Order: 3)
General
ActionUpdate
Properties
HiveHKEY_LOCAL_MACHINE
Key pathHKEY_LOCAL_MACHINE\SOFTWARE\Policies\Google\Chrome\
Value nameDownloadRestrictions
Value typeREG_DWORD
Value data0x2 (2)
Common
Options
Stop processing items on this extension if an error occurs on this itemNo
Run in logged-on user's security context (user policy option)No
Remove this item when it is no longer appliedNo
Apply once and do not reapplyNo
DownloadRestrictions (Order: 4)
General
ActionUpdate
Properties
HiveHKEY_LOCAL_MACHINE
Key pathHKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Edge
Value nameDownloadRestrictions
Value typeREG_DWORD
Value data0x2 (2)
Common
Options
Stop processing items on this extension if an error occurs on this itemNo
Run in logged-on user's security context (user policy option)No
Remove this item when it is no longer appliedNo
Apply once and do not reapplyNo
Control Panel Settings
Scheduled Tasks
Scheduled Task (At least Windows 7) (Name: Delete Files at Logoff)
Delete Files at Logoff (Order: 1)
General
ActionCreate
Task
Name Delete Files at Logoff
Author EMEA\abdessalem.13-adm
Description
Run only when user is logged on InteractiveToken
UserId \SYSTEM
Run with highest privileges LeastPrivilege
Hidden No
Configure for 1.2
Enabled Yes
Triggers
1. Daily
Repeat task every 1 hour for a duration of 1 day
Stop all running tasks at end of repetition duration No
Activate 14-5-2025 22:00:00Synchronize across time zones No
Enabled Yes
Recur every 1 days
Actions
1. Start a program
Program/script C:\windows\system32\WindowsPowerShell\v1.0\powershell.exe
Arguments -ExecutionPolicy Bypass -File C:\Windows\Endpoint\Scripts\delete_now.ps1
Settings
Start the task only if the computer is idle for 5 minutes
Wait for idle for 1 hour
Stop if the computer ceases to be idle No
Restart if the idle state resumes No
Start the task only if the computer is on AC power Yes
Stop if the computer switches to battery power No
Allow task to be run on demand Yes
Stop task if it runs longer than 3 days
If the running task does not end when requested, force it to stop Yes
If the task is already running, then the following rule applies IgnoreNew
Common
Options
Stop processing items on this extension if an error occurs on this itemNo
Run in logged-on user's security context (user policy option)No
Remove this item when it is no longer appliedNo
Apply once and do not reapplyNo