Group Policy Management
body { font-size:68%;font-family:MS Shell Dlg; margin:0px,0px,0px,0px; border: 1px solid #666666; background:#F6F6F6; width:100%; word-break:normal; word-wrap:break-word; } .head { font-weight:bold; font-size:160%; font-family:MS Shell Dlg; width:100%; color:#6587DC; background:#E3EAF9; border:1px solid #5582D2; padding-left:8px; height:24px; } .path { margin-left: 10px; margin-top: 10px; margin-bottom:5px;width:100%; } .info { padding-left:10px;width:100%; } table { font-size:100%; width:100%; border:1px solid #999999; } th { border-bottom:1px solid #999999; text-align:left; padding-left:10px; height:24px; } td { background:#FFFFFF; padding-left:10px; padding-bottom:10px; padding-top:10px; } .btn { width:100%; text-align:right; margin-top:16px; } .hdr { font-weight:bold; border:1px solid #999999; text-align:left; padding-top: 4px; padding-left:10px; height:24px; margin-bottom:-1px; width:100%; } .bdy { width:100%; height:182px; display:block; overflow:scroll; z-index:2; background:#FFFFFF; padding-left:10px; padding-bottom:10px; padding-top:10px; border:1px solid #999999; } button { width:6.9em; height:2.1em; font-size:100%; font-family:MS Shell Dlg; margin-right:15px; } @media print { .bdy { display:block; overflow:visible; } button { display:none; } .head { color:#000000; background:#FFFFFF; border:1px solid #000000; } }
Setting Path:
Explanation
No explanation is available for this setting.
Supported On:
Not available
NL-PO-WIN-U-GESP with Systray
Data collected on: 2-9-2025 10:16:25
General
Details
Domainemea.tpg.ads
OwnerEMEA\langras.5-adm
Created22-2-2022 19:08:36
Modified31-3-2023 12:26:30
User Revisions97 (AD), 97 (SYSVOL)
Computer Revisions13 (AD), 13 (SYSVOL)
Unique ID{fdf5187d-55eb-4510-a5f5-e11558188fd6}
GPO StatusComputer settings disabled
Links
LocationEnforcedLink StatusPath
None

This list only includes links in the domain of the GPO.
Security Filtering
The settings in this GPO can only apply to the following groups, users, and computers:
Name
EMEA\NL-L-SEC-GESP User System Tray Exception
Delegation
These groups and users have the specified permission for this GPO
NameAllowed PermissionsInherited
EMEA\Domain AdminsEdit settings, delete, modify securityNo
EMEA\langras.5-admEdit settings, delete, modify securityNo
EMEA\NL-L-SEC-Delegation Modify Group Policy Settings AccessEdit settings, delete, modify securityNo
EMEA\NL-L-SEC-GESP User System Tray ExceptionRead (from Security Filtering)No
NT AUTHORITY\Authenticated UsersReadNo
NT AUTHORITY\ENTERPRISE DOMAIN CONTROLLERSReadNo
NT AUTHORITY\SYSTEMEdit settings, delete, modify securityNo
ROOT\Enterprise AdminsEdit settings, delete, modify securityNo
Computer Configuration (Disabled)
Policies
Windows Settings
Security Settings
Registry
CLASSES_ROOT\CLSID\{031E4825-7B94-4dc3-B131-E946B44C8DD5}\ShellFolder
Configure this key then: Propagate inheritable permissions to all subkeys
Owner
Permissions
TypeNamePermissionApply To
AllowBUILTIN\AdministratorsFull controlThis key and subkeys
AllowCREATOR OWNERFull controlSubkeys only
AllowNT AUTHORITY\SYSTEMFull controlThis key and subkeys
AllowBUILTIN\UsersReadThis key and subkeys
AllowAPPLICATION PACKAGE AUTHORITY\ALL APPLICATION PACKAGESReadThis key and subkeys
Allow inheritable permissions from the parent to propagate to this object and all child objectsDisabled
Auditing
No auditing specified
CLASSES_ROOT\CLSID\{323CA680-C24D-4099-B94D-446DD2D7249E}\ShellFolder
Configure this key then: Propagate inheritable permissions to all subkeys
Owner
Permissions
TypeNamePermissionApply To
AllowBUILTIN\AdministratorsFull controlThis key and subkeys
AllowCREATOR OWNERFull controlSubkeys only
AllowNT AUTHORITY\SYSTEMFull controlThis key and subkeys
AllowBUILTIN\UsersReadThis key and subkeys
AllowAPPLICATION PACKAGE AUTHORITY\ALL APPLICATION PACKAGESReadThis key and subkeys
Allow inheritable permissions from the parent to propagate to this object and all child objectsDisabled
Auditing
No auditing specified
Administrative Templates
Policy definitions (ADMX files) retrieved from the central store.
System/Remote Assistance
PolicySettingComment
Configure Solicited Remote AssistanceDisabled
Preferences
Windows Settings
Registry
Attributes (Order: 1)
General
ActionUpdate
Properties
HiveHKEY_CLASSES_ROOT
Key pathCLSID\{323CA680-C24D-4099-B94D-446DD2D7249E}\ShellFolder
Value nameAttributes
Value typeREG_DWORD
Value data0xA9400100 (2839544064)
Common
Options
Stop processing items on this extension if an error occurs on this itemNo
Remove this item when it is no longer appliedNo
Apply once and do not reapplyNo
Attributes (Order: 2)
General
ActionUpdate
Properties
HiveHKEY_LOCAL_MACHINE
Key pathCLSID\{031E4825-7B94-4dc3-B131-E946B44C8DD5}\ShellFolder
Value nameAttributes
Value typeREG_DWORD
Value data0xB090010D (2962227469)
Common
Options
Stop processing items on this extension if an error occurs on this itemNo
Remove this item when it is no longer appliedNo
Apply once and do not reapplyNo
User Configuration (Enabled)
Policies
Windows Settings
Security Settings
Software Restriction Policies
Enforcement
PolicySetting
Apply Software Restriction Policies to the followingAll software files except libraries (such as DLLs)
Apply Software Restriction Policies to the following usersAll users
When applying Software Restriction PoliciesIgnore certificate rules
Designated File Types
File ExtensionFile Type
ADEADE File
ADPADP File
BASBAS File
BATWindows Batch File
CHMCompiled HTML Help file
CMDWindows Command Script
COMMS-DOS Application
CPLControl panel item
CRTSecurity Certificate
EXEApplication
HLPHelp file
HTAHTML Application
INFSetup Information
INSINS File
ISPISP File
LNKShortcut
MDBMDB File
MDEMDE File
MSCMicrosoft Common Console Document
MSIWindows Installer Package
MSPWindows Installer Patch
MSTMST File
OCXActiveX control
PCDPCD File
PIFShortcut to MS-DOS Program
REGRegistration Entries
SCRScreen saver
SHSSHS File
URLInternet Shortcut
VBVisual Basic Source File
WSCWindows Script Component
Trusted Publishers
Trusted publisher managementAllow all administrators and users to manage user's own Trusted Publishers
Certificate verificationNone
Software Restriction Policies/Security Levels
PolicySetting
Default Security LevelUnrestricted
Software Restriction Policies/Additional Rules
Path Rules
%HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRoot%
Security LevelUnrestricted
Description
Date last modified24-2-2022 12:00:21
%HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ProgramFilesDir%
Security LevelUnrestricted
Description
Date last modified24-2-2022 12:00:21
C:\Program Files (x86)\Windows NT\Accessories\wordpad.exe
Security LevelDisallowed
Description
Date last modified28-3-2023 09:53:20
C:\Program Files\Windows NT\Accessories\wordpad.exe
Security LevelDisallowed
Description
Date last modified28-3-2023 09:53:27
C:\Program Files\WindowsApps\Microsoft.MSPaint*
Security LevelDisallowed
Description
Date last modified24-3-2023 15:27:38
c:\Program Files\WindowsApps\Microsoft.MSPaint_2019.729.2301.0_neutral_~_8wekyb3d8bbwe
Security LevelDisallowed
Descriptiondisallow paint, other version
Date last modified14-7-2022 14:18:13
c:\Program Files\WindowsApps\Microsoft.MSPaint_6.1907.29027.0_x64__8wekyb3d8bbwe
Security LevelDisallowed
DescriptionDisallow use of Paint
Date last modified14-7-2022 14:18:23
C:\Program Files\WindowsApps\Microsoft.Paint*
Security LevelDisallowed
Description
Date last modified24-3-2023 15:27:33
c:\Program Files\WindowsApps\Microsoft.ScreenSketch*
Security LevelDisallowed
Descriptiondisallow Snip and Sketch
Date last modified14-7-2022 19:43:06
C:\Program Files\WindowsApps\Microsoft.Windows.Photos*
Security LevelDisallowed
Description
Date last modified24-3-2023 11:04:53
c:\Program Files\WindowsApps\Microsoft.WindowsNotepad*
Security LevelDisallowed
Description
Date last modified24-3-2023 15:27:29
C:\Windows\System32\notepad.exe
Security LevelDisallowed
Description
Date last modified24-3-2023 15:27:18
C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy
Security LevelDisallowed
Descriptiondisallow start menu search
Date last modified24-2-2022 12:00:29
C:\Windows\SystemApps\Microsoft.Windows.Search_cw5n1h2txyewy
Security LevelDisallowed
Descriptiondisallow start menu search
Date last modified24-2-2022 12:00:37
c:\Windows\SystemApps\Microsoft.Windows.SecHealthUI_cw5n1h2txyewy
Security LevelDisallowed
Descriptiondisallow windows security
Date last modified14-7-2022 14:18:38
C:\Windows\SysWOW64\notepad.exe
Security LevelDisallowed
Description
Date last modified24-3-2023 15:27:24
C:\Windows\WinSxS\amd64_microsoft-windows-wordpad*
Security LevelDisallowed
Description
Date last modified28-3-2023 09:53:33
Administrative Templates
Policy definitions (ADMX files) retrieved from the central store.
Control Panel/Programs
PolicySettingComment
Hide "Installed Updates" pageEnabled
Hide "Programs and Features" pageEnabled
Hide "Windows Features"Enabled
Hide the Programs Control PanelEnabled
Desktop
PolicySettingComment
Hide and disable all items on the desktopEnabled
Microsoft Office 2016/Disable Items in User Interface
PolicySettingComment
Turn off screen clippingEnabled
Start Menu and Taskbar
PolicySettingComment
Do not search for filesEnabled
Do not search InternetEnabled
Do not search programs and Control Panel itemsEnabled
Prevent users from adding or removing toolbarsEnabled
Remove Help menu from Start MenuEnabled
Remove See More Results / Search Everywhere linkEnabled
Show QuickLaunch on TaskbarDisabled
Turn off all balloon notificationsEnabled
System
PolicySettingComment
Don't run specified Windows applicationsEnabled
List of disallowed applications
msconfig.exe
PolicySettingComment
Prevent access to the command promptEnabled
Disable the command prompt script processing also?No
Windows Components/File Explorer
PolicySettingComment
Display the menu bar in File Explorer Disabled
Remove "Map Network Drive" and "Disconnect Network Drive"Enabled
Remove File Explorer's default context menuEnabled
Remove File menu from File ExplorerEnabled
Remove Search button from File ExplorerEnabled
Turn off Windows Key hotkeysEnabled
Windows Components/File Explorer/Explorer Frame Pane
PolicySettingComment
Turn off Preview PaneEnabled
Turn on or off details paneEnabled
Configure details paneAlways hide
Windows Components/Microsoft Management Console
PolicySettingComment
Restrict the user from entering author modeEnabled
Preferences
Windows Settings
Registry
{F02C1A0D-BE21-4350-88B0-7367FC96EF3C} (Order: 1)
General
ActionCreate
Properties
HiveHKEY_CURRENT_USER
Key pathSOFTWARE\Microsoft\Windows\CurrentVersion\Policies\NonEnum
Value name{F02C1A0D-BE21-4350-88B0-7367FC96EF3C}
Value typeREG_DWORD
Value data0x1 (1)
Common
Options
Stop processing items on this extension if an error occurs on this itemNo
Run in logged-on user's security context (user policy option)No
Remove this item when it is no longer appliedNo
Apply once and do not reapplyNo
ShowInfoTip (Order: 2)
General
ActionUpdate
Properties
HiveHKEY_CURRENT_USER
Key pathSoftware\Microsoft\Windows\CurrentVersion\Explorer\Advanced
Value nameShowInfoTip
Value typeREG_DWORD
Value data0x0 (0)
Common
Options
Stop processing items on this extension if an error occurs on this itemNo
Run in logged-on user's security context (user policy option)No
Remove this item when it is no longer appliedNo
Apply once and do not reapplyNo
Start_ShowPrinters (Order: 3)
General
ActionReplace
Properties
HiveHKEY_CURRENT_USER
Key pathSoftware\Microsoft\Windows\CurrentVersion\Explorer\Advanced
Value nameStart_ShowPrinters
Value typeREG_DWORD
Value data0x0 (0)
Common
Options
Stop processing items on this extension if an error occurs on this itemNo
Run in logged-on user's security context (user policy option)No
Remove this item when it is no longer appliedNo
Apply once and do not reapplyNo
DisabledHotkeys (Order: 4)
General
ActionCreate
Properties
HiveHKEY_CURRENT_USER
Key pathSoftware\Microsoft\Windows\CurrentVersion\Explorer\Advanced
Value nameDisabledHotkeys
Value typeREG_SZ
Value dataS
Common
Options
Stop processing items on this extension if an error occurs on this itemNo
Run in logged-on user's security context (user policy option)No
Remove this item when it is no longer appliedNo
Apply once and do not reapplyNo
PrintScreenKeyForSnippingEnabled (Order: 5)
General
ActionUpdate
Properties
HiveHKEY_CURRENT_USER
Key pathControl Panel\Keyboard
Value namePrintScreenKeyForSnippingEnabled
Value typeREG_DWORD
Value data0x0 (0)
Common
Options
Stop processing items on this extension if an error occurs on this itemNo
Run in logged-on user's security context (user policy option)No
Remove this item when it is no longer appliedNo
Apply once and do not reapplyNo
ConfigureKeyboardShortcuts (Order: 6)
General
ActionCreate
Properties
HiveHKEY_CURRENT_USER
Key pathSoftware\Policies\Microsoft\Edge
Value nameConfigureKeyboardShortcuts
Value typeREG_SZ
Value data{"disabled": ["web_select"]}
Common
Options
Stop processing items on this extension if an error occurs on this itemNo
Run in logged-on user's security context (user policy option)No
Remove this item when it is no longer appliedNo
Apply once and do not reapplyNo
Microsoft.QuickAction.ScreenClipping (Order: 7)
General
ActionCreate
Properties
HiveHKEY_CURRENT_USER
Key pathControl Panel\Quick Actions\Control Center\Unpinned
Value nameMicrosoft.QuickAction.ScreenClipping
Value typeREG_BINARY
Value data
Common
Options
Stop processing items on this extension if an error occurs on this itemNo
Run in logged-on user's security context (user policy option)No
Remove this item when it is no longer appliedNo
Apply once and do not reapplyNo
ScreenClipping.AppX4qm9f5mxaxadptn1dx5ecnnw9b9tddbz.mca (Order: 8)
General
ActionDelete
Properties
HiveHKEY_CURRENT_USER
Key pathSOFTWARE\Classes\Extensions\ContractId\Windows.Protocol\PackageId\MicrosoftWindows.Client.CBS_120.2212.4190.0_x64__cw5n1h2txyewy\ActivatableClassId\ScreenClipping.AppX4qm9f5mxaxadptn1dx5ecnnw9b9tddbz.mca
Common
Options
Stop processing items on this extension if an error occurs on this itemNo
Run in logged-on user's security context (user policy option)No
Apply once and do not reapplyNo