| PCUB-PO-WIN-C-PCI Settings for Windows Server Adjustment | |
| Data collected on: 2-9-2025 12:55:53 | |
| Domain | emea.tpg.ads |
| Owner | EMEA\dykas.6-adm |
| Created | 28-5-2025 12:30:52 |
| Modified | 17-7-2025 11:36:16 |
| User Revisions | 0 (AD), 0 (SYSVOL) |
| Computer Revisions | 65 (AD), 65 (SYSVOL) |
| Unique ID | {593997dd-782a-4fcc-88a7-11c7790f570d} |
| GPO Status | Enabled |
| Location | Enforced | Link Status | Path |
|---|---|---|---|
| Servers | No | Enabled | emea.tpg.ads/LT/Systems/Servers |
| Servers | No | Enabled | emea.tpg.ads/PL/Systems/Servers |
| Servers | No | Enabled | emea.tpg.ads/UA/Systems/Servers |
| Name |
|---|
| EMEA\LT-L-SEC-Server Windows PCI Settings |
| EMEA\PLKRKFS01$ |
| EMEA\PLWA2FS01$ |
| EMEA\PLWAWTS02$ |
| EMEA\UA-L-SEC-Server Windows PCI Settings |
| Name | Allowed Permissions | Inherited |
|---|---|---|
| EMEA\Domain Admins | Edit settings, delete, modify security | No |
| EMEA\dykas.6-adm | Edit settings, delete, modify security | No |
| EMEA\LT-L-SEC-Server Windows PCI Settings | Read (from Security Filtering) | No |
| EMEA\PLKRKFS01$ | Read (from Security Filtering) | No |
| EMEA\PLWA2FS01$ | Read (from Security Filtering) | No |
| EMEA\PLWAWTS02$ | Read (from Security Filtering) | No |
| EMEA\UA-L-SEC-Server Windows PCI Settings | Read (from Security Filtering) | No |
| NT AUTHORITY\Authenticated Users | Read | No |
| NT AUTHORITY\ENTERPRISE DOMAIN CONTROLLERS | Read | No |
| NT AUTHORITY\SYSTEM | Edit settings, delete, modify security | No |
| ROOT\Enterprise Admins | Edit settings, delete, modify security | No |
| Policy | Setting |
|---|---|
| Access this computer from the network | NT AUTHORITY\Authenticated Users, BUILTIN\Administrators |
| Adjust memory quotas for a process | NT AUTHORITY\NETWORK SERVICE, NT AUTHORITY\LOCAL SERVICE, BUILTIN\Administrators |
| Allow log on locally | BUILTIN\Backup Operators, BUILTIN\Administrators |
| Change the system time | NT AUTHORITY\LOCAL SERVICE, BUILTIN\Administrators |
| Create a pagefile | BUILTIN\Administrators |
| Force shutdown from a remote system | BUILTIN\Administrators |
| Generate security audits | NT AUTHORITY\NETWORK SERVICE, NT AUTHORITY\LOCAL SERVICE |
| Increase scheduling priority | BUILTIN\Administrators |
| Load and unload device drivers | BUILTIN\Administrators |
| Lock pages in memory | |
| Manage auditing and security log | BUILTIN\Administrators |
| Modify firmware environment values | BUILTIN\Administrators |
| Perform volume maintenance tasks | BUILTIN\Administrators |
| Profile single process | BUILTIN\Administrators |
| Profile system performance | NT SERVICE\WdiServiceHost, BUILTIN\Administrators |
| Remove computer from docking station | BUILTIN\Administrators |
| Restore files and directories | BUILTIN\Backup Operators, BUILTIN\Administrators |
| Shut down the system | BUILTIN\Administrators |
| Take ownership of files or other objects | BUILTIN\Administrators |
| Action | Update |
| Hive | HKEY_LOCAL_MACHINE |
| Key path | SYSTEM\CurrentControlSet\Services\USBSTOR |
| Value name | Start |
| Value type | REG_DWORD |
| Value data | 0x4 (4) |
| Stop processing items on this extension if an error occurs on this item | No |
| Remove this item when it is no longer applied | No |
| Apply once and do not reapply | No |
| Action | Update |
| Hive | HKEY_LOCAL_MACHINE |
| Key path | SOFTWARE\Policies\Microsoft\Windows\WindowsUpdate\AU |
| Value name | NoAutoUpdate |
| Value type | REG_DWORD |
| Value data | 0x0 (0) |
| Stop processing items on this extension if an error occurs on this item | No |
| Remove this item when it is no longer applied | No |
| Apply once and do not reapply | No |