| PL-PO-ADM-C-Common Client System Configuration | |
| Data collected on: 2-9-2025 09:09:32 | |
| Domain | emea.tpg.ads |
| Owner | S-1-5-21-513466819-3096973226-347852806-305342 |
| Created | 14-12-2017 14:59:18 |
| Modified | 28-3-2025 12:47:00 |
| User Revisions | 16 (AD), 16 (SYSVOL) |
| Computer Revisions | 396 (AD), 396 (SYSVOL) |
| Unique ID | {639b912e-f41a-48ef-946e-5e15898c0708} |
| GPO Status | Enabled |
| Location | Enforced | Link Status | Path |
|---|---|---|---|
| Clients | No | Enabled | emea.tpg.ads/PL/Systems/Clients |
| Name |
|---|
| NT AUTHORITY\Authenticated Users |
| Name | Allowed Permissions | Inherited |
|---|---|---|
| EMEA\Domain Admins | Edit settings, delete, modify security | No |
| EMEA\PL-L-SEC-Delegation Modify Group Policy Settings Access | Edit settings, delete, modify security | No |
| NT AUTHORITY\Authenticated Users | Read (from Security Filtering) | No |
| NT AUTHORITY\ENTERPRISE DOMAIN CONTROLLERS | Read | No |
| NT AUTHORITY\SYSTEM | Edit settings, delete, modify security | No |
| ROOT\Enterprise Admins | Edit settings, delete, modify security | No |
| Policy | Setting |
|---|---|
| Network security: LAN Manager authentication level | Send NTLMv2 response only. Refuse LM & NTLM |
| Policy | Setting |
|---|---|
| Shutdown: Clear virtual memory pagefile | Enabled |
| Policy | Setting |
|---|---|
| Audit: Force audit policy subcategory settings (Windows Vista or later) to override audit policy category settings | Enabled |
| Policy | Setting |
|---|---|
| Maximum application log size | 3145728 kilobytes |
| Maximum security log size | 3145728 kilobytes |
| Maximum system log size | 3145728 kilobytes |
| Retention method for application log | As needed |
| Retention method for security log | As needed |
| Retention method for system log | As needed |
| Issued To | Issued By | Expiration Date | Intended Purposes |
|---|---|---|---|
| plwa2fwvip.emea.tpg.ads | plwa2fwvip.emea.tpg.ads | 31-3-2025 11:35:16 | <All> |
| TPPL | TPPL | 27-3-2030 11:31:01 | <All> |
| Issued To | Issued By | Expiration Date | Intended Purposes |
|---|---|---|---|
| plwa2fwvip.emea.tpg.ads | plwa2fwvip.emea.tpg.ads | 31-3-2025 11:35:16 | <All> |
| TPPL | TPPL | 27-3-2030 11:31:01 | <All> |
| Policy | Setting |
|---|---|
| Audit Credential Validation | Success, Failure |
| Audit Kerberos Authentication Service | Success, Failure |
| Audit Kerberos Service Ticket Operations | Success, Failure |
| Audit Other Account Logon Events | Success, Failure |
| Policy | Setting |
|---|---|
| Audit Application Group Management | Success, Failure |
| Audit Computer Account Management | Success, Failure |
| Audit Distribution Group Management | Success, Failure |
| Audit Other Account Management Events | Success, Failure |
| Audit Security Group Management | Success, Failure |
| Audit User Account Management | Success, Failure |
| Policy | Setting |
|---|---|
| Audit DPAPI Activity | No Auditing |
| Audit PNP Activity | No Auditing |
| Audit Process Creation | Success, Failure |
| Audit Process Termination | Success, Failure |
| Audit RPC Events | No Auditing |
| Policy | Setting |
|---|---|
| Audit Detailed Directory Service Replication | No Auditing |
| Audit Directory Service Access | Success, Failure |
| Audit Directory Service Changes | Success, Failure |
| Audit Directory Service Replication | No Auditing |
| Policy | Setting |
|---|---|
| Audit Account Lockout | Success, Failure |
| Audit User / Device Claims | No Auditing |
| Audit IPsec Extended Mode | No Auditing |
| Audit IPsec Main Mode | No Auditing |
| Audit IPsec Quick Mode | No Auditing |
| Audit Logoff | Success, Failure |
| Audit Logon | Success, Failure |
| Audit Network Policy Server | Success, Failure |
| Audit Other Logon/Logoff Events | Success, Failure |
| Audit Special Logon | Success, Failure |
| Policy | Setting |
|---|---|
| Audit Application Generated | Success, Failure |
| Audit Certification Services | Success, Failure |
| Audit Detailed File Share | Success, Failure |
| Audit File Share | Success, Failure |
| Audit File System | No Auditing |
| Audit Filtering Platform Connection | Failure |
| Audit Filtering Platform Packet Drop | Failure |
| Audit Handle Manipulation | No Auditing |
| Audit Kernel Object | No Auditing |
| Audit Other Object Access Events | Success, Failure |
| Audit Registry | Success, Failure |
| Audit Removable Storage | Success, Failure |
| Audit SAM | Success, Failure |
| Audit Central Access Policy Staging | Success, Failure |
| Policy | Setting |
|---|---|
| Audit Audit Policy Change | Success, Failure |
| Audit Authentication Policy Change | Success, Failure |
| Audit Authorization Policy Change | Success, Failure |
| Audit Filtering Platform Policy Change | No Auditing |
| Audit MPSSVC Rule-Level Policy Change | Success, Failure |
| Audit Other Policy Change Events | No Auditing |
| Policy | Setting |
|---|---|
| Audit Non Sensitive Privilege Use | No Auditing |
| Audit Other Privilege Use Events | No Auditing |
| Audit Sensitive Privilege Use | No Auditing |
| Policy | Setting |
|---|---|
| Audit IPsec Driver | Success, Failure |
| Audit Other System Events | Success, Failure |
| Audit Security State Change | Success, Failure |
| Audit Security System Extension | Success, Failure |
| Audit System Integrity | Success, Failure |
| Policy | Setting | Comment | ||
|---|---|---|---|---|
| IPv6 Configuration Policy | Enabled | |||
| ||||
| Policy | Setting | Comment |
|---|---|---|
| Turn off Windows Error Reporting | Enabled |
| Policy | Setting | Comment |
|---|---|---|
| Enables Activity Feed | Disabled |
| Policy | Setting | Comment |
|---|---|---|
| Turn off Microsoft Defender Antivirus | Enabled |
| Policy | Setting | Comment |
|---|---|---|
| Allow users to connect remotely by using Remote Desktop Services | Enabled |
| Policy | Setting | Comment | ||
|---|---|---|---|---|
| Set time limit for active but idle Remote Desktop Services sessions | Enabled | |||
| ||||
| Policy | Setting | Comment | ||
| Set time limit for disconnected sessions | Enabled | |||
| ||||
| Policy | Setting | Comment | ||||||||||||||||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| Allow remote server management through WinRM | Enabled | |||||||||||||||||||||||||||||
| ||||||||||||||||||||||||||||||
| Policy | Setting | Comment |
|---|---|---|
| Hide all notifications | Enabled |
| Policy | Setting | Comment | ||||||
|---|---|---|---|---|---|---|---|---|
| Turn off auto-restart for updates during active hours | Enabled | |||||||
| ||||||||
| Action | Replace |
| Hive | HKEY_USERS |
| Key path | .DEFAULT\Control Panel\Keyboard |
| Value name | InitialKeyboardIndicators |
| Value type | REG_SZ |
| Value data | 2 |
| Stop processing items on this extension if an error occurs on this item | No |
| Remove this item when it is no longer applied | No |
| Apply once and do not reapply | No |
| Action | Replace |
| Hive | HKEY_CURRENT_USER (HKU\.DEFAULT) |
| Key path | Control Panel\Keyboard |
| Value name | InitialKeyboardIndicators |
| Value type | REG_SZ |
| Value data | 2 |
| Stop processing items on this extension if an error occurs on this item | No |
| Remove this item when it is no longer applied | No |
| Apply once and do not reapply | No |
| Action | Replace |
| Hive | HKEY_CURRENT_USER (HKU\.DEFAULT) |
| Key path | Software\Microsoft\Edge\SmartScreenEnabled |
| Value name | 1 |
| Value type | REG_DWORD |
| Value data | 0x0 (0) |
| Stop processing items on this extension if an error occurs on this item | No |
| Remove this item when it is no longer applied | No |
| Apply once and do not reapply | No |
| Action | Replace |
| Hive | HKEY_LOCAL_MACHINE |
| Key path | SOFTWARE\Policies\Microsoft\Edge |
| Value name | WebCaptureEnabled |
| Value type | REG_DWORD |
| Value data | 0x0 (0) |
| Stop processing items on this extension if an error occurs on this item | No |
| Remove this item when it is no longer applied | No |
| Apply once and do not reapply | No |
| Action | Replace |
| Hive | HKEY_LOCAL_MACHINE |
| Key path | SOFTWARE\Policies\Microsoft\Edge |
| Value name | UserFeedbackAllowed |
| Value type | REG_DWORD |
| Value data | 0x0 (0) |
| Stop processing items on this extension if an error occurs on this item | No |
| Remove this item when it is no longer applied | No |
| Apply once and do not reapply | No |
| Service name | WinRM |
| Action | No change |
| Startup type: | No change |
| Wait timeout if service is locked: | 30 seconds |
| Log on service as: | No change |
| First failure: | Restart the service |
| Second failure: | Restart the service |
| Subsequent failures: | No change |
| Reset fail count after: | 0 days |
| Restart service after: | 1 minute |
| Stop processing items on this extension if an error occurs on this item | No |
| Apply once and do not reapply | No |