Group Policy Management
body { font-size:68%;font-family:MS Shell Dlg; margin:0px,0px,0px,0px; border: 1px solid #666666; background:#F6F6F6; width:100%; word-break:normal; word-wrap:break-word; } .head { font-weight:bold; font-size:160%; font-family:MS Shell Dlg; width:100%; color:#6587DC; background:#E3EAF9; border:1px solid #5582D2; padding-left:8px; height:24px; } .path { margin-left: 10px; margin-top: 10px; margin-bottom:5px;width:100%; } .info { padding-left:10px;width:100%; } table { font-size:100%; width:100%; border:1px solid #999999; } th { border-bottom:1px solid #999999; text-align:left; padding-left:10px; height:24px; } td { background:#FFFFFF; padding-left:10px; padding-bottom:10px; padding-top:10px; } .btn { width:100%; text-align:right; margin-top:16px; } .hdr { font-weight:bold; border:1px solid #999999; text-align:left; padding-top: 4px; padding-left:10px; height:24px; margin-bottom:-1px; width:100%; } .bdy { width:100%; height:182px; display:block; overflow:scroll; z-index:2; background:#FFFFFF; padding-left:10px; padding-bottom:10px; padding-top:10px; border:1px solid #999999; } button { width:6.9em; height:2.1em; font-size:100%; font-family:MS Shell Dlg; margin-right:15px; } @media print { .bdy { display:block; overflow:visible; } button { display:none; } .head { color:#000000; background:#FFFFFF; border:1px solid #000000; } }
Setting Path:
Explanation
No explanation is available for this setting.
Supported On:
Not available
PLWAW-PO-ADM-U-Customization Agent AT&T
Data collected on: 2-9-2025 09:28:57
General
Details
Domainemea.tpg.ads
OwnerS-1-5-21-513466819-3096973226-347852806-383091
Created26-6-2019 08:28:14
Modified30-3-2023 14:04:46
User Revisions166 (AD), 166 (SYSVOL)
Computer Revisions25 (AD), 25 (SYSVOL)
Unique ID{0580c25f-a1a8-4e7b-923d-6db298f5be9a}
GPO StatusEnabled
Links
LocationEnforcedLink StatusPath
None

This list only includes links in the domain of the GPO.
Security Filtering
The settings in this GPO can only apply to the following groups, users, and computers:
Name
S-1-5-21-513466819-3096973226-347852806-383047
Delegation
These groups and users have the specified permission for this GPO
NameAllowed PermissionsInherited
EMEA\Domain AdminsEdit settings, delete, modify securityNo
EMEA\Domain ComputersReadNo
EMEA\PL-L-SEC-Delegation Modify Group Policy Settings AccessEdit settings, delete, modify securityNo
NT AUTHORITY\Authenticated UsersReadNo
NT AUTHORITY\ENTERPRISE DOMAIN CONTROLLERSReadNo
NT AUTHORITY\SYSTEMEdit settings, delete, modify securityNo
ROOT\Enterprise AdminsEdit settings, delete, modify securityNo
S-1-5-21-513466819-3096973226-347852806-383047Read (from Security Filtering)No
S-1-5-21-513466819-3096973226-347852806-383091Edit settings, delete, modify securityNo
Computer Configuration (Enabled)
No settings defined.
User Configuration (Enabled)
Policies
Windows Settings
Scripts
Logon
For this GPO, Script order: Not configured
NameParameters
EDGE.BAT
Security Settings
Software Restriction Policies
Enforcement
PolicySetting
Apply Software Restriction Policies to the followingAll software files except libraries (such as DLLs)
Apply Software Restriction Policies to the following usersAll users except local administrators
When applying Software Restriction PoliciesIgnore certificate rules
Designated File Types
File ExtensionFile Type
ADEADE File
ADPADP File
BASBAS File
BATWindows Batch File
CHMCompiled HTML Help file
CMDWindows Command Script
COMMS-DOS Application
CPLControl panel item
CRTSecurity Certificate
EXEApplication
HLPHelp file
HTAHTML Application
INFSetup Information
INSINS File
ISPISP File
MDBMDB File
MDEMDE File
MSCMicrosoft Common Console Document
MSIWindows Installer Package
MSPWindows Installer Patch
MSTMST File
OCXActiveX control
PCDPCD File
PIFShortcut to MS-DOS Program
REGRegistration Entries
SCRScreen saver
SHSSHS File
URLInternet Shortcut
VBVisual Basic Source File
WSCWindows Script Component
Trusted Publishers
Trusted publisher managementAllow all administrators and users to manage user's own Trusted Publishers
Certificate verificationNone
Software Restriction Policies/Security Levels
PolicySetting
Default Security LevelUnrestricted
Software Restriction Policies/Additional Rules
Path Rules
%AppData%\*\*.exe
Security LevelDisallowed
Description
Date last modified3-4-2019 23:48:27
%HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRoot%
Security LevelUnrestricted
Description
Date last modified3-4-2019 09:01:56
%HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ProgramFilesDir%
Security LevelUnrestricted
Description
Date last modified25-4-2019 10:04:19
%HOMEPATH%\*\*.exe
Security LevelDisallowed
Description
Date last modified5-4-2019 14:36:20
%HOMEPATH%\AppData\Local\Temp\*.exe
Security LevelDisallowed
Description
Date last modified3-4-2019 23:19:52
%LocalAppData%\Programs\Opera\*\*.exe
Security LevelDisallowed
Description
Date last modified5-4-2019 12:34:28
%LocalAppData%\Temp\*\*.exe
Security LevelDisallowed
Description
Date last modified3-4-2019 23:35:43
%LocalAppData%\Temp\*\*.msi
Security LevelDisallowed
Description
Date last modified4-4-2019 11:00:26
%UserProfile%\*.bat
Security LevelDisallowed
Description
Date last modified17-4-2019 13:02:54
%UserProfile%\*.exe
Security LevelDisallowed
Description
Date last modified17-4-2019 13:02:08
%UserProfile%\*.msi
Security LevelDisallowed
Description
Date last modified17-4-2019 13:02:17
%UserProfile%\Downloads\*.*
Security LevelDisallowed
Description
Date last modified17-4-2019 11:32:44
%UserProfile%\Downloads\*.exe
Security LevelDisallowed
Description
Date last modified17-4-2019 11:32:06
%UserProfile%\Downloads\*\*.exe
Security LevelDisallowed
Description
Date last modified17-4-2019 11:32:17
7zFM.exe
Security LevelDisallowed
Description
Date last modified18-4-2019 11:01:38
7zG.exe
Security LevelDisallowed
Description
Date last modified18-4-2019 11:49:14
7-ZipPortable.exe
Security LevelDisallowed
Description
Date last modified18-4-2019 11:48:55
firefoxportable.exe
Security LevelDisallowed
Description
Date last modified18-4-2019 10:54:49
opera.exe
Security LevelDisallowed
Description
Date last modified18-4-2019 11:47:19
totalcmd.exe
Security LevelDisallowed
Description
Date last modified18-4-2019 14:08:35
totalcmd32.exe
Security LevelDisallowed
Description
Date last modified18-4-2019 14:08:57
totalcmd64.exe
Security LevelDisallowed
Description
Date last modified18-4-2019 14:09:03
winrar.exe
Security LevelDisallowed
Description
Date last modified18-4-2019 11:01:04
Folder Redirection
Desktop
Setting: Not configured
Downloads
Setting: Not configured
Start Menu
Setting: Not configured
Administrative Templates
Policy definitions (ADMX files) retrieved from the central store.
Control Panel
PolicySettingComment
Prohibit access to Control Panel and PC settingsDisabled
Settings Page VisibilityEnabled
Settings Page Visibility:showonly:printers;windowsupdate;display;regionlanguage;defaultapps;dateandtime;typing;taskbar
PolicySettingComment
Show only specified Control Panel itemsEnabled
List of allowed Control Panel items
Microsoft.Mouse
Microsoft.Display
Microsoft.Keyboard
Microsoft.RegionAndLanguage
Control Panel/Printers
PolicySettingComment
Prevent addition of printersEnabled
Control Panel/Regional and Language Options
PolicySettingComment
Restricts the UI languages Windows should use for the selected userEnabled
Restrict users to the following language:English
Google/Google Chrome
PolicySettingComment
Block access to a list of URLsEnabled
Block access to a list of URLs
data:text/html, <html contenteditable>
file://C:
c:
file://emea.tpg.ads/*
PolicySettingComment
Set download directoryEnabled
Set download directoryP:\Downloads
Google/Google Chrome/Deprecated policies
PolicySettingComment
Disable Developer ToolsEnabled
Google/Google Chrome/Extensions
PolicySettingComment
Configure extension installation blocklistEnabled
Extension IDs the user should be prevented from installing (or * for all)
*
Google/Google Chrome/Removed policies
PolicySettingComment
Configure extension installation blocklistEnabled
Extension IDs the user should be prevented from installing (or * for all)
*
Microsoft Edge
PolicySettingComment
Block access to a list of URLsEnabled
Block access to a list of URLs
c:
file://c:
*
PolicySettingComment
Define a list of allowed URLsEnabled
Define a list of allowed URLs
https://bkr-digirec-01.teleperformanceusa.com/WebPlayer/CallList/Default.aspx
https://bkr-digirec-01.teleperformanceusa.com
PolicySettingComment
Disable saving browser historyEnabled
Microsoft Edge/Content settings
PolicySettingComment
Allow pop-up windows on specific sitesEnabled
Allow pop-up windows on specific sites
Salesforce.com
Force.com
Content.force.com
Staticforce.com
Mozilla/Firefox
PolicySettingComment
Blocked websitesEnabled
*://outlook.office.com/*
*://outlook.office365.com/*
*://office.com/*
*://outlook.com/*
*://outlook.live.com/*
Start Menu and Taskbar
PolicySettingComment
Add Logoff to the Start MenuEnabled
Add Search Internet link to Start MenuDisabled
Add the Run command to the Start MenuDisabled
Change Start Menu power buttonEnabled
Choose one of the following actionsShut Down
PolicySettingComment
Clear the recent programs list for new usersEnabled
Clear tile notifications during log onEnabled
Disable showing balloon notifications as toasts.Enabled
Do not allow pinning items in Jump ListsEnabled
Do not allow pinning programs to the TaskbarEnabled
Do not allow pinning Store app to the TaskbarEnabled
Do not display any custom toolbars in the taskbarEnabled
Do not display or track items in Jump Lists from remote locationsEnabled
Do not keep history of recently opened documentsEnabled
Do not search communicationsEnabled
Do not search for filesEnabled
Do not search InternetEnabled
Do not search programs and Control Panel itemsEnabled
Do not use the search-based method when resolving shell shortcutsEnabled
Do not use the tracking-based method when resolving shell shortcutsEnabled
Force Start to be either full screen size or menu sizeEnabled
Choose one of the following sizesStart menu
PolicySettingComment
Go to the desktop instead of Start when signing inEnabled
List desktop apps first in the Apps viewEnabled
Lock the TaskbarEnabled
Prevent changes to Taskbar and Start Menu SettingsEnabled
Prevent grouping of taskbar itemsDisabled
Prevent users from adding or removing toolbarsEnabled
Prevent users from customizing their Start ScreenEnabled
Prevent users from moving taskbar to another screen dock locationEnabled
Prevent users from rearranging toolbarsEnabled
Prevent users from resizing the taskbarEnabled
Prevent users from uninstalling applications from StartEnabled
Remove access to the context menus for the taskbarEnabled
Remove All Programs list from the Start menuEnabled
Choose one of the following actionsRemove and disable setting
PolicySettingComment
Remove Balloon Tips on Start Menu itemsEnabled
Remove common program groups from Start MenuEnabled
Remove Default Programs link from the Start menu.Enabled
Remove Documents icon from Start MenuEnabled
Remove Downloads link from Start MenuEnabled
Remove Favorites menu from Start MenuEnabled
Remove frequent programs list from the Start MenuEnabled
Remove Games link from Start MenuEnabled
Remove Help menu from Start MenuEnabled
Remove Homegroup link from Start MenuEnabled
Remove links and access to Windows UpdateEnabled
Remove Music icon from Start MenuEnabled
Remove Network Connections from Start MenuEnabled
Remove Network icon from Start MenuEnabled
Remove Notifications and Action CenterEnabled
Remove Pictures icon from Start MenuEnabled
Remove pinned programs from the TaskbarEnabled
Remove programs on Settings menuEnabled
Remove Recent Items menu from Start MenuEnabled
Remove Recorded TV link from Start MenuEnabled
Remove Run menu from Start MenuEnabled
Remove Search Computer linkEnabled
Remove Search link from Start MenuEnabled
Remove See More Results / Search Everywhere linkEnabled
Remove the "Undock PC" button from the Start MenuEnabled
Remove the battery meterEnabled
Remove the networking iconEnabled
Remove the Security and Maintenance iconEnabled
Remove the volume control iconDisabled
Remove user folder link from Start MenuEnabled
Remove Videos link from Start MenuEnabled
Search just apps from the Apps viewEnabled
Show "Run as different user" command on StartDisabled
Show QuickLaunch on TaskbarEnabled
Show Start on the display the user is using when they press the Windows logo keyEnabled
Show the Apps view automatically when the user goes to StartEnabled
Show Windows Store apps on the taskbarDisabled
Start LayoutEnabled
Start Layout File\\emea.tpg.ads\pl\Warsaw\Clients\ATT\Settings\Agent\Start\start.xml
Reapply layout at every logon 
PolicySettingComment
Turn off all balloon notificationsEnabled
Turn off automatic promotion of notification icons to the taskbarEnabled
Turn off feature advertisement balloon notificationsEnabled
Turn off notification area cleanupEnabled
Turn off personalized menusEnabled
Turn off user trackingEnabled
System
PolicySettingComment
Don't run specified Windows applicationsEnabled
List of disallowed applications
opera.exe
firefoxportable.exe
powershell.exe
powershell_ise.exe
notepad.exe
wordpad.exe
diskmgmt.msc
PolicySettingComment
Prevent access to registry editing toolsEnabled
Disable regedit from running silently?Yes
Windows Components/File Explorer
PolicySettingComment
Prevent access to drives from My ComputerEnabled
Pick one of the following combinationsRestrict A, B, C and D drives only
Windows Components/Internet Explorer
PolicySettingComment
Disable changing home page settingsEnabled
Home Pagewww.att.com
PolicySettingComment
Prevent changing proxy settingsEnabled
Use the Enterprise Mode IE website listEnabled
Type the location (URL) of your Enterprise Mode IE website listhttps://plapplications.emea.tpg.ads/pac/att/edge.xml
Windows Components/Internet Explorer/Browser menus
PolicySettingComment
File menu: Disable Save As Web Page CompleteEnabled
File menu: Disable Save As... menu optionEnabled
Windows Components/Internet Explorer/Internet Control Panel/Advanced Page
PolicySettingComment
Allow software to run or install even if the signature is invalidEnabled
Empty Temporary Internet Files folder when browser is closedEnabled
Windows Components/Internet Explorer/Internet Control Panel/Security Page
PolicySettingComment
Site to Zone Assignment ListEnabled
Enter the zone assignments here. 
https://mobility-crm.web.att.com2
Windows Components/Internet Explorer/Toolbars
PolicySettingComment
Turn off Developer ToolsEnabled
Windows Components/Microsoft Edge
PolicySettingComment
Allow Developer ToolsDisabled
Windows Components/Microsoft Management Console/Restricted/Permitted snap-ins
PolicySettingComment
Disk ManagementDisabled
Windows Components/Store
PolicySettingComment
Turn off the offer to update to the latest version of WindowsEnabled
Turn off the Store applicationEnabled
Preferences
Windows Settings
Registry
SearchboxTaskbarMode (Order: 1)
General
ActionUpdate
Properties
HiveHKEY_CURRENT_USER
Key pathSOFTWARE\Microsoft\Windows\CurrentVersion\Search
Value nameSearchboxTaskbarMode
Value typeREG_DWORD
Value data0x0 (0)
Common
Options
Stop processing items on this extension if an error occurs on this itemYes
Run in logged-on user's security context (user policy option)No
Remove this item when it is no longer appliedNo
Apply once and do not reapplyNo
DisableIM (Order: 2)
General
ActionUpdate
Properties
HiveHKEY_CURRENT_USER
Key pathSoftware\Policies\Microsoft\Office\15.0\Lync
Value nameDisableIM
Value typeREG_DWORD
Value data0x1 (1)
Common
Options
Stop processing items on this extension if an error occurs on this itemNo
Run in logged-on user's security context (user policy option)No
Remove this item when it is no longer appliedNo
Apply once and do not reapplyNo
AgentMode (Order: 3)
General
ActionReplace
Properties
HiveHKEY_CURRENT_USER
Key pathSoftware\Microsoft\QuickAssist
Value nameAgentMode
Value typeREG_DWORD
Value data0x1 (1)
Common
Options
Stop processing items on this extension if an error occurs on this itemNo
Run in logged-on user's security context (user policy option)No
Remove this item when it is no longer appliedNo
Apply once and do not reapplyNo
Default Download Directory (Order: 4)
General
ActionReplace
Properties
HiveHKEY_CURRENT_USER
Key pathSoftware\Microsoft\Internet Explorer\Main
Value nameDefault Download Directory
Value typeREG_SZ
Value dataP:\Downloads
Common
Options
Stop processing items on this extension if an error occurs on this itemNo
Run in logged-on user's security context (user policy option)No
Remove this item when it is no longer appliedNo
Apply once and do not reapplyNo
EnableSavePrompt (Order: 5)
General
ActionReplace
Properties
HiveHKEY_CURRENT_USER
Key pathSOFTWARE\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\MicrosoftEdge\Download
Value nameEnableSavePrompt
Value typeREG_DWORD
Value data0x0 (0)
Common
Options
Stop processing items on this extension if an error occurs on this itemNo
Run in logged-on user's security context (user policy option)No
Remove this item when it is no longer appliedNo
Apply once and do not reapplyNo
Default Download Directory (Order: 6)
General
ActionReplace
Properties
HiveHKEY_CURRENT_USER
Key pathSOFTWARE\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\MicrosoftEdge\Main
Value nameDefault Download Directory
Value typeREG_SZ
Value dataP:\Downloads
Common
Options
Stop processing items on this extension if an error occurs on this itemNo
Run in logged-on user's security context (user policy option)No
Remove this item when it is no longer appliedNo
Apply once and do not reapplyNo
DisableRegistryTools (Order: 7)
General
ActionReplace
Properties
HiveHKEY_CURRENT_USER
Key pathSOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System
Value nameDisableRegistryTools
Value typeREG_DWORD
Value data0x1 (1)
Common
Options
Stop processing items on this extension if an error occurs on this itemNo
Run in logged-on user's security context (user policy option)No
Remove this item when it is no longer appliedNo
Apply once and do not reapplyNo
Shortcuts
Shortcut (Path: %FavoritesDir%\MyCSP)
MyCSP (Order: 1)
General
ActionReplace
Attributes
Target typeURL
Shortcut path%FavoritesDir%\MyCSP
Target URLhttp://mycsp.web.att.com/mycspportal
Shortcut keyNone
RunNormal window
Common
Options
Stop processing items on this extension if an error occurs on this itemNo
Run in logged-on user's security context (user policy option)Yes
Remove this item when it is no longer appliedNo
Apply once and do not reapplyNo
Shortcut (Path: %FavoritesDir%\Clarify)
Clarify (Order: 2)
General
ActionReplace
Attributes
Target typeURL
Shortcut path%FavoritesDir%\Clarify
Target URLhttps://mobility-crm.web.att.com/smartclient/CRM/LaunchCrm.jnlp
Shortcut keyNone
RunNormal window
Common
Options
Stop processing items on this extension if an error occurs on this itemNo
Run in logged-on user's security context (user policy option)Yes
Remove this item when it is no longer appliedNo
Apply once and do not reapplyNo
Control Panel Settings
Regional Options
Regional Options
English (United States) (Order: 1)
General
Standard language identifier:en-US
Currency
Currency symbol:$
Positive currency format:$1.1
Negative currency format:($1.1)
Decimal symbol:.
Number of digits after decimal:2
Digit grouping symbol:,
Digit grouping:123,456,789
Common
Options
Stop processing items on this extension if an error occurs on this itemNo
Run in logged-on user's security context (user policy option)Yes
Apply once and do not reapplyNo