Group Policy Management
body { font-size:68%;font-family:MS Shell Dlg; margin:0px,0px,0px,0px; border: 1px solid #666666; background:#F6F6F6; width:100%; word-break:normal; word-wrap:break-word; } .head { font-weight:bold; font-size:160%; font-family:MS Shell Dlg; width:100%; color:#6587DC; background:#E3EAF9; border:1px solid #5582D2; padding-left:8px; height:24px; } .path { margin-left: 10px; margin-top: 10px; margin-bottom:5px;width:100%; } .info { padding-left:10px;width:100%; } table { font-size:100%; width:100%; border:1px solid #999999; } th { border-bottom:1px solid #999999; text-align:left; padding-left:10px; height:24px; } td { background:#FFFFFF; padding-left:10px; padding-bottom:10px; padding-top:10px; } .btn { width:100%; text-align:right; margin-top:16px; } .hdr { font-weight:bold; border:1px solid #999999; text-align:left; padding-top: 4px; padding-left:10px; height:24px; margin-bottom:-1px; width:100%; } .bdy { width:100%; height:182px; display:block; overflow:scroll; z-index:2; background:#FFFFFF; padding-left:10px; padding-bottom:10px; padding-top:10px; border:1px solid #999999; } button { width:6.9em; height:2.1em; font-size:100%; font-family:MS Shell Dlg; margin-right:15px; } @media print { .bdy { display:block; overflow:visible; } button { display:none; } .head { color:#000000; background:#FFFFFF; border:1px solid #000000; } }
Setting Path:
Explanation
No explanation is available for this setting.
Supported On:
Not available
RU-PO-WIN-U-Aeroflot Agents Restrictions
Data collected on: 2-9-2025 09:08:07
General
Details
Domainemea.tpg.ads
OwnerEMEA\efimov.6
Created14-11-2017 13:15:44
Modified13-2-2024 13:23:20
User Revisions231 (AD), 231 (SYSVOL)
Computer Revisions24 (AD), 24 (SYSVOL)
Unique ID{cb410270-f76d-49b1-b919-4705ddc81138}
GPO StatusComputer settings disabled
Links
LocationEnforcedLink StatusPath
AgentsYesEnabledemea.tpg.ads/RU/Agents
StaffNoEnabledemea.tpg.ads/RU/Staff

This list only includes links in the domain of the GPO.
Security Filtering
The settings in this GPO can only apply to the following groups, users, and computers:
Name
EMEA\RU-L-SEC-GPO Aeroflot Agents Restrictions
Delegation
These groups and users have the specified permission for this GPO
NameAllowed PermissionsInherited
EMEA\Domain AdminsEdit settings, delete, modify securityNo
EMEA\Domain ComputersReadNo
EMEA\efimov.6Edit settings, delete, modify securityNo
EMEA\RU-L-SEC-Delegation Group Policy Objects Modify AccessEdit settings, delete, modify securityNo
EMEA\RU-L-SEC-GPO Aeroflot Agents RestrictionsRead (from Security Filtering)No
NT AUTHORITY\Authenticated UsersReadNo
NT AUTHORITY\ENTERPRISE DOMAIN CONTROLLERSReadNo
NT AUTHORITY\SYSTEMEdit settings, delete, modify securityNo
ROOT\Enterprise AdminsEdit settings, delete, modify securityNo
Computer Configuration (Disabled)
Policies
Windows Settings
Security Settings
Software Restriction Policies
Enforcement
PolicySetting
Apply Software Restriction Policies to the followingAll software files except libraries (such as DLLs)
Apply Software Restriction Policies to the following usersAll users except local administrators
When applying Software Restriction PoliciesIgnore certificate rules
Designated File Types
File ExtensionFile Type
ADEADE File
ADPADP File
BASBAS File
BATWindows Batch File
CHMCompiled HTML Help file
CMDWindows Command Script
COMMS-DOS Application
CPLControl panel item
CRTSecurity Certificate
EXEApplication
HLPHelp file
HTAHTML Application
INFSetup Information
INSINS File
ISPISP File
LNKShortcut
MDBMDB File
MDEMDE File
MSCMicrosoft Common Console Document
MSIWindows Installer Package
MSPWindows Installer Patch
MSTMST File
OCXActiveX control
PCDPCD File
PIFShortcut to MS-DOS Program
REGRegistration Entries
SCRScreen saver
SHSSHS File
URLInternet Shortcut
VBVisual Basic Source File
WSCWindows Script Component
Trusted Publishers
Trusted publisher managementAllow all administrators and users to manage user's own Trusted Publishers
Certificate verificationNone
Software Restriction Policies/Security Levels
PolicySetting
Default Security LevelUnrestricted
Software Restriction Policies/Additional Rules
Path Rules
%HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRoot%
Security LevelUnrestricted
Description
Date last modified15-11-2017 11:58:58
%HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ProgramFilesDir%
Security LevelUnrestricted
Description
Date last modified15-11-2017 11:58:58
User Configuration (Enabled)
Policies
Windows Settings
Security Settings
Software Restriction Policies
Enforcement
PolicySetting
Apply Software Restriction Policies to the followingAll software files
Apply Software Restriction Policies to the following usersAll users except local administrators
When applying Software Restriction PoliciesIgnore certificate rules
Designated File Types
File ExtensionFile Type
ADEADE File
ADPADP File
BASBAS File
BATWindows Batch File
CHMCompiled HTML Help file
CMDWindows Command Script
COMMS-DOS Application
CPLControl panel item
CRTSecurity Certificate
EXEApplication
HLPHelp file
HTAHTML Application
INFSetup Information
INSINS File
ISPISP File
MDBMDB File
MDEMDE File
MSCMicrosoft Common Console Document
MSIWindows Installer Package
MSPWindows Installer Patch
MSTMST File
OCXActiveX control
PCDPCD File
PIFShortcut to MS-DOS Program
REGRegistration Entries
SCRScreen saver
SHSSHS File
VBVisual Basic Source File
WSCWindows Script Component
Trusted Publishers
Trusted publisher managementAllow all administrators and users to manage user's own Trusted Publishers
Certificate verificationNone
Software Restriction Policies/Security Levels
PolicySetting
Default Security LevelBasic User
Software Restriction Policies/Additional Rules
Hash Rules
dsget.exe (5.2.3790.3959); dsget.exe; Microsoft Directory Service Get command line utility; Microsoft® Windows® Operating System; Microsoft Corporation
Security LevelUnrestricted
Description
Date last modified13-12-2017 18:23:33
dsquery.exe (5.2.3790.3959); dsquery.exe; Microsoft Directory Service query command line utility; Microsoft® Windows® Operating System; Microsoft Corporation
Security LevelUnrestricted
Description
Date last modified13-12-2017 18:23:52
PsGetSid.exe (1.44.0.0); PsGetSid; Translates SIDs to names and vice versa; Sysinternals PsGetSid; Sysinternals - www.sysinternals.com
Security LevelUnrestricted
Description
Date last modified13-12-2017 18:24:09
reg.exe (5.1.2600.5512); reg.exe; Registry Console Tool; Microsoft® Windows® Operating System; Microsoft Corporation
Security LevelUnrestricted
Description
Date last modified13-12-2017 18:24:20
SubInAcl.exe (5.2.3790.1180); SubInAcl.exe; SubInAcl; Microsoft® Windows® Operating System; Microsoft Corporation
Security LevelUnrestricted
Description
Date last modified13-12-2017 18:24:33
Internet Zone Rules
Trusted sites
Security LevelUnrestricted
DescriptionThis zone contains websites that you trust not to damage your computer or data.
Date last modified15-11-2017 12:17:58
Path Rules
%HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRoot%
Security LevelUnrestricted
Description
Date last modified15-11-2017 12:17:31
%HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ProgramFilesDir%
Security LevelUnrestricted
Description
Date last modified15-11-2017 12:17:31
%LOCALAPPDATA%\AF_IC_TEST
Security LevelUnrestricted
Description
Date last modified25-12-2017 13:08:10
%ProgramData%\%username%\microsoft\*
Security LevelUnrestricted
Description
Date last modified12-10-2021 12:15:37
%ProgramData%\%username%\squirrelTemp\*
Security LevelUnrestricted
Description
Date last modified12-10-2021 11:57:58
%SystemRoot%\system32\cabview.dll
Security LevelDisallowed
Description
Date last modified16-11-2017 14:11:31
%SystemRoot%\system32\zipfldr.dll
Security LevelDisallowed
Description
Date last modified16-11-2017 14:10:46
%TEMP%\CallCopyScreenCapAgent_RUKZNCRS02\*
Security LevelUnrestricted
Description
Date last modified5-12-2017 09:21:05
%TEMP%\CallCopyScreenCapAgent_RUVOGCRS01\*
Security LevelUnrestricted
Description
Date last modified22-11-2017 11:55:48
%TEMP%\CallCopyScreenCapAgent55_RUMOSCRSB02\*
Security LevelUnrestricted
Description
Date last modified22-11-2017 11:54:47
%TEMP%\CallCopyScreenCapAgent55_RUVLDCRS01\*
Security LevelUnrestricted
Description
Date last modified22-11-2017 11:55:03
%TEMP%\CallCopyScreenCapAgent55_RUVLDCRS02\*
Security LevelUnrestricted
Description
Date last modified5-12-2017 09:20:55
%TEMP%\CallCopyScreenCapAgent55_RUVOGCRS01\*
Security LevelUnrestricted
Description
Date last modified22-11-2017 11:55:16
%TEMP%\dsget.exe
Security LevelUnrestricted
Description
Date last modified22-11-2017 11:55:35
%TEMP%\dsquery.exe
Security LevelUnrestricted
Description
Date last modified22-11-2017 11:55:27
%TEMP%\psgetsid.exe
Security LevelUnrestricted
Description
Date last modified13-12-2017 17:50:13
%TEMP%\reg.exe
Security LevelUnrestricted
Description
Date last modified13-12-2017 17:50:33
%userprofile%\AppData\Local\AD_AF\*
Security LevelUnrestricted
Description
Date last modified12-3-2018 10:40:32
%userprofile%\AppData\Local\AD_AF_TEST\*
Security LevelUnrestricted
Description
Date last modified12-3-2018 10:40:57
%userprofile%\AppData\Local\AF_IC\*
Security LevelUnrestricted
Description
Date last modified22-11-2017 10:54:52
%userprofile%\AppData\Local\AF_IC_BACKUP\*
Security LevelUnrestricted
Description
Date last modified28-2-2019 01:36:48
%userprofile%\AppData\Local\AF_IC_Express\*
Security LevelUnrestricted
Description
Date last modified31-8-2022 08:43:29
%userprofile%\AppData\Local\AF_IC_RVA\*
Security LevelUnrestricted
Description
Date last modified14-5-2020 13:35:21
%userprofile%\AppData\Local\AF_IC_RVA_REN\*
Security LevelUnrestricted
Description
Date last modified10-4-2023 10:49:46
%userprofile%\AppData\Local\AF_IC_RVA_REN_TEST\*
Security LevelUnrestricted
Description
Date last modified13-2-2024 13:23:17
%userprofile%\AppData\Local\AF_IC_Sirena\*
Security LevelUnrestricted
Description
Date last modified30-10-2022 11:13:46
%userprofile%\AppData\Local\AF_IC_TEST_2\*
Security LevelUnrestricted
Description
Date last modified22-7-2019 15:53:36
%userprofile%\AppData\Local\AF_IC_TEST_3\*
Security LevelUnrestricted
Description
Date last modified15-7-2020 16:02:37
%userprofile%\AppData\Local\Apps\2.0\*
Security LevelUnrestricted
Description
Date last modified14-6-2018 15:31:42
%userprofile%\AppData\Local\leo-updater-invsu\*
Security LevelUnrestricted
Description
Date last modified24-10-2022 08:14:09
%userprofile%\AppData\Local\leo-updater-leos2\*
Security LevelUnrestricted
Description
Date last modified24-10-2022 08:14:39
%userprofile%\AppData\Local\Microsoft\Teams\*
Security LevelUnrestricted
Description
Date last modified11-10-2021 16:53:10
%USERPROFILE%\Desktop\runScreenCapAgent.cmd
Security LevelUnrestricted
Description
Date last modified22-11-2017 10:54:14
%userprofile%\Downloads\SkypeForBusinessPlugin.msi
Security LevelUnrestricted
Description
Date last modified3-7-2018 10:25:35
\\rumosfs01.emea.tpg.ads\REMINST\Software\GPOtools\*
Security LevelUnrestricted
Description
Date last modified22-11-2017 11:40:29
\\rumosfs01.emea.tpg.ads\thinApps\KeePass\*
Security LevelUnrestricted
Description
Date last modified15-11-2017 12:20:15
\\ruvldfs01.emea.tpg.ads\REMINST\Software\GPOtools\*
Security LevelUnrestricted
Description
Date last modified13-12-2017 17:51:26
\\ruvldms01.emea.tpg.ads\reminst\software\KeePass\*
Security LevelUnrestricted
Description
Date last modified10-12-2018 15:12:34
\\ruvldms01\REMINST\Software\AgentView\*.bat
Security LevelUnrestricted
Description
Date last modified15-11-2017 12:24:20
c:\Akkord\*
Security LevelUnrestricted
Description
Date last modified15-12-2017 08:15:44
C:\Akkord\Akkord_NarBPCall.exe
Security LevelUnrestricted
Description
Date last modified15-12-2017 08:11:46
c:\Avaya\IC73
Security LevelUnrestricted
Description
Date last modified10-12-2019 12:01:21
C:\PortableApps\DesktopInfo\DesktopInfo.exe
Security LevelUnrestricted
Description
Date last modified20-12-2019 07:12:58
C:\PortableApps\PaleMoonPortable\*
Security LevelUnrestricted
Description
Date last modified15-5-2023 08:18:37
C:\PortableApps\Stamina\*
Security LevelUnrestricted
Description
Date last modified16-11-2017 14:26:24
C:\Program Files (x86)\*
Security LevelUnrestricted
Description
Date last modified15-11-2017 14:26:23
C:\Program Files\*
Security LevelUnrestricted
Description
Date last modified15-11-2017 14:26:35
c:\ProgramData\Symantec\Symantec Endpoint Protection\*
Security LevelUnrestricted
Description
Date last modified12-2-2019 12:49:00
C:\temp\ffmpeg\ffmpeg.exe
Security LevelUnrestricted
Description
Date last modified28-6-2018 16:50:48
C:\temp\robocopy.exe
Security LevelUnrestricted
Description
Date last modified15-11-2017 12:18:31
C:\Windows\*
Security LevelUnrestricted
Description
Date last modified15-11-2017 14:26:51
C:\Windows\System32\WindowsPowerShell
Security LevelDisallowed
Description
Date last modified15-11-2017 12:20:38
C:\Windows\SystemApps\Microsoft.Windows.Search_cw5n1h2txyewy\*
Security LevelDisallowed
Description
Date last modified31-8-2022 15:40:24
C:\Windows\SysWOW64\WindowsPowerShell
Security LevelDisallowed
Description
Date last modified15-11-2017 12:20:51
Administrative Templates
Policy definitions (ADMX files) retrieved from the central store.
Google/Google Chrome/Startup, Home page and New Tab page
PolicySettingComment
URLs to open on startupEnabled
URLs to open on startup
https://www.aeroflot.ru/ru-ru
https://pay.aeroflot.ru/aerosite/auth
https://rusharedservices.emea.tpg.ads/SupportService/kb/KnowledgeBase.application?service=https://ruaeroflot.emea.tpg.ads/internalservicerest/api/v4/kb/
Windows Components/File Explorer
PolicySettingComment
Hide these specified drives in My ComputerEnabled
Pick one of the following combinationsRestrict A, B, C and D drives only
PolicySettingComment
Hides the Manage item on the File Explorer context menuEnabled
No Computers Near Me in Network LocationsEnabled
No Entire Network in Network LocationsEnabled
Prevent access to drives from My ComputerEnabled
Pick one of the following combinationsRestrict A, B, C and D drives only
PolicySettingComment
Remove Shared Documents from My ComputerEnabled
Preferences
Windows Settings
Registry
{E88DCCE0-B7B3-11d1-A9F0-00AA0060FA31} (Order: 1)
General
ActionDelete
Properties
HiveHKEY_CLASSES_ROOT
Key pathCLSID\{E88DCCE0-B7B3-11d1-A9F0-00AA0060FA31}
Common
Options
Stop processing items on this extension if an error occurs on this itemNo
Run in logged-on user's security context (user policy option)No
Apply once and do not reapplyNo
{0CD7A5C0-9F37-11CE-AE65-08002B2E1262} (Order: 2)
General
ActionDelete
Properties
HiveHKEY_CLASSES_ROOT
Key pathCLSID\{0CD7A5C0-9F37-11CE-AE65-08002B2E1262}
Common
Options
Stop processing items on this extension if an error occurs on this itemNo
Run in logged-on user's security context (user policy option)No
Apply once and do not reapplyNo
Schemes (Order: 3)
General
ActionReplace
Properties
HiveHKEY_CURRENT_USER
Key pathAppEvents\Schemes
Value name(Default)
Value typeREG_SZ
Value data.None
Common
Options
Stop processing items on this extension if an error occurs on this itemNo
Run in logged-on user's security context (user policy option)No
Remove this item when it is no longer appliedNo
Apply once and do not reapplyNo
NOC_GLOBAL_SETTING_ALLOW_NOTIFICATION_SOUND (Order: 4)
General
ActionReplace
Properties
HiveHKEY_CURRENT_USER
Key pathSoftware\Microsoft\Windows\CurrentVersion\Notifications\Settings
Value nameNOC_GLOBAL_SETTING_ALLOW_NOTIFICATION_SOUND
Value typeREG_DWORD
Value data0x0 (0)
Common
Options
Stop processing items on this extension if an error occurs on this itemNo
Run in logged-on user's security context (user policy option)No
Remove this item when it is no longer appliedNo
Apply once and do not reapplyNo