Group Policy Management
body { font-size:68%;font-family:MS Shell Dlg; margin:0px,0px,0px,0px; border: 1px solid #666666; background:#F6F6F6; width:100%; word-break:normal; word-wrap:break-word; } .head { font-weight:bold; font-size:160%; font-family:MS Shell Dlg; width:100%; color:#6587DC; background:#E3EAF9; border:1px solid #5582D2; padding-left:8px; height:24px; } .path { margin-left: 10px; margin-top: 10px; margin-bottom:5px;width:100%; } .info { padding-left:10px;width:100%; } table { font-size:100%; width:100%; border:1px solid #999999; } th { border-bottom:1px solid #999999; text-align:left; padding-left:10px; height:24px; } td { background:#FFFFFF; padding-left:10px; padding-bottom:10px; padding-top:10px; } .btn { width:100%; text-align:right; margin-top:16px; } .hdr { font-weight:bold; border:1px solid #999999; text-align:left; padding-top: 4px; padding-left:10px; height:24px; margin-bottom:-1px; width:100%; } .bdy { width:100%; height:182px; display:block; overflow:scroll; z-index:2; background:#FFFFFF; padding-left:10px; padding-bottom:10px; padding-top:10px; border:1px solid #999999; } button { width:6.9em; height:2.1em; font-size:100%; font-family:MS Shell Dlg; margin-right:15px; } @media print { .bdy { display:block; overflow:visible; } button { display:none; } .head { color:#000000; background:#FFFFFF; border:1px solid #000000; } }
Setting Path:
Explanation
No explanation is available for this setting.
Supported On:
Not available
RU-PO-WIN-U-PMI Agents Logon and Security Settings
Data collected on: 2-9-2025 08:55:17
General
Details
Domainemea.tpg.ads
OwnerEMEA\kornev.5
Created26-8-2015 12:34:56
Modified22-5-2025 13:32:04
User Revisions78 (AD), 78 (SYSVOL)
Computer Revisions1 (AD), 1 (SYSVOL)
Unique ID{b964e4c5-410d-4a79-b391-7f3017ff4db1}
GPO StatusComputer settings disabled
Links
LocationEnforcedLink StatusPath
AgentsNoEnabledemea.tpg.ads/RU/Agents
StaffNoEnabledemea.tpg.ads/RU/Staff

This list only includes links in the domain of the GPO.
Security Filtering
The settings in this GPO can only apply to the following groups, users, and computers:
Name
EMEA\RU-L-SEC-GPO Clients PMI Agents Logon and Security Settings
Delegation
These groups and users have the specified permission for this GPO
NameAllowed PermissionsInherited
EMEA\Domain AdminsEdit settings, delete, modify securityNo
EMEA\Domain ComputersReadNo
EMEA\kornev.5Edit settings, delete, modify securityNo
EMEA\RU-L-SEC-Delegation Group Policy Objects Modify AccessEdit settings, delete, modify securityNo
EMEA\RU-L-SEC-GPO Clients PMI Agents Logon and Security SettingsRead (from Security Filtering)No
NT AUTHORITY\Authenticated UsersReadNo
NT AUTHORITY\ENTERPRISE DOMAIN CONTROLLERSReadNo
NT AUTHORITY\SYSTEMEdit settings, delete, modify securityNo
ROOT\Enterprise AdminsEdit settings, delete, modify securityNo
S-1-5-21-513466819-3096973226-347852806-203252ReadNo
Computer Configuration (Disabled)
Policies
Windows Settings
Security Settings
File System
%UserProfile%\Desktop
Configure this file or folder then: Propagate inheritable permissions to all subfolders and files
Owner
Permissions
TypeNamePermissionApply To
AllowBUILTIN\AdministratorsFull ControlThis folder, subfolders and files
AllowCREATOR OWNERFull ControlSubfolders and files only
AllowNT AUTHORITY\SYSTEMFull ControlThis folder, subfolders and files
AllowBUILTIN\UsersRead and ExecuteThis folder, subfolders and files
Allow inheritable permissions from the parent to propagate to this object and all child objectsDisabled
Auditing
No auditing specified
User Configuration (Enabled)
Policies
Windows Settings
Scripts
Logon
For this GPO, Script order: Not configured
NameParameters
pmi_browser_startup_list.cmd
Logoff
For this GPO, Script order: Not configured
NameParameters
__agentsLogoffScript.cmd
Security Settings
Public Key Policies/Trusted People Certificates
Issued ToIssued ByExpiration DateIntended Purposes
*.telecontact.ruRapidSSL TLS DV RSA Mixed SHA256 2020 CA-111-2-2023 00:59:59Server Authentication, Client Authentication

For additional information about individual settings, launch the Local Group Policy Object Editor.
Folder Redirection
Desktop
Setting: Not configured
Administrative Templates
Policy definitions (ADMX files) retrieved from the central store.
Control Panel
PolicySettingComment
Always open All Control Panel Items when opening Control PanelEnabled
Prohibit access to Control Panel and PC settingsEnabled
Control Panel/Personalization
PolicySettingComment
Enable screen saverEnabled
Password protect the screen saverEnabled
Prevent changing screen saverEnabled
Screen saver timeoutEnabled
Number of seconds to wait to enable the screen saver
Seconds:300
Control Panel/Printers
PolicySettingComment
Prevent addition of printersEnabled
Prevent deletion of printersEnabled
Desktop
PolicySettingComment
Do not add shares of recently opened documents to Network LocationsEnabled
Don't save settings at exitEnabled
Hide Internet Explorer icon on desktopDisabled
Hide Network Locations icon on desktopEnabled
Prevent adding, dragging, dropping and closing the Taskbar's toolbarsEnabled
Prohibit adjusting desktop toolbarsEnabled
Prohibit User from manually redirecting Profile FoldersEnabled
Remove Computer icon on the desktopDisabled
Remove My Documents icon on the desktopEnabled
Remove Properties from the Computer icon context menuEnabled
Remove Properties from the Documents icon context menuEnabled
Remove Properties from the Recycle Bin context menuEnabled
Remove Recycle Bin icon from desktopEnabled
Remove the Desktop Cleanup WizardEnabled
Desktop/Active Directory
PolicySettingComment
Maximum size of Active Directory searchesEnabled
Number of objects returned: 0
Google/Google Chrome
PolicySettingComment
Control the IntensiveWakeUpThrottling feature.Disabled
Google/Google Chrome/Removed policies
PolicySettingComment
Allow access to a list of URLsEnabled
Allow access to a list of URLs
file:///C:/Users/
file:///c:/PortableApps/
PolicySettingComment
Block access to a list of URLsEnabled
Block access to a list of URLs
file://C:/
Google/Google Chrome/Startup, Home page and New Tab page
PolicySettingComment
Action on startupEnabled
Action on startupOpen a list of URLs
PolicySettingComment
Configure the home page URLEnabled
Home page URLabout:blank
PolicySettingComment
URLs to open on startupEnabled
URLs to open on startup
about:blank
Microsoft Excel 2013/Excel Options/Security/Trust Center/Protected View
PolicySettingComment
Do not open files from the Internet zone in Protected ViewEnabled
Do not open files in unsafe locations in Protected ViewEnabled
Turn off Protected View for attachments opened from OutlookEnabled
Microsoft Word 2013/Word Options/Security/Trust Center/Protected View
PolicySettingComment
Do not open files from the Internet zone in Protected ViewEnabled
Do not open files in unsafe locations in Protected ViewEnabled
Turn off Protected View for attachments opened from OutlookEnabled
Network/Network Connections
PolicySettingComment
Ability to Enable/Disable a LAN connectionEnabled
Prohibit access to properties of a LAN connectionEnabled
Prohibit access to properties of components of a LAN connectionEnabled
Prohibit access to the Advanced Settings item on the Advanced menuEnabled
Prohibit access to the New Connection WizardEnabled
Prohibit access to the Remote Access Preferences item on the Advanced menuEnabled
Prohibit adding and removing components for a LAN or remote access connectionEnabled
Prohibit connecting and disconnecting a remote access connectionEnabled
Prohibit Enabling/Disabling components of a LAN connectionEnabled
Prohibit TCP/IP advanced configurationEnabled
Start Menu and Taskbar
PolicySettingComment
Add "Run in Separate Memory Space" check box to Run dialog boxDisabled
Add Logoff to the Start MenuEnabled
Clear history of recently opened documents on exitEnabled
Do not keep history of recently opened documentsEnabled
Do not search for filesEnabled
Do not search programs and Control Panel itemsEnabled
Do not use the search-based method when resolving shell shortcutsEnabled
Do not use the tracking-based method when resolving shell shortcutsEnabled
Gray unavailable Windows Installer programs Start Menu shortcutsEnabled
Lock the TaskbarEnabled
Prevent changes to Taskbar and Start Menu SettingsEnabled
Prevent grouping of taskbar itemsEnabled
Prevent users from customizing their Start ScreenEnabled
Remove access to the context menus for the taskbarEnabled
Remove All Programs list from the Start menuEnabled
Choose one of the following actionsRemove and disable setting
PolicySettingComment
Remove and prevent access to the Shut Down, Restart, Sleep, and Hibernate commandsEnabled
Remove Balloon Tips on Start Menu itemsEnabled
Remove Documents icon from Start MenuDisabled
Remove Favorites menu from Start MenuEnabled
Remove frequent programs list from the Start MenuEnabled
Remove Help menu from Start MenuEnabled
Remove links and access to Windows UpdateEnabled
Remove Music icon from Start MenuEnabled
Remove Network Connections from Start MenuEnabled
Remove Network icon from Start MenuEnabled
Remove Pictures icon from Start MenuEnabled
Remove pinned programs list from the Start MenuEnabled
Remove programs on Settings menuEnabled
Remove Recent Items menu from Start MenuEnabled
Remove Run menu from Start MenuEnabled
Remove Search Computer linkEnabled
Remove Search link from Start MenuEnabled
Remove the People Bar from the taskbarEnabled
Remove user's folders from the Start MenuEnabled
Start LayoutEnabled
Start Layout File\\emea.tpg.ads\RU\Moscow\Profiles\Agents\_DESKTOPS\start_w10agents.xml
Reapply layout at every logon 
PolicySettingComment
Turn off notification area cleanupEnabled
Turn off personalized menusEnabled
System
PolicySettingComment
Do not display the Getting Started welcome screen at logonEnabled
Don't run specified Windows applicationsEnabled
List of disallowed applications
powershell.exe
poweshell_ise.exe
StikyNot.exe
Microsoft.StickyNotes.exe
PolicySettingComment
Prevent access to registry editing toolsEnabled
Disable regedit from running silently?No
PolicySettingComment
Prevent access to the command promptEnabled
Disable the command prompt script processing also?No
System/Ctrl+Alt+Del Options
PolicySettingComment
Remove Task ManagerEnabled
Windows Components/File Explorer
PolicySettingComment
Allow only per user or approved shell extensionsEnabled
Do not allow Folder Options to be opened from the Options button on the View tab of the ribbonEnabled
Do not move deleted files to the Recycle BinEnabled
Do not request alternate credentialsEnabled
Hide these specified drives in My ComputerEnabled
Pick one of the following combinationsRestrict A, B and C drives only
PolicySettingComment
Hides the Manage item on the File Explorer context menuEnabled
No Computers Near Me in Network LocationsEnabled
No Entire Network in Network LocationsEnabled
Prevent access to drives from My ComputerEnabled
Pick one of the following combinationsRestrict A, B and C drives only
PolicySettingComment
Remove "Map Network Drive" and "Disconnect Network Drive"Enabled
Remove CD Burning featuresEnabled
Remove DFS tabEnabled
Remove File Explorer's default context menuEnabled
Remove File menu from File ExplorerEnabled
Remove Hardware tabEnabled
Remove Search button from File ExplorerEnabled
Remove Security tabEnabled
Remove UI to change keyboard navigation indicator settingEnabled
Remove UI to change menu animation settingEnabled
Turn off caching of thumbnail picturesEnabled
Turn off shell protocol protected modeEnabled
Turn off Windows Key hotkeysEnabled
Windows Components/Internet Explorer
PolicySettingComment
Automatically activate newly installed add-onsEnabled
Disable caching of Auto-Proxy scriptsEnabled
Disable changing accessibility settingsEnabled
Disable changing Advanced page settingsEnabled
Disable changing Automatic Configuration settingsEnabled
Disable changing Calendar and Contact settingsEnabled
Disable changing certificate settingsEnabled
Disable changing color settingsEnabled
Disable changing connection settingsEnabled
Disable changing default browser checkEnabled
Disable changing font settingsEnabled
Disable changing home page settingsEnabled
Home Pageabout:blank
PolicySettingComment
Disable changing language settingsEnabled
Disable changing link color settingsEnabled
Disable changing Messaging settingsEnabled
Disable changing Profile Assistant settingsEnabled
Disable changing ratings settingsEnabled
Disable changing Temporary Internet files settingsEnabled
Disable Import/Export Settings wizardEnabled
Disable Internet Connection wizardEnabled
Disable the Reset Web Settings featureEnabled
Do not allow users to enable or disable add-onsEnabled
Identity Manager: Prevent users from using IdentitiesEnabled
Pop-up allow listEnabled
Enter the list of sites here.
*.dstver.ru
*.teleperformance.com
*.emea.tpg.ads
*.microsoft.com
*.chat2desk.com
PolicySettingComment
Prevent changing proxy settingsEnabled
Prevent running First Run wizardEnabled
Select your choiceGo directly to home page
PolicySettingComment
Search: Disable Find Files via F3 within the browserEnabled
Search: Disable Search CustomizationEnabled
Turn off add-on performance notificationsEnabled
Turn off Crash DetectionEnabled
Turn on Suggested SitesEnabled
Use Automatic Detection for dial-up connectionsDisabled
Windows Components/Internet Explorer/Administrator Approved Controls
PolicySettingComment
Audio/Video PlayerDisabled
Windows Components/Internet Explorer/Browser menus
PolicySettingComment
Disable Save this program to disk optionEnabled
File menu: Disable New menu optionEnabled
File menu: Disable Open menu optionEnabled
File menu: Disable Save As Web Page CompleteEnabled
File menu: Disable Save As... menu optionEnabled
Help menu: Remove 'For Netscape Users' menu optionEnabled
Help menu: Remove 'Send Feedback' menu optionEnabled
Help menu: Remove 'Tip of the Day' menu optionEnabled
Help menu: Remove 'Tour' menu optionEnabled
Tools menu: Disable Internet Options... menu optionEnabled
Turn off Shortcut MenuEnabled
View menu: Disable Source menu optionEnabled
Windows Components/Internet Explorer/Delete Browsing History
PolicySettingComment
Disable "Configuring History"Enabled
Days to keep pages in History0
Windows Components/Internet Explorer/Internet Control Panel
PolicySettingComment
Disable the Advanced pageEnabled
Disable the Connections pageEnabled
Disable the Content pageEnabled
Disable the General pageEnabled
Disable the Privacy pageEnabled
Disable the Programs pageEnabled
Disable the Security pageEnabled
Windows Components/Internet Explorer/Toolbars
PolicySettingComment
Configure Toolbar ButtonsEnabled
Show Back buttonEnabled
Show Forward buttonEnabled
Show Stop buttonEnabled
Show Refresh buttonEnabled
Show Home buttonEnabled
Show Search buttonDisabled
Show Favorites buttonEnabled
Show History buttonDisabled
Show Folders buttonDisabled
Show Fullscreen buttonDisabled
Show Tools buttonDisabled
Show Mail buttonDisabled
Show Font size buttonDisabled
Show Print buttonDisabled
Show Edit buttonDisabled
Show Discussions buttonDisabled
Show Cut buttonDisabled
Show Copy buttonDisabled
Show Paste buttonDisabled
Show Encoding buttonDisabled
PolicySettingComment
Disable customizing browser toolbar buttonsEnabled
Disable customizing browser toolbarsEnabled
Turn off Developer ToolsEnabled
Windows Components/Microsoft Management Console
PolicySettingComment
Restrict the user from entering author modeEnabled
Windows Components/Microsoft Management Console/Restricted/Permitted snap-ins
PolicySettingComment
Component ServicesDisabled
Computer ManagementDisabled
Device ManagerDisabled
Disk DefragmenterDisabled
Disk ManagementDisabled
Removable Storage ManagementDisabled
Routing and Remote AccessDisabled
TelephonyDisabled
Windows Components/Windows Media Player
PolicySettingComment
Prevent CD and DVD Media Information RetrievalEnabled
Prevent Music File Media Information RetrievalEnabled
Prevent Radio Station Preset RetrievalEnabled
Windows Components/Windows Messenger
PolicySettingComment
Do not allow Windows Messenger to be runEnabled
Do not automatically start Windows Messenger initiallyEnabled
Preferences
Windows Settings
Drive Maps
Drive Map (Drive: O)
O: (Order: 1)
General
ActionUpdate
Properties
LetterO
Location\\emea.tpg.ads\ru\moscow\clients
ReconnectEnabled
Label asProjectFolder
Use first availableDisabled
Hide/Show this driveNo change
Hide/Show all drivesNo change
Common
Options
Stop processing items on this extension if an error occurs on this itemNo
Run in logged-on user's security context (user policy option)No
Remove this item when it is no longer appliedNo
Apply once and do not reapplyNo
Registry
IncognitoModeAvailability (Order: 1)
General
ActionUpdate
Properties
HiveHKEY_CURRENT_USER
Key pathSoftware\Policies\Google\Chrome
Value nameIncognitoModeAvailability
Value typeREG_DWORD
Value data0x1 (1)
Common
Options
Stop processing items on this extension if an error occurs on this itemNo
Run in logged-on user's security context (user policy option)No
Remove this item when it is no longer appliedNo
Apply once and do not reapplyNo
Item-level targeting: Security Group
AttributeValue
boolAND
not0
nameEMEA\RU-L-SEC-Internet Clients PMI Agents SocialMedia
sidS-1-5-21-513466819-3096973226-347852806-376792
userContext1
primaryGroup0
localGroup0
EnableInPrivateBrowsing (Order: 2)
General
ActionUpdate
Properties
HiveHKEY_CURRENT_USER
Key pathSoftware\Policies\Microsoft\Privacy\Internet Explorer
Value nameEnableInPrivateBrowsing
Value typeREG_DWORD
Value data0x0 (0)
Common
Options
Stop processing items on this extension if an error occurs on this itemNo
Run in logged-on user's security context (user policy option)No
Remove this item when it is no longer appliedNo
Apply once and do not reapplyNo
Item-level targeting: Security Group
AttributeValue
boolAND
not0
nameEMEA\RU-L-SEC-Internet Clients PMI Agents SocialMedia
sidS-1-5-21-513466819-3096973226-347852806-376792
userContext1
primaryGroup0
localGroup0
AllowInPrivate (Order: 3)
General
ActionUpdate
Properties
HiveHKEY_CURRENT_USER
Key pathSoftware\Policies\Microsoft\MicrosoftEdge\Main
Value nameAllowInPrivate
Value typeREG_DWORD
Value data0x0 (0)
Common
Options
Stop processing items on this extension if an error occurs on this itemNo
Run in logged-on user's security context (user policy option)No
Remove this item when it is no longer appliedNo
Apply once and do not reapplyNo
Item-level targeting: Security Group
AttributeValue
boolAND
not0
nameEMEA\RU-L-SEC-Internet Clients PMI Agents SocialMedia
sidS-1-5-21-513466819-3096973226-347852806-376792
userContext1
primaryGroup0
localGroup0
TabFreezingEnabled (Order: 4)
General
ActionUpdate
Properties
HiveHKEY_CURRENT_USER
Key pathSoftware\Policies\Google\Chrome
Value nameTabFreezingEnabled
Value typeREG_DWORD
Value data0x0 (0)
Common
Options
Stop processing items on this extension if an error occurs on this itemNo
Run in logged-on user's security context (user policy option)No
Remove this item when it is no longer appliedNo
Apply once and do not reapplyNo
Item-level targeting: Security Group
AttributeValue
boolAND
not0
nameEMEA\RU-L-SEC-GPO Google Chrome Tabs Freeze disable
sidS-1-5-21-513466819-3096973226-347852806-560820
userContext1
primaryGroup0
localGroup0