| TG-PO-WIN-C-VDI-Computer Configuration | |
| Data collected on: 2-9-2025 10:03:23 | |
| Domain | emea.tpg.ads |
| Owner | S-1-5-21-513466819-3096973226-347852806-589083 |
| Created | 26-10-2021 18:56:38 |
| Modified | 21-6-2024 17:12:14 |
| User Revisions | 0 (AD), 0 (SYSVOL) |
| Computer Revisions | 60 (AD), 60 (SYSVOL) |
| Unique ID | {479c956f-a1e6-47d5-96a0-c93348131e30} |
| GPO Status | Enabled |
| Location | Enforced | Link Status | Path |
|---|---|---|---|
| VDI | No | Enabled | emea.tpg.ads/TG/Systems/Clients/VDI |
| Name |
|---|
| EMEA\TG-L-SEC-GPO-VDI-Computer-Configuration |
| Name | Allowed Permissions | Inherited |
|---|---|---|
| EMEA\Domain Admins | Edit settings, delete, modify security | No |
| EMEA\TG-G-ORG-OU Admins | Edit settings, delete, modify security | No |
| EMEA\TG-L-SEC-Delegation Modify Group Policy Settings Access | Edit settings, delete, modify security | No |
| EMEA\TG-L-SEC-GPO-VDI-Computer-Configuration | Read (from Security Filtering) | No |
| NT AUTHORITY\Authenticated Users | Read | No |
| NT AUTHORITY\ENTERPRISE DOMAIN CONTROLLERS | Read | No |
| NT AUTHORITY\SYSTEM | Edit settings, delete, modify security | No |
| ROOT\Enterprise Admins | Edit settings, delete, modify security | No |
| S-1-5-21-513466819-3096973226-347852806-589083 | Edit settings, delete, modify security | No |
| Policy | Setting |
|---|---|
| Audit account logon events | Success, Failure |
| Audit account management | Success, Failure |
| Audit directory service access | Success, Failure |
| Audit logon events | Success, Failure |
| Audit object access | Success, Failure |
| Audit policy change | Success, Failure |
| Audit privilege use | Success, Failure |
| Audit process tracking | Success, Failure |
| Audit system events | Success, Failure |
| Policy | Setting |
|---|---|
| Accounts: Guest account status | Disabled |
| Accounts: Rename administrator account | "tgadm" |
| Accounts: Rename guest account | "tgguest" |
| Policy | Setting |
|---|---|
| Microsoft network client: Digitally sign communications (always) | Enabled |
| Microsoft network client: Digitally sign communications (if server agrees) | Enabled |
| Policy | Setting |
|---|---|
| Microsoft network server: Digitally sign communications (always) | Enabled |
| Microsoft network server: Digitally sign communications (if client agrees) | Enabled |
| Policy | Setting |
|---|---|
| Network security: Do not store LAN Manager hash value on next password change | Enabled |
| Network security: Force logoff when logon hours expire | Enabled |
| Network security: LAN Manager authentication level | Send NTLMv2 response only. Refuse LM & NTLM |
| Group | Members | Member of |
|---|---|---|
| BUILTIN\Administrators | EMEA\TG-L-SEC-Dlg-Local-Adm-Right-Waha-Computers |