| TN-P-WIN-CU-Security_Hardening_WKS_PCI_DSS | |
| Data collected on: 2-9-2025 08:56:39 | |
| Domain | emea.tpg.ads |
| Owner | S-1-5-21-513466819-3096973226-347852806-27238 |
| Created | 18-12-2015 13:31:16 |
| Modified | 20-10-2023 10:50:12 |
| User Revisions | 1 (AD), 1 (SYSVOL) |
| Computer Revisions | 9 (AD), 9 (SYSVOL) |
| Unique ID | {55412b71-7dbd-4466-b4ea-6df567aa060e} |
| GPO Status | Enabled |
| Location | Enforced | Link Status | Path |
|---|---|---|---|
| Clients | No | Enabled | emea.tpg.ads/TN/Systems/Clients |
| Name |
|---|
| EMEA\TNTUK-G-ORG-Staff Computers |
| S-1-5-21-513466819-3096973226-347852806-189057 |
| S-1-5-21-513466819-3096973226-347852806-294110 |
| S-1-5-21-513466819-3096973226-347852806-294181 |
| S-1-5-21-513466819-3096973226-347852806-294186 |
| Name | Allowed Permissions | Inherited |
|---|---|---|
| EMEA\Domain Admins | Edit settings, delete, modify security | No |
| EMEA\TN-G-ORG-OU Admins | Edit settings, delete, modify security | No |
| EMEA\TN-L-SEC-Delegation Modify Group Policy Settings Access | Edit settings, delete, modify security | No |
| EMEA\TNTUK-G-ORG-Staff Computers | Read (from Security Filtering) | No |
| NT AUTHORITY\Authenticated Users | Read | No |
| NT AUTHORITY\ENTERPRISE DOMAIN CONTROLLERS | Read | No |
| NT AUTHORITY\SYSTEM | Edit settings, delete, modify security | No |
| ROOT\Enterprise Admins | Edit settings, delete, modify security | No |
| S-1-5-21-513466819-3096973226-347852806-189057 | Read (from Security Filtering) | No |
| S-1-5-21-513466819-3096973226-347852806-203252 | Read | No |
| S-1-5-21-513466819-3096973226-347852806-27238 | Edit settings, delete, modify security | No |
| S-1-5-21-513466819-3096973226-347852806-294110 | Read (from Security Filtering) | No |
| S-1-5-21-513466819-3096973226-347852806-294181 | Read (from Security Filtering) | No |
| S-1-5-21-513466819-3096973226-347852806-294186 | Read (from Security Filtering) | No |
| Action | Update |
| Hive | HKEY_LOCAL_MACHINE |
| Key path | SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer |
| Value name | NoDriveTypeAutoRun |
| Value type | REG_DWORD |
| Value data | 0xFF (255) |
| Stop processing items on this extension if an error occurs on this item | No |
| Remove this item when it is no longer applied | No |
| Apply once and do not reapply | No |
| Action | Update |
| Hive | HKEY_LOCAL_MACHINE |
| Key path | SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon |
| Value name | AllocateCDRoms |
| Value type | REG_SZ |
| Value data | 1 |
| Stop processing items on this extension if an error occurs on this item | No |
| Remove this item when it is no longer applied | No |
| Apply once and do not reapply | No |
| Action | Update |
| Hive | HKEY_LOCAL_MACHINE |
| Key path | SYSTEM\CurrentControlSet\Control\Session Manager\SubSystems |
| Value name | Optional |
| Value type | REG_MULTI_SZ |
| Stop processing items on this extension if an error occurs on this item | No |
| Remove this item when it is no longer applied | No |
| Apply once and do not reapply | No |
| Action | Update |
| Hive | HKEY_LOCAL_MACHINE |
| Key path | SYSTEM\CurrentControlSet\Control\FileSystem |
| Value name | NtfsDisable8dot3NameCreation |
| Value type | REG_DWORD |
| Value data | 0x1 (1) |
| Stop processing items on this extension if an error occurs on this item | No |
| Remove this item when it is no longer applied | No |
| Apply once and do not reapply | No |