| TNBEA-PO-SEC-C-SFR_Security_W10 | |
| Data collected on: 2-9-2025 09:28:52 | |
| Domain | emea.tpg.ads |
| Owner | EMEA\poincon.7-adm |
| Created | 26-6-2019 14:44:28 |
| Modified | 20-10-2023 10:59:50 |
| User Revisions | 1 (AD), 1 (SYSVOL) |
| Computer Revisions | 2 (AD), 2 (SYSVOL) |
| Unique ID | {ef9a214e-5a80-43db-b350-17d52380539b} |
| GPO Status | Enabled |
| Location | Enforced | Link Status | Path |
|---|---|---|---|
| BEA | No | Enabled | emea.tpg.ads/TN/Systems/Clients/BEA |
| Name |
|---|
| EMEA\TNBEA-G-ORG-SFR_Security_W10 |
| Name | Allowed Permissions | Inherited |
|---|---|---|
| EMEA\Domain Admins | Edit settings, delete, modify security | No |
| EMEA\poincon.7-adm | Edit settings, delete, modify security | No |
| EMEA\TNBEA-G-ORG-SFR_Security_W10 | Read (from Security Filtering) | No |
| EMEA\TN-G-ORG-OU Admins | Edit settings, delete, modify security | No |
| EMEA\TN-L-SEC-Delegation Modify Group Policy Settings Access | Edit settings, delete, modify security | No |
| NT AUTHORITY\Authenticated Users | Read | No |
| NT AUTHORITY\ENTERPRISE DOMAIN CONTROLLERS | Read | No |
| NT AUTHORITY\SYSTEM | Edit settings, delete, modify security | No |
| ROOT\Enterprise Admins | Edit settings, delete, modify security | No |
| Policy | Setting |
|---|---|
| Accounts: Block Microsoft accounts | Users can't add or log on with Microsoft accounts |
| Policy | Setting |
|---|---|
| Policy version | 2.22 |
| Disable stateful FTP | Not Configured |
| Disable stateful PPTP | Not Configured |
| IPsec exempt | Not Configured |
| IPsec through NAT | Not Configured |
| Preshared key encoding | Not Configured |
| SA idle time | Not Configured |
| Strong CRL check | Not Configured |
| Policy | Setting |
|---|---|
| Firewall state | Off |
| Inbound connections | Not Configured |
| Outbound connections | Not Configured |
| Apply local firewall rules | Not Configured |
| Apply local connection security rules | Not Configured |
| Display notifications | Not Configured |
| Allow unicast responses | Not Configured |
| Log dropped packets | Not Configured |
| Log successful connections | Not Configured |
| Log file path | Not Configured |
| Log file maximum size (KB) | Not Configured |
| Policy | Setting |
|---|---|
| Firewall state | Off |
| Inbound connections | Not Configured |
| Outbound connections | Not Configured |
| Apply local firewall rules | Not Configured |
| Apply local connection security rules | Not Configured |
| Display notifications | Not Configured |
| Allow unicast responses | Not Configured |
| Log dropped packets | Not Configured |
| Log successful connections | Not Configured |
| Log file path | Not Configured |
| Log file maximum size (KB) | Not Configured |
| Policy | Setting |
|---|---|
| Firewall state | Off |
| Inbound connections | Not Configured |
| Outbound connections | Not Configured |
| Apply local firewall rules | Not Configured |
| Apply local connection security rules | Not Configured |
| Display notifications | Not Configured |
| Allow unicast responses | Not Configured |
| Log dropped packets | Not Configured |
| Log successful connections | Not Configured |
| Log file path | Not Configured |
| Log file maximum size (KB) | Not Configured |
| Policy | Setting | Comment | ||
|---|---|---|---|---|
| Allow Online Tips | Disabled | |||
| Settings Page Visibility | Enabled | |||
| ||||
| Policy | Setting | Comment |
|---|---|---|
| Prevent changing lock screen and logon image | Enabled | |
| Prevent enabling lock screen camera | Enabled | |
| Prevent enabling lock screen slide show | Enabled |
| Policy | Setting | Comment |
|---|---|---|
| Windows Defender Firewall: Protect all network connections | Disabled |
| Policy | Setting | Comment |
|---|---|---|
| Allow Windows to automatically connect to suggested open hotspots, to networks shared by contacts, and to hotspots offering paid services | Disabled |
| Policy | Setting | Comment |
|---|---|---|
| Turn off Windows Update device driver search prompt | Enabled |
| Policy | Setting | Comment |
|---|---|---|
| Configure Logon Script Delay | Disabled |
| Policy | Setting | Comment |
|---|---|---|
| Turn off access to the Store | Enabled | |
| Turn off Windows Update device driver searching | Enabled |
| Policy | Setting | Comment |
|---|---|---|
| Run logon scripts synchronously | Disabled | |
| Run startup scripts asynchronously | Enabled |
| Policy | Setting | Comment |
|---|---|---|
| Turn off the advertising ID | Enabled |
| Policy | Setting | Comment | ||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| Let Windows apps access account information | Enabled | |||||||||||||||
| ||||||||||||||||
| Policy | Setting | Comment | ||||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| Choose how BitLocker-protected operating system drives can be recovered | Enabled | |||||||||||||||||
| ||||||||||||||||||
| Policy | Setting | Comment | ||
|---|---|---|---|---|
| Allow Diagnostic Data | Enabled | |||
| ||||
| Policy | Setting | Comment | ||
| Configure the Commercial ID | Disabled | |||
| Do not show feedback notifications | Enabled | |||
| Toggle user control over Insider builds | Disabled | |||
| Policy | Setting | Comment |
|---|---|---|
| Turn off downloading of game information | Enabled | |
| Turn off game updates | Enabled | |
| Turn off tracking of last play time of games in the Games folder | Enabled |
| Policy | Setting | Comment | ||
|---|---|---|---|---|
| Prevent participation in the Customer Experience Improvement Program | Enabled | |||
| Prevent running First Run wizard | Enabled | |||
| ||||
| Policy | Setting | Comment | ||
| Show message when opening sites in Microsoft Edge using Enterprise Mode | Disabled | |||
| Use the Enterprise Mode IE website list | Enabled | |||
| ||||
| Policy | Setting | Comment |
|---|---|---|
| Prevent the usage of OneDrive for file storage | Disabled | |
| Prevent the usage of OneDrive for file storage on Windows 8.1 | Disabled |
| Policy | Setting | Comment |
|---|---|---|
| Allow users to connect remotely by using Remote Desktop Services | Enabled |
| Policy | Setting | Comment | ||
|---|---|---|---|---|
| Allow Cortana | Disabled | |||
| Allow Cortana above lock screen | Disabled | |||
| Allow search and Cortana to use location | Disabled | |||
| Do not allow web search | Enabled | |||
| Don't search the web or display web results in Search | Enabled | |||
| Don't search the web or display web results in Search over metered connections | Enabled | |||
| Set what information is shared in Search | Enabled | |||
| ||||
| Policy | Setting | Comment |
|---|---|---|
| Turn off the offer to update to the latest version of Windows | Enabled | |
| Turn off the Store application | Enabled |
| Policy | Setting | Comment | ||
|---|---|---|---|---|
| Do not sync | Enabled | |||
| ||||
| Policy | Setting | Comment | ||
| Do not sync app settings | Enabled | |||
| ||||
| Policy | Setting | Comment | ||
| Do not sync Apps | Enabled | |||
| ||||
| Policy | Setting | Comment | ||
| Do not sync browser settings | Enabled | |||
| ||||
| Policy | Setting | Comment | ||
| Do not sync desktop personalization | Enabled | |||
| ||||
| Policy | Setting | Comment | ||
| Do not sync on metered connections | Enabled | |||
| Do not sync other Windows settings | Enabled | |||
| ||||
| Policy | Setting | Comment | ||
| Do not sync passwords | Enabled | |||
| ||||
| Policy | Setting | Comment | ||
| Do not sync personalize | Enabled | |||
| ||||
| Policy | Setting | Comment | ||
| Do not sync start settings | Enabled | |||
| ||||
| Policy | Setting | Comment |
|---|---|---|
| Turn off Windows Calendar | Enabled |
| Policy | Setting | Comment |
|---|---|---|
| Use biometrics | Disabled | |
| Use Windows Hello for Business | Disabled |
| Policy | Setting | Comment |
|---|---|---|
| Turn off Windows Mail application | Enabled |
| Policy | Setting | Comment |
|---|---|---|
| Do not allow Windows Messenger to be run | Enabled |
| Action | Create |
| Hive | HKEY_LOCAL_MACHINE |
| Key path | SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System |
| Value name | EnableLinkedConnections |
| Value type | REG_DWORD |
| Value data | 0x1 (1) |
| Stop processing items on this extension if an error occurs on this item | No |
| Remove this item when it is no longer applied | No |
| Apply once and do not reapply | No |
| Action | Update |
| Hive | HKEY_LOCAL_MACHINE |
| Key path | SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System |
| Value name | EnableLinkedConnections |
| Value type | REG_DWORD |
| Value data | 0x1 (1) |
| Stop processing items on this extension if an error occurs on this item | No |
| Remove this item when it is no longer applied | No |
| Apply once and do not reapply | No |
| Action | Update |
| Hive | HKEY_LOCAL_MACHINE |
| Key path | SOFTWARE\Policies\Microsoft\Windows\OneDrive |
| Value name | DisableFileSyncNGSC |
| Value type | REG_DWORD |
| Value data | 0x0 (0) |
| Stop processing items on this extension if an error occurs on this item | No |
| Remove this item when it is no longer applied | No |
| Apply once and do not reapply | No |