Group Policy Management
body { font-size:68%;font-family:MS Shell Dlg; margin:0px,0px,0px,0px; border: 1px solid #666666; background:#F6F6F6; width:100%; word-break:normal; word-wrap:break-word; } .head { font-weight:bold; font-size:160%; font-family:MS Shell Dlg; width:100%; color:#6587DC; background:#E3EAF9; border:1px solid #5582D2; padding-left:8px; height:24px; } .path { margin-left: 10px; margin-top: 10px; margin-bottom:5px;width:100%; } .info { padding-left:10px;width:100%; } table { font-size:100%; width:100%; border:1px solid #999999; } th { border-bottom:1px solid #999999; text-align:left; padding-left:10px; height:24px; } td { background:#FFFFFF; padding-left:10px; padding-bottom:10px; padding-top:10px; } .btn { width:100%; text-align:right; margin-top:16px; } .hdr { font-weight:bold; border:1px solid #999999; text-align:left; padding-top: 4px; padding-left:10px; height:24px; margin-bottom:-1px; width:100%; } .bdy { width:100%; height:182px; display:block; overflow:scroll; z-index:2; background:#FFFFFF; padding-left:10px; padding-bottom:10px; padding-top:10px; border:1px solid #999999; } button { width:6.9em; height:2.1em; font-size:100%; font-family:MS Shell Dlg; margin-right:15px; } @media print { .bdy { display:block; overflow:visible; } button { display:none; } .head { color:#000000; background:#FFFFFF; border:1px solid #000000; } }
Setting Path:
Explanation
No explanation is available for this setting.
Supported On:
Not available
TR-PO-WIN-ADM-U-Restrictions GISP
Data collected on: 2-9-2025 12:45:24
General
Details
Domainemea.tpg.ads
OwnerEMEA\aygin.6-adm
Created23-2-2025 22:28:40
Modified18-6-2025 14:32:30
User Revisions84 (AD), 84 (SYSVOL)
Computer Revisions253 (AD), 253 (SYSVOL)
Unique ID{c31ed4af-081f-436d-95f2-b557c2089871}
GPO StatusEnabled
Links
LocationEnforcedLink StatusPath
TRNoEnabledemea.tpg.ads/TR

This list only includes links in the domain of the GPO.
Security Filtering
The settings in this GPO can only apply to the following groups, users, and computers:
Name
None
Delegation
These groups and users have the specified permission for this GPO
NameAllowed PermissionsInherited
EMEA\TRBAL-G-ORG-TrendyolSellerMgmtIBChat AgentCustomNo
Computer Configuration (Enabled)
Policies
Windows Settings
Security Settings
System Services
Application Identity (Startup Mode: Automatic)
Permissions
TypeNamePermission
AllowNT AUTHORITY\SYSTEMFull Control
AllowBUILTIN\AdministratorsFull Control
AllowEMEA\Domain UsersRead
AllowNT AUTHORITY\INTERACTIVERead
Auditing
TypeNameAccess
FailureEveryoneFull Control
Application Control Policies
Appx Rules
PolicySetting
Enforce rules of this typeTrue

ActionUserNameRule TypeExceptions
DenyEMEA\Domain UsersPackaged app: AppUp.IntelGraphicsExperience signed by INTEL CORPPublisherNo
DenyEMEA\Domain UsersPackaged app: Microsoft.Todos signed by Microsoft CorporationPublisherNo
DenyEMEA\Domain UsersPackaged app: Microsoft.OutlookForWindows signed by Microsoft CorporationPublisherNo
DenyEMEA\Domain UsersPackaged app: Microsoft.BingNews signed by Microsoft CorporationPublisherNo
DenyEMEA\Domain UsersPackaged app: WavesAudio.MaxxAudioProforDell2020 signed by Waves AudioPublisherNo
DenyEMEA\Domain UsersPackaged app: Microsoft.Copilot signed by Microsoft CorporationPublisherNo
DenyEMEA\Domain UsersPackaged app: Windows.PrintDialog signed by Microsoft CorporationPublisherNo
DenyEMEA\Domain UsersPackaged app: Clipchamp.Clipchamp signed by Microsoft Corp.PublisherNo
DenyEMEA\Domain UsersPackaged app: Microsoft.WidgetsPlatformRuntime signed by Microsoft CorporationPublisherNo
DenyEMEA\Domain UsersPackaged app: Microsoft.Windows.CapturePicker signed by Microsoft CorporationPublisherNo
DenyEMEA\Domain UsersPackaged app: Microsoft.GamingApp signed by Microsoft CorporationPublisherNo
DenyEMEA\Domain UsersMicrosoft.XboxGameCallableUl, version 0.0.0.0 and above, from CN=MICROSOFT CORPORATION, O=MICROSOFT CORPORATION, L=REDMOND, S=WASHINGTON, C=USPublisherNo
DenyEMEA\Domain UsersPackaged app: WavesAudio.WavesMaxxAudioProforDell signed by Waves AudioPublisherNo
DenyEMEA\Domain UsersMicrosoft.WindowsStore, version 0.0.0.0 and above, from CN=MICROSOFT CORPORATION, O=MICROSOFT CORPORATION, L=REDMOND, S=WASHINGTON, C=USPublisherNo
DenyEMEA\Domain UsersCOM.TINYSPECK.SLACKDESKTOP, version 4.41.0.0 and above, from CN="SLACK TECHNOLOGIES, LLC", O="SLACK TECHNOLOGIES, LLC", L=SAN FRANCISCO, S=CALIFORNIA, C=USPublisherNo
DenyEMEA\Domain UsersPackaged app: Microsoft.Paint signed by Microsoft CorporationPublisherNo
AllowEMEA\Domain ComputersAll signed packaged appsPublisherNo
DenyEMEA\Domain UsersPackaged app: AppUp.IntelOptaneMemoryandStorageManagement signed by INTEL CORPPublisherNo
DenyEMEA\Domain UsersPackaged app: Microsoft.WindowsTerminal signed by Microsoft CorporationPublisherNo
AllowEMEA\Domain UsersAll signed packaged appsPublisherNo
DenyEMEA\Domain UsersPackaged app: Microsoft.BingSearch signed by Microsoft CorporationPublisherNo
DenyEMEA\Domain UsersPackaged app: Microsoft.PowerAutomateDesktop signed by Microsoft CorporationPublisherNo
DenyEMEA\Domain UsersPackaged app: Microsoft.OneDriveSync signed by CN=Microsoft Corporation, O=Microsoft Corporation, L=Redmond, S=Washington, C=USPublisherNo
Dll Rules
No rules of type 'Dll Rules' are defined.
Executable Rules
No rules of type 'Executable Rules' are defined.
Windows Installer Rules
No rules of type 'Windows Installer Rules' are defined.
Script Rules
No rules of type 'Script Rules' are defined.
Administrative Templates
Policy definitions (ADMX files) retrieved from the central store.
Windows Components/Search
PolicySettingComment
Allow search highlightsDisabled
Windows Components/Store
PolicySettingComment
Turn off the Store applicationEnabled
Windows Components/Widgets
PolicySettingComment
Allow widgetsDisabled
Preferences
Windows Settings
Registry
HiddenByDefault (Order: 1)
General
ActionCreate
Properties
HiveHKEY_LOCAL_MACHINE
Key pathSOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Desktop\NameSpace\{e88865ea-0e1c-4e20-9aa6-edcd0212c87c}
Value nameHiddenByDefault
Value typeREG_DWORD
Value data0x1 (1)
Common
Options
Stop processing items on this extension if an error occurs on this itemNo
Remove this item when it is no longer appliedNo
Apply once and do not reapplyNo
Description
File Explorer üzerinde Gallery özelliğini kaydetmek için yapıldı . Aynı zamanda kullanıcı Save As işlemi yaptığında Gallery bölümüne dosya kaydetmesini engellemek için yapıldı.
{e88865ea-0e1c-4e20-9aa6-edcd0212c87c} (Order: 2)
General
ActionCreate
Properties
HiveHKEY_LOCAL_MACHINE
Key pathSOFTWARE\Microsoft\Windows\CurrentVersion\Policies\NonEnum
Value name{e88865ea-0e1c-4e20-9aa6-edcd0212c87c}
Value typeREG_DWORD
Value data0x1 (1)
Common
Options
Stop processing items on this extension if an error occurs on this itemNo
Remove this item when it is no longer appliedNo
Apply once and do not reapplyNo
Description
File Explorer üzerinde Gallery özelliğini kaydetmek için yapıldı . Aynı zamanda kullanıcı Save As işlemi yaptığında Gallery bölümüne dosya kaydetmesini engellemek için yapıldı.
{e88865ea-0e1c-4e20-9aa6-edcd0212c87c} (Order: 3)
General
ActionUpdate
Properties
HiveHKEY_LOCAL_MACHINE
Key pathSOFTWARE\Microsoft\Windows\CurrentVersion\Policies\NonEnum
Value name{e88865ea-0e1c-4e20-9aa6-edcd0212c87c}
Value typeREG_DWORD
Value data0x1 (1)
Common
Options
Stop processing items on this extension if an error occurs on this itemNo
Remove this item when it is no longer appliedNo
Apply once and do not reapplyNo
Description
File Explorer üzerinde Gallery özelliğini kaydetmek için yapıldı . Aynı zamanda kullanıcı Save As işlemi yaptığında Gallery bölümüne dosya kaydetmesini engellemek için yapıldı.
HiddenByDefault (Order: 4)
General
ActionUpdate
Properties
HiveHKEY_LOCAL_MACHINE
Key pathSOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Desktop\NameSpace\{e88865ea-0e1c-4e20-9aa6-edcd0212c87c}
Value nameHiddenByDefault
Value typeREG_DWORD
Value data0x1 (1)
Common
Options
Stop processing items on this extension if an error occurs on this itemNo
Remove this item when it is no longer appliedNo
Apply once and do not reapplyNo
Description
File Explorer üzerinde Gallery özelliğini kaydetmek için yapıldı . Aynı zamanda kullanıcı Save As işlemi yaptığında Gallery bölümüne dosya kaydetmesini engellemek için yapıldı.
{031E4825-7B94-4dc3-B131-E946B44C8DD5} (Order: 5)
General
ActionCreate
Properties
HiveHKEY_LOCAL_MACHINE
Key pathSOFTWARE\Microsoft\Windows\CurrentVersion\Policies\NonEnum
Value name{031E4825-7B94-4dc3-B131-E946B44C8DD5}
Value typeREG_DWORD
Value data0x1 (1)
Common
Options
Stop processing items on this extension if an error occurs on this itemNo
Remove this item when it is no longer appliedNo
Apply once and do not reapplyNo
Description
File Explorer üzerinde Library özelliğini kaydetmek için yapıldı . Aynı zamanda kullanıcı Save As işlemi yaptığında Library bölümüne dosya kaydetmesini engellemek için yapıldı.
{031E4825-7B94-4dc3-B131-E946B44C8DD5} (Order: 6)
General
ActionUpdate
Properties
HiveHKEY_LOCAL_MACHINE
Key pathSOFTWARE\Microsoft\Windows\CurrentVersion\Policies\NonEnum
Value name{031E4825-7B94-4dc3-B131-E946B44C8DD5}
Value typeREG_DWORD
Value data0x1 (1)
Common
Options
Stop processing items on this extension if an error occurs on this itemNo
Remove this item when it is no longer appliedNo
Apply once and do not reapplyNo
Description
File Explorer üzerinde Library özelliğini kaydetmek için yapıldı . Aynı zamanda kullanıcı Save As işlemi yaptığında Library bölümüne dosya kaydetmesini engellemek için yapıldı.
User Configuration (Enabled)
Policies
Windows Settings
Security Settings
Software Restriction Policies
Enforcement
PolicySetting
Apply Software Restriction Policies to the followingAll software files except libraries (such as DLLs)
Apply Software Restriction Policies to the following usersAll users
When applying Software Restriction PoliciesIgnore certificate rules
Designated File Types
File ExtensionFile Type
ADEADE File
ADPADP File
BASBAS File
BATWindows Batch File
CHMCompiled HTML Help file
CMDWindows Command Script
COMMS-DOS Application
CPLControl panel item
CRTSecurity Certificate
EXEApplication
HLPHelp file
HTAHTML Application
INFSetup Information
INSINS File
ISPISP File
LNKShortcut
MDBMDB File
MDEMDE File
MSCMicrosoft Common Console Document
MSIWindows Installer Package
MSPWindows Installer Patch
MSTMST File
OCXActiveX control
PCDPCD File
PIFShortcut to MS-DOS Program
REGRegistration Entries
SCRScreen saver
SHSSHS File
URLInternet Shortcut
VBVisual Basic Source File
WSCWindows Script Component
Trusted Publishers
Trusted publisher managementAllow all administrators and users to manage user's own Trusted Publishers
Certificate verificationNone
Software Restriction Policies/Security Levels
PolicySetting
Default Security LevelUnrestricted
Software Restriction Policies/Additional Rules
Path Rules
%HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRoot%
Security LevelUnrestricted
Description
Date last modified16-6-2018 13:15:08
%HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ProgramFilesDir%
Security LevelUnrestricted
Description
Date last modified16-6-2018 13:15:08
%programfiles%\WindowsApps\Microsoft.WindowsStore*
Security LevelDisallowed
Description
Date last modified28-11-2022 15:27:00
%programfiles%\WindowsApps\MSTeams_*
Security LevelUnrestricted
Description
Date last modified28-6-2024 14:29:20
%WINDIR%\HelpPane.exe
Security LevelDisallowed
Description
Date last modified16-6-2018 13:15:50
%windir%\system32\msinfo32.exe
Security LevelDisallowed
Description
Date last modified23-10-2022 18:55:40
%WINDIR%\winhlp32.exe
Security LevelDisallowed
Description
Date last modified16-6-2018 13:16:48
C:\Program Files (x86)\Windows Media Player\wmplayer.exe
Security LevelDisallowed
Description
Date last modified26-10-2022 22:19:25
C:\Program Files\Windows Media Player\wmplayer.exe
Security LevelDisallowed
Description
Date last modified26-10-2022 22:19:37
Administrative Templates
Policy definitions (ADMX files) retrieved from the central store.
Control Panel
PolicySettingComment
Hide specified Control Panel itemsEnabled
List of disallowed Control Panel items
Microsoft.AdministrativeTools
PolicySettingComment
Prohibit access to Control Panel and PC settingsEnabled
Show only specified Control Panel itemsEnabled
List of allowed Control Panel items
Microsoft.Mouse
Microsoft.Display
Microsoft.DevicesAndPrinters
Microsoft.RegionalAndLanguageOptions
Control Panel/Personalization
PolicySettingComment
Prevent changing desktop backgroundEnabled
Desktop
PolicySettingComment
Hide Network Locations icon on desktopEnabled
Prevent adding, dragging, dropping and closing the Taskbar's toolbarsEnabled
Prohibit User from manually redirecting Profile FoldersEnabled
Remove Computer icon on the desktopEnabled
Remove My Documents icon on the desktopEnabled
Remove Properties from the Computer icon context menuEnabled
Remove Properties from the Documents icon context menuEnabled
Remove the Desktop Cleanup WizardEnabled
Google/Google Chrome
PolicySettingComment
Always Open PDF files externallyEnabled
Ask where to save each file before downloadingEnabled
Microsoft Edge
PolicySettingComment
Allow sites configured for Internet Explorer mode to open in Microsoft EdgeEnabled
Start Menu and Taskbar
PolicySettingComment
Clear history of recently opened documents on exitEnabled
Clear the recent programs list for new usersEnabled
Do not keep history of recently opened documentsEnabled
Do not search communicationsEnabled
Do not search for filesEnabled
Do not search InternetEnabled
Do not search programs and Control Panel itemsEnabled
Hide the TaskView buttonEnabled
Pin Apps to Start when installedDisabled
Prevent users from customizing their Start ScreenEnabled
Prevent users from uninstalling applications from StartEnabled
Remove "Recently added" list from Start MenuEnabled
Remove All Programs list from the Start menuEnabled
Choose one of the following actionsRemove and disable setting
PolicySettingComment
Remove Balloon Tips on Start Menu itemsEnabled
Remove common program groups from Start MenuEnabled
Remove Default Programs link from the Start menu.Enabled
Remove Documents icon from Start MenuEnabled
Remove Downloads link from Start MenuEnabled
Remove Favorites menu from Start MenuEnabled
Remove frequent programs list from the Start MenuEnabled
Remove Games link from Start MenuEnabled
Remove Help menu from Start MenuEnabled
Remove Homegroup link from Start MenuEnabled
Remove links and access to Windows UpdateEnabled
Remove Music icon from Start MenuEnabled
Remove Network Connections from Start MenuEnabled
Remove Network icon from Start MenuEnabled
Remove Notifications and Action CenterEnabled
Remove Personalized Website Recommendations from the Recommended section in the Start MenuEnabled
Remove Pictures icon from Start MenuEnabled
Remove pinned programs list from the Start MenuEnabled
Remove programs on Settings menuEnabled
Remove Recent Items menu from Start MenuEnabled
Remove Recommended section from Start MenuEnabled
Remove Recorded TV link from Start MenuEnabled
Remove Run menu from Start MenuEnabled
Remove Search Computer linkEnabled
Remove Search link from Start MenuEnabled
Remove See More Results / Search Everywhere linkEnabled
Remove the "Undock PC" button from the Start MenuEnabled
Remove the Meet Now iconEnabled
Remove the People Bar from the taskbarEnabled
Remove the Security and Maintenance iconEnabled
Remove user folder link from Start MenuEnabled
Remove user's folders from the Start MenuDisabled
Remove Videos link from Start MenuEnabled
Show or hide "Most used" list from Start menuEnabled
Choose one of the following actionsHide
PolicySettingComment
Show QuickLaunch on TaskbarDisabled
Show Windows Store apps on the taskbarDisabled
Turn off feature advertisement balloon notificationsEnabled
Turn off personalized menusEnabled
System
PolicySettingComment
Don't run specified Windows applicationsEnabled
List of disallowed applications
notepad.exe
wordpad.exe
mspaint.exe
SnippingTool.exe
psr.exe
mip.exe
StikyNot.exe
powershell.exe
powershell_ise.exe
wmplayer.exe
wfs.exe
cleanmgr.exe
dfrgui.exe
cmd.exe
taskmgr.exe
services.msc
odbcad32.exe
odbcad64.exe
Microsoft.Notes.exe
terminal.exe
wt.exe
windowsterminal.exe
WinStore.App.exe
msinfo32.exe
LiveCaptions.exe
Slack.exe
PolicySettingComment
Prevent access to registry editing toolsEnabled
Disable regedit from running silently?Yes
PolicySettingComment
Prevent access to the command promptEnabled
Disable the command prompt script processing also?Yes
System/Ctrl+Alt+Del Options
PolicySettingComment
Remove Task ManagerEnabled
System/Removable Storage Access
PolicySettingComment
All Removable Storage classes: Deny all accessEnabled
Removable Disks: Deny read accessEnabled
Removable Disks: Deny write accessEnabled
WPD Devices: Deny read accessEnabled
WPD Devices: Deny write accessEnabled
Windows Components/AutoPlay Policies
PolicySettingComment
Turn off AutoplayEnabled
Turn off Autoplay on:All drives
Windows Components/File Explorer
PolicySettingComment
Do not allow Folder Options to be opened from the Options button on the View tab of the ribbonEnabled
Hide these specified drives in My ComputerEnabled
Pick one of the following combinationsRestrict all drives
PolicySettingComment
No Computers Near Me in Network LocationsEnabled
No Entire Network in Network LocationsEnabled
Prevent access to drives from My ComputerEnabled
Pick one of the following combinationsRestrict all drives
PolicySettingComment
Remove CD Burning featuresEnabled
Remove File Explorer's default context menuEnabled
Remove Hardware tabEnabled
Remove Search button from File ExplorerEnabled
Remove Shared Documents from My ComputerEnabled
Turn off display of recent search entries in the File Explorer search boxDisabled
Turn off Windows Key hotkeysEnabled
Windows Components/Internet Explorer/Internet Control Panel
PolicySettingComment
Disable the Connections pageEnabled
Windows Components/Internet Explorer/Internet Control Panel/Advanced Page
PolicySettingComment
Empty Temporary Internet Files folder when browser is closedEnabled
Windows Components/Microsoft Management Console
PolicySettingComment
Restrict the user from entering author modeEnabled
Restrict users to the explicitly permitted list of snap-insEnabled
Windows Components/NetMeeting
PolicySettingComment
Allow persisting automatic acceptance of CallsEnabled
Disable ChatEnabled
Disable Directory servicesEnabled
Disable NetMeeting 2.x WhiteboardEnabled
Disable WhiteboardEnabled
Limit the size of sent filesEnabled
Maximum size in Kbytes500
Value is size in Kbytes, only files smaller
than this size can be sent by the user.
PolicySettingComment
Prevent adding Directory serversEnabled
Prevent automatic acceptance of CallsEnabled
Prevent changing Call placement methodEnabled
Prevent receiving filesEnabled
Prevent sending filesEnabled
Prevent viewing Web directoryEnabled
Windows Components/Store
PolicySettingComment
Turn off the Store applicationEnabled
Windows Components/Tablet PC/Accessories
PolicySettingComment
Do not allow Snipping Tool to runEnabled
Windows Components/Windows Copilot
PolicySettingComment
Turn off Windows CopilotEnabled
Windows Components/Windows Hello for Business
PolicySettingComment
Use Windows Hello for BusinessDisabled
Windows Components/Windows Media Center
PolicySettingComment
Do not allow Windows Media Center to runEnabled
Windows Components/Windows Messenger
PolicySettingComment
Do not allow Windows Messenger to be runEnabled
Do not automatically start Windows Messenger initiallyEnabled
Windows Components/Windows PowerShell
PolicySettingComment
Turn on Script ExecutionDisabled
Preferences
Windows Settings
Registry
Collection: Registry Wizard Values
Common
Options
Stop processing items on this extension if an error occurs on this itemNo
Run in logged-on user's security context (user policy option)No
Apply once and do not reapplyNo
Registry item: AllowScreenRecorder
General
ActionUpdate
Properties
HiveHKEY_USERS
Key path%LogonUserSid%\Software\Microsoft\Windows\CurrentVersion\Policies\SnippingTool
Value nameAllowScreenRecorder
Value typeREG_DWORD
Value data0x0 (0)
Common
Options
Stop processing items on this extension if an error occurs on this itemNo
Run in logged-on user's security context (user policy option)No
Remove this item when it is no longer appliedNo
Apply once and do not reapplyNo
Collection: Registry Wizard Values/HKEY_CURRENT_USER/Software/Microsoft/Windows
Common
Options
Stop processing items on this extension if an error occurs on this itemNo
Run in logged-on user's security context (user policy option)No
Apply once and do not reapplyNo
Registry item: AllowScreenRecorder
General
ActionCreate
Properties
HiveHKEY_CURRENT_USER
Key path Software\Microsoft\Windows\CurrentVersion\Policies\SnippingTool
Value nameAllowScreenRecorder
Value typeREG_DWORD
Value data0x0 (0)
Common
Options
Stop processing items on this extension if an error occurs on this itemNo
Run in logged-on user's security context (user policy option)No
Remove this item when it is no longer appliedNo
Apply once and do not reapplyNo
Collection: Registry Wizard Values/HKEY_CURRENT_USER/Software/Microsoft/Windows/CurrentVersion/Search
Common
Options
Stop processing items on this extension if an error occurs on this itemNo
Run in logged-on user's security context (user policy option)No
Apply once and do not reapplyNo
Registry item: SearchboxTaskbarMode
General
ActionUpdate
Properties
HiveHKEY_CURRENT_USER
Key pathSoftware\Microsoft\Windows\CurrentVersion\Search
Value nameSearchboxTaskbarMode
Value typeREG_DWORD
Value data0x0 (0)
Common
Options
Stop processing items on this extension if an error occurs on this itemNo
Run in logged-on user's security context (user policy option)No
Remove this item when it is no longer appliedNo
Apply once and do not reapplyNo