| UA-PO-ADM-C-WSUS PC Common policy | |
| Data collected on: 2-9-2025 08:54:03 | |
| Domain | emea.tpg.ads |
| Owner | S-1-5-21-513466819-3096973226-347852806-59963 |
| Created | 7-5-2015 14:01:56 |
| Modified | 9-2-2023 14:45:00 |
| User Revisions | 1 (AD), 1 (SYSVOL) |
| Computer Revisions | 139 (AD), 139 (SYSVOL) |
| Unique ID | {1a3636bf-b672-4272-a72d-9820e83ddb33} |
| GPO Status | Enabled |
| Location | Enforced | Link Status | Path |
|---|---|---|---|
| Clients | No | Enabled | emea.tpg.ads/UA/Systems/Clients |
| Name |
|---|
| NT AUTHORITY\Authenticated Users |
| Name | Allowed Permissions | Inherited |
|---|---|---|
| EMEA\Domain Admins | Edit settings, delete, modify security | No |
| EMEA\UA-L-SEC-Delegation Full Access | Edit settings, delete, modify security | No |
| EMEA\UA-L-SEC-Delegation Group Policy Objects Modify Access | Edit settings, delete, modify security | No |
| NT AUTHORITY\Authenticated Users | Read (from Security Filtering) | No |
| NT AUTHORITY\ENTERPRISE DOMAIN CONTROLLERS | Read | No |
| NT AUTHORITY\SYSTEM | Edit settings, delete, modify security | No |
| ROOT\Enterprise Admins | Edit settings, delete, modify security | No |
| Policy | Setting | Comment | ||
|---|---|---|---|---|
| Download Mode | Enabled | |||
| ||||
| Policy | Setting | Comment | ||
|---|---|---|---|---|
| Automatic Maintenance Activation Boundary | Enabled | |||
| ||||
| Policy | Setting | Comment | ||
| Automatic Maintenance WakeUp Policy | Enabled | |||
| Policy | Setting | Comment | ||||
|---|---|---|---|---|---|---|
| Allow Automatic Updates immediate installation | Enabled | |||||
| Allow non-administrators to receive update notifications | Disabled | |||||
| Configure auto-restart reminder notifications for updates | Enabled | |||||
| ||||||
| Policy | Setting | Comment | ||||
| Configure auto-restart required notification for updates | Enabled | |||||
| ||||||
| Policy | Setting | Comment | ||||
| Do not adjust default option to 'Install Updates and Shut Down' in Shut Down Windows dialog box | Disabled | |||||
| Do not allow update deferral policies to cause scans against Windows Update | Enabled | |||||
| Do not display 'Install Updates and Shut Down' option in Shut Down Windows dialog box | Disabled | |||||
| Enabling Windows Update Power Management to automatically wake up the system to install scheduled updates | Enabled | |||||
| No auto-restart with logged on users for scheduled automatic updates installations | Disabled | |||||
| Reschedule Automatic Updates scheduled installations | Enabled | |||||
| ||||||
| Policy | Setting | Comment | ||||
| Turn on recommended updates via Automatic Updates | Enabled | |||||
| Turn on Software Notifications | Enabled | |||||
| Policy | Setting | Comment | ||||
|---|---|---|---|---|---|---|
| Always automatically restart at the scheduled time | Enabled | |||||
| ||||||
| Policy | Setting | Comment | ||||
| Configure Automatic Updates | Disabled | |||||
| Policy | Setting | Comment | ||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| Allow signed updates from an intranet Microsoft update service location | Enabled | |||||||||||||||
| Automatic Updates detection frequency | Enabled | |||||||||||||||
| ||||||||||||||||
| Policy | Setting | Comment | ||||||||||||||
| Do not connect to any Windows Update Internet locations | Enabled | |||||||||||||||
| Specify intranet Microsoft update service location | Enabled | |||||||||||||||
| ||||||||||||||||
| Setting | State |
|---|---|
| Software\Policies\Microsoft\Windows\WindowsUpdate\AU\AUPowerManagement | 1 |
| Action | Replace |
| Hive | HKEY_LOCAL_MACHINE |
| Key path | SOFTWARE\Policies\Microsoft\Windows\WindowsUpdate |
| Value name | AllowOSUpgrade |
| Value type | REG_DWORD |
| Value data | 0x1 (1) |
| Stop processing items on this extension if an error occurs on this item | No |
| Remove this item when it is no longer applied | No |
| Apply once and do not reapply | No |
| Action | Replace |
| Hive | HKEY_LOCAL_MACHINE |
| Key path | SOFTWARE\Policies\Microsoft\Windows\WindowsUpdate |
| Value name | OSUpgradeInteractive |
| Value type | REG_DWORD |
| Value data | 0x1 (1) |
| Stop processing items on this extension if an error occurs on this item | No |
| Remove this item when it is no longer applied | No |
| Apply once and do not reapply | No |
| Action | Replace |
| Hive | HKEY_LOCAL_MACHINE |
| Key path | SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\OSUpgrade |
| Value name | AllowOSUpgrade |
| Value type | REG_DWORD |
| Value data | 0x1 (1) |
| Stop processing items on this extension if an error occurs on this item | No |
| Remove this item when it is no longer applied | No |
| Apply once and do not reapply | No |
| Attribute | Value |
|---|---|
| bool | AND |
| not | 0 |
| name | EMEA\UA-L-SEC-GPO WSUS WIN10 1703 |
| sid | S-1-5-21-513466819-3096973226-347852806-376898 |
| userContext | 0 |
| primaryGroup | 0 |
| localGroup | 0 |
| Attribute | Value |
|---|---|
| bool | OR |
| not | 0 |
| name | EMEA\UA-L-SEC-GPO WSUS WIN10 1709 |
| sid | S-1-5-21-513466819-3096973226-347852806-376899 |
| userContext | 0 |
| primaryGroup | 0 |
| localGroup | 0 |
| Stop processing items on this extension if an error occurs on this item | No |
| Apply once and do not reapply | No |
| Action | Replace |
| Hive | HKEY_LOCAL_MACHINE |
| Key path | SOFTWARE\Policies\Microsoft\Windows\WindowsUpdate |
| Value name | TargetGroupEnabled |
| Value type | REG_DWORD |
| Value data | 0x1 (1) |
| Stop processing items on this extension if an error occurs on this item | No |
| Remove this item when it is no longer applied | No |
| Apply once and do not reapply | No |
| Action | Replace |
| Hive | HKEY_LOCAL_MACHINE |
| Key path | SOFTWARE\Policies\Microsoft\Windows\WindowsUpdate |
| Value name | TargetGroup |
| Value type | REG_SZ |
| Value data | FULLY-PATCHED |
| Stop processing items on this extension if an error occurs on this item | No |
| Remove this item when it is no longer applied | No |
| Apply once and do not reapply | No |
| Action | Replace |
| Hive | HKEY_LOCAL_MACHINE |
| Key path | SOFTWARE\Policies\Microsoft\Windows\WindowsUpdate |
| Value name | TargetGroup |
| Value type | REG_SZ |
| Value data | TRIAL-STAGE |
| Stop processing items on this extension if an error occurs on this item | No |
| Remove this item when it is no longer applied | No |
| Apply once and do not reapply | No |
| Attribute | Value |
|---|---|
| bool | AND |
| not | 0 |
| name | EMEA\UA-L-SEC-GPO WSUS PC ADMIN-TEST Auto |
| sid | S-1-5-21-513466819-3096973226-347852806-221997 |
| userContext | 0 |
| primaryGroup | 0 |
| localGroup | 0 |
| Action | Replace |
| Hive | HKEY_LOCAL_MACHINE |
| Key path | SOFTWARE\Policies\Microsoft\Windows\WindowsUpdate |
| Value name | TargetGroup |
| Value type | REG_SZ |
| Value data | WIN10_20H2 |
| Stop processing items on this extension if an error occurs on this item | No |
| Remove this item when it is no longer applied | No |
| Apply once and do not reapply | No |
| Attribute | Value |
|---|---|
| bool | AND |
| not | 0 |
| name | EMEA\UA-L-SEC-GPO WSUS WIN10 20H2 |
| sid | S-1-5-21-513466819-3096973226-347852806-751204 |
| userContext | 0 |
| primaryGroup | 0 |
| localGroup | 0 |
| Action | Replace |
| Hive | HKEY_LOCAL_MACHINE |
| Key path | SOFTWARE\Policies\Microsoft\Windows\WindowsUpdate |
| Value name | TargetGroup |
| Value type | REG_SZ |
| Value data | WIN10_21H1 |
| Stop processing items on this extension if an error occurs on this item | No |
| Remove this item when it is no longer applied | No |
| Apply once and do not reapply | No |
| Attribute | Value |
|---|---|
| bool | AND |
| not | 0 |
| name | EMEA\UA-L-SEC-GPO WSUS WIN10 21H1 |
| sid | S-1-5-21-513466819-3096973226-347852806-875981 |
| userContext | 0 |
| primaryGroup | 0 |
| localGroup | 0 |
| Action | Replace |
| Hive | HKEY_LOCAL_MACHINE |
| Key path | SOFTWARE\Policies\Microsoft\Windows\WindowsUpdate |
| Value name | TargetGroup |
| Value type | REG_SZ |
| Value data | WIN10_21H2 |
| Stop processing items on this extension if an error occurs on this item | No |
| Remove this item when it is no longer applied | No |
| Apply once and do not reapply | No |
| Attribute | Value |
|---|---|
| bool | AND |
| not | 0 |
| name | EMEA\UA-L-SEC-GPO WSUS WIN10 21H2 |
| sid | S-1-5-21-513466819-3096973226-347852806-1083103 |
| userContext | 0 |
| primaryGroup | 0 |
| localGroup | 0 |