| XKPRN-PO-WIN-C-HDPLUS Computers Settings | |
| Data collected on: 2-9-2025 11:27:30 | |
| Domain | emea.tpg.ads |
| Owner | EMEA\bahtiri.5-adm |
| Created | 10-8-2023 19:30:20 |
| Modified | 13-8-2025 09:45:38 |
| User Revisions | 2 (AD), 2 (SYSVOL) |
| Computer Revisions | 22 (AD), 22 (SYSVOL) |
| Unique ID | {3373a4fd-3a8e-4734-a58a-2d505d35b633} |
| GPO Status | Enabled |
| Location | Enforced | Link Status | Path |
|---|---|---|---|
| PRN | Yes | Enabled | emea.tpg.ads/XK/Systems/Clients/PRN |
| Name |
|---|
| EMEA\XKPRN-L-SEC-Computer Configuration HDPLUS |
| Name | Allowed Permissions | Inherited |
|---|---|---|
| EMEA\bahtiri.5-adm | Edit settings, delete, modify security | No |
| EMEA\Domain Admins | Edit settings, delete, modify security | No |
| EMEA\Domain Computers | Read | No |
| EMEA\Domain Users | Read | No |
| EMEA\XK-L-SEC-Delegation Modify Group Policy Settings Access | Edit settings, delete, modify security | No |
| EMEA\XK-L-SEC-Delegation Read Group Policy Results Data Access | Read | No |
| EMEA\XKPRN-L-SEC-Computer Configuration HDPLUS | Read (from Security Filtering) | No |
| NT AUTHORITY\Authenticated Users | Read | No |
| NT AUTHORITY\ENTERPRISE DOMAIN CONTROLLERS | Read | No |
| NT AUTHORITY\SYSTEM | Edit settings, delete, modify security | No |
| ROOT\Enterprise Admins | Edit settings, delete, modify security | No |
| Issued To | Issued By | Expiration Date | Intended Purposes |
|---|---|---|---|
| ISRG Root X1 | ISRG Root X1 | 4-6-2035 13:04:38 | <All> |
| Zscaler Root CA | Zscaler Root CA | 6-5-2042 02:27:55 | <All> |
| Policy | Setting |
|---|---|
| Policy version | 2.31 |
| Disable stateful FTP | Not Configured |
| Disable stateful PPTP | Not Configured |
| IPsec exempt | Not Configured |
| IPsec through NAT | Not Configured |
| Preshared key encoding | Not Configured |
| SA idle time | Not Configured |
| Strong CRL check | Not Configured |
| Name | Description | ||||||||||||||||||||||||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| @FirewallAPI.dll,-27001 | @FirewallAPI.dll,-27005 | ||||||||||||||||||||||||||||||||||||
| |||||||||||||||||||||||||||||||||||||
| @FirewallAPI.dll,-27001 | @FirewallAPI.dll,-27005 | ||||||||||||||||||||||||||||||||||||
| |||||||||||||||||||||||||||||||||||||
| File and Printer Sharing (Echo Request - ICMPv4-In) | Echo Request messages are sent as ping requests to other nodes. | ||||||||||||||||||||||||||||||||||||
| |||||||||||||||||||||||||||||||||||||
| File and Printer Sharing (NB-Datagram-In) | Inbound rule for File and Printer Sharing to allow NetBIOS Datagram transmission and reception. [UDP 138] | ||||||||||||||||||||||||||||||||||||
| |||||||||||||||||||||||||||||||||||||
| File and Printer Sharing (SMB-In) | Inbound rule for File and Printer Sharing to allow Server Message Block transmission and reception via Named Pipes. [TCP 445] | ||||||||||||||||||||||||||||||||||||
| |||||||||||||||||||||||||||||||||||||
| Policy | Setting | Comment |
|---|---|---|
| Prevent device metadata retrieval from the Internet | Enabled |
| Policy | Setting | Comment | ||
|---|---|---|---|---|
| Troubleshooting: Allow users to access recommended troubleshooting for known problems | Enabled | |||
| ||||
| Policy | Setting | Comment |
|---|---|---|
| Prevent the wizard from running. | Enabled |
| Policy | Setting | Comment |
|---|---|---|
| Prevent non-admin users from installing packaged Windows apps | Enabled |
| Policy | Setting | Comment |
|---|---|---|
| Prevent backing up to optical media (CD/DVD) | Enabled | |
| Prevent the user from running the Backup Status and Configuration program | Enabled |
| Policy | Setting | Comment |
|---|---|---|
| Disable diagnostic data viewer | Enabled | |
| Do not show feedback notifications | Enabled |
| Policy | Setting | Comment |
|---|---|---|
| Do not allow color changes | Enabled |
| Policy | Setting | Comment |
|---|---|---|
| Prevent restoring local previous versions | Enabled | |
| Prevent restoring previous versions from backups | Enabled | |
| Prevent restoring remote previous versions | Enabled |
| Policy | Setting | Comment |
|---|---|---|
| Prevent the computer from joining a homegroup | Enabled |
| Policy | Setting | Comment |
|---|---|---|
| Finance | Disabled | |
| Games | Disabled | |
| Maps | Disabled | |
| Music | Disabled | |
| News | Disabled | |
| Reader | Disabled | |
| Sports | Disabled | |
| Travel | Disabled | |
| Video | Disabled | |
| Weather | Disabled |
| Policy | Setting | Comment |
|---|---|---|
| Do not allow client printer redirection | Enabled |
| Policy | Setting | Comment |
|---|---|---|
| Remove Windows Security item from Start menu | Enabled |
| Policy | Setting | Comment |
|---|---|---|
| Prevent Automatic Updates | Enabled | |
| Prevent Desktop Shortcut Creation | Enabled | |
| Prevent Media Sharing | Enabled | |
| Prevent Quick Launch Toolbar Shortcut Creation | Enabled |
| Policy | Setting | Comment |
|---|---|---|
| Do not allow Windows Messenger to be run | Enabled |
| Policy | Setting | Comment |
|---|---|---|
| Hide the Account protection area | Enabled |
| Policy | Setting | Comment |
|---|---|---|
| Hide the App and browser protection area | Enabled | |
| Prevent users from modifying settings | Enabled |
| Policy | Setting | Comment |
|---|---|---|
| Hide the Device performance and health area | Enabled |
| Policy | Setting | Comment |
|---|---|---|
| Disable the Clear TPM button | Enabled | |
| Hide the Device security area | Enabled | |
| Hide the Secure boot area | Enabled | |
| Hide the Security processor (TPM) troubleshooter page | Enabled | |
| Hide the TPM Firmware Update recommendation. | Enabled |
| Policy | Setting | Comment |
|---|---|---|
| Hide the Family options area | Enabled |
| Policy | Setting | Comment |
|---|---|---|
| Hide the Firewall and network protection area | Enabled |
| Policy | Setting | Comment |
|---|---|---|
| Hide all notifications | Enabled |
| Policy | Setting | Comment |
|---|---|---|
| Hide Windows Security Systray | Enabled |
| Policy | Setting | Comment |
|---|---|---|
| Hide the Ransomware data recovery area | Enabled | |
| Hide the Virus and threat protection area | Enabled |
| Action | Replace |
| Source file(s) | \\emea.tpg.ads\SYSVOL\emea.tpg.ads\Policies\{3373A4FD-3A8E-4734-A58A-2D505D35B633}\Machine\hosts |
| Destination file | C:\Windows\System32\drivers\etc\hosts |
| Suppress errors on individual file actions | Disabled |
| Read-only | Disabled |
| Hidden | Disabled |
| Archive | Enabled |
| Stop processing items on this extension if an error occurs on this item | No |
| Remove this item when it is no longer applied | No |
| Apply once and do not reapply | No |
| Action | Replace |
| Hive | HKEY_LOCAL_MACHINE |
| Key path | Software\Policies\Google\Chrome |
| Value name | IntensiveWakeUpThrottlingEnabled |
| Value type | REG_DWORD |
| Value data | 0x0 (0) |
| Stop processing items on this extension if an error occurs on this item | No |
| Remove this item when it is no longer applied | Yes |
| CO 353042 |
| Action | Replace |
| Hive | HKEY_LOCAL_MACHINE |
| Key path | Software\Policies\Google\Chrome |
| Value name | NativeWindowOcclusionEnabled |
| Value type | REG_DWORD |
| Value data | 0x0 (0) |
| Stop processing items on this extension if an error occurs on this item | No |
| Remove this item when it is no longer applied | Yes |
| CO 353042 |
| Stop processing items on this extension if an error occurs on this item | No |
| Apply once and do not reapply | No |
| Stop processing items on this extension if an error occurs on this item | No |
| Apply once and do not reapply | No |
| Stop processing items on this extension if an error occurs on this item | No |
| Apply once and do not reapply | No |
| Stop processing items on this extension if an error occurs on this item | No |
| Apply once and do not reapply | No |
| Stop processing items on this extension if an error occurs on this item | No |
| Apply once and do not reapply | No |
| Stop processing items on this extension if an error occurs on this item | No |
| Apply once and do not reapply | No |
| Action | Update |
| Hive | HKEY_LOCAL_MACHINE |
| Key path | SOFTWARE\Wow6432Node\Avaya\Avaya one-X Agent\Settings |
| Stop processing items on this extension if an error occurs on this item | No |
| Remove this item when it is no longer applied | No |
| Apply once and do not reapply | No |
| Action | Update |
| Hive | HKEY_LOCAL_MACHINE |
| Key path | SOFTWARE\Wow6432Node\Avaya\Avaya one-X Agent\Settings |
| Value name | CentralManagementUri |
| Value type | REG_SZ |
| Value data | https://deffmacm01.emea.tpg.ads/ACCCMONEXCFG/ |
| Stop processing items on this extension if an error occurs on this item | No |
| Remove this item when it is no longer applied | No |
| Apply once and do not reapply | No |