Group Policy Management
body { font-size:68%;font-family:MS Shell Dlg; margin:0px,0px,0px,0px; border: 1px solid #666666; background:#F6F6F6; width:100%; word-break:normal; word-wrap:break-word; } .head { font-weight:bold; font-size:160%; font-family:MS Shell Dlg; width:100%; color:#6587DC; background:#E3EAF9; border:1px solid #5582D2; padding-left:8px; height:24px; } .path { margin-left: 10px; margin-top: 10px; margin-bottom:5px;width:100%; } .info { padding-left:10px;width:100%; } table { font-size:100%; width:100%; border:1px solid #999999; } th { border-bottom:1px solid #999999; text-align:left; padding-left:10px; height:24px; } td { background:#FFFFFF; padding-left:10px; padding-bottom:10px; padding-top:10px; } .btn { width:100%; text-align:right; margin-top:16px; } .hdr { font-weight:bold; border:1px solid #999999; text-align:left; padding-top: 4px; padding-left:10px; height:24px; margin-bottom:-1px; width:100%; } .bdy { width:100%; height:182px; display:block; overflow:scroll; z-index:2; background:#FFFFFF; padding-left:10px; padding-bottom:10px; padding-top:10px; border:1px solid #999999; } button { width:6.9em; height:2.1em; font-size:100%; font-family:MS Shell Dlg; margin-right:15px; } @media print { .bdy { display:block; overflow:visible; } button { display:none; } .head { color:#000000; background:#FFFFFF; border:1px solid #000000; } }
Setting Path:
Explanation
No explanation is available for this setting.
Supported On:
Not available
XKPRN-PO-WIN-U-AppLocker
Data collected on: 2-9-2025 13:12:35
General
Details
Domainemea.tpg.ads
OwnerEMEA\bahtiri.5-adm
Created22-7-2025 09:24:04
Modified25-8-2025 13:45:12
User Revisions0 (AD), 0 (SYSVOL)
Computer Revisions104 (AD), 104 (SYSVOL)
Unique ID{61250d61-b6d6-4bf4-bc84-9a58f6d42afa}
GPO StatusEnabled
Links
LocationEnforcedLink StatusPath
SecurityNoEnabledemea.tpg.ads/XK/Groups/Security
PRNNoEnabledemea.tpg.ads/XK/Systems/Clients/PRN

This list only includes links in the domain of the GPO.
Security Filtering
The settings in this GPO can only apply to the following groups, users, and computers:
Name
EMEA\XKPRN-L-SEC-AppLocker
Delegation
These groups and users have the specified permission for this GPO
NameAllowed PermissionsInherited
EMEA\bahtiri.5-admEdit settings, delete, modify securityNo
EMEA\Domain AdminsEdit settings, delete, modify securityNo
EMEA\Domain ComputersReadNo
EMEA\Domain UsersReadNo
EMEA\XK-L-SEC-Delegation Modify Group Policy Settings AccessEdit settings, delete, modify securityNo
EMEA\XK-L-SEC-Delegation Read Group Policy Results Data AccessReadNo
EMEA\XKPRN-L-SEC-AppLockerRead (from Security Filtering)No
NT AUTHORITY\Authenticated UsersReadNo
NT AUTHORITY\ENTERPRISE DOMAIN CONTROLLERSReadNo
NT AUTHORITY\SYSTEMEdit settings, delete, modify securityNo
ROOT\Enterprise AdminsEdit settings, delete, modify securityNo
Computer Configuration (Enabled)
Policies
Windows Settings
Security Settings
Application Control Policies
Appx Rules
PolicySetting
Enforce rules of this typeTrue

No rules of type 'Appx Rules' are defined.
Dll Rules
No rules of type 'Dll Rules' are defined.
Executable Rules
PolicySetting
Enforce rules of this typeTrue

ActionUserNameRule TypeExceptions
DenyEveryoneC:\Windows\System32\*.mscPathNo
DenyEveryoneC:\Windows\System32\eventvwr.exePathNo
DenyEveryoneC:\Windows\System32\appwiz.cplPathNo
AllowEveryoneC:\Desktop Integration Siebel Agent 21.5.0\*PathNo
DenyEveryoneC:\Users\*\AppData\Local\Viber\Viber.exePathNo
DenyEveryoneC:\Windows\System32\en-US\*.mscPathNo
AllowEMEA\XK-G-ORG-Delegation Local Administration Rights Tier2*PathNo
AllowEveryone%OSDRIVE%\OneRes\*PathNo
AllowEveryoneC:\Users\*\AppData\Loca\Packages\MSTeams_8wekyb3d8bbwe\LocalCache\Roaming\Microsoft\Teams\current\Teams.exePathNo
AllowNT AUTHORITY\NETWORK SERVICE*PathNo
AllowEMEA\XK-G-ORG-Delegation Local Administration Rights Tier2C:\Program Files (x86)\WinPcap\*PathNo
DenyEveryoneC:\Program Files\FileZilla FTP Client\filezilla.exePathNo
AllowEveryoneC:\Users\*\AppData\Local\Microsoft\Teams\*\Teams.exePathNo
AllowEveryoneC:\ResponseClientINT\*PathNo
AllowNT AUTHORITY\LOCAL SERVICE*PathNo
AllowEMEA\XK-G-ORG-Servicedesk AdminsC:\Program Files (x86)\WinPcap\*PathNo
DenyEveryoneC:\Program Files (x86)\Lightshot\Lightshot.exePathNo
AllowNT AUTHORITY\SYSTEM*PathNo
AllowEveryoneC:\ResponseClient\*PathNo
DenyEveryoneC:\Program Files (x86)\WinPcap\*PathNo
AllowEveryone%PROGRAMFILES%\*PathNo
AllowEMEA\XKPRN-G-ORG-Hewlett-Packard ACMC:\Users\*\AppData\Roaming\Zoom\bin\Zoom.exePathNo
DenyEveryoneC:\Program Files\PowerShell*\pwsh.exePathNo
DenyEveryone*PathNo
DenyEveryoneC:\Program Files (x86)\Razer\Synapse3\WPFUI\Framework\Razer Synapse 3.exePathNo
AllowEMEA\XKPRN-G-ORG-Sky CCAdminC:\Program Files\FileZilla FTP Client\filezilla.exePathNo
AllowEveryone%OSDRIVE%\WinAuth\*PathNo
DenyEveryone%SYSTEM32%\WindowsPowerShell\v1.0\powershell_ise.exePathNo
DenyEveryoneC:\Users\*\AppData\Roaming\Zoom\bin\Zoom.exePathNo
AllowEveryoneC:\ResponseClientProd\*PathNo
DenyEveryoneC:\Windows\System32\services.exePathNo
AllowEveryone%OSDRIVE%\Softphone\*PathNo
DenyEveryoneC:\Users\*\AppData\Local\Discord\app-*\Discord.exePathNo
AllowEMEA\XK-G-ORG-Delegation Local Administration Rights Tier2*PathNo
AllowEveryone(Default Rule) All files located in the Program Files folderPathNo
AllowEMEA\XKPRN-G-ORG-Hewlett-Packard QAC:\Users\*\AppData\Roaming\Zoom\bin\Zoom.exePathNo
DenyEveryone%SYSTEM32%\cmd.exePathNo
DenyEveryone%SYSTEM32%\WindowsPowerShell\v1.0\powershell.exePathNo
AllowEMEA\XKPRN-G-ORG-Sky CCMC:\Program Files\FileZilla FTP Client\filezilla.exePathNo
DenyEveryone%SYSTEM32%\WindowsPowerShell\v1.0\powershell_ise.exePathNo
AllowEveryone(Default Rule) All files located in the Windows folderPathNo
AllowEveryoneC:\Users\*\Downloads\*.exePathNo
AllowEveryone%PROGRAMFILES%\*PathNo
AllowEMEA\XKPRN-G-ORG-Sky ACMC:\Program Files\FileZilla FTP Client\filezilla.exePathNo
AllowEMEA\XKPRN-G-ORG-Hewlett-Packard SupervisorC:\Users\*\AppData\Roaming\Zoom\bin\Zoom.exePathNo
DenyEveryone%SYSTEM32%\mmc.exePathNo
DenyEveryone%SYSTEM32%\notepad.exePathNo
DenyEveryoneC:\Users\*\AppData\Roaming\Zoom\bin\Zoom.exePathNo
AllowEveryoneC:\Users\*\AppData\Local\Packages\MSTeams_8wekyb3d8bbwe\LocalCache\Roaming\Microsoft\Teams\*\Teams.exePathNo
AllowEveryoneC:\DISA\*PathNo
AllowEveryone\\emea.tpg.ads\xk\Pristina\Clients\*\Agent\Downloads\*.exePathNo
AllowEveryone\\emea.tpg.ads\xk\Pristina\Clients\*\Agent\Download\*.exePathNo
DenyEveryoneC:\Users\*\AppData\Local\slack\slack.exePathNo
DenyEveryone%SYSTEM32%\WindowsPowerShell\v1.0\powershell.exePathNo
AllowBUILTIN\Administrators(Default Rule) All filesPathNo
AllowEveryoneTPNotes.exeHashNo
Windows Installer Rules
PolicySetting
Enforce rules of this typeTrue

No rules of type 'Windows Installer Rules' are defined.
Script Rules
PolicySetting
Enforce rules of this typeTrue

ActionUserNameRule TypeExceptions
AllowEveryone(Default Rule) All scripts located in the Program Files folderPathNo
AllowEveryoneC:\Windows\SYSVOL\domain\Scripts\*PathNo
AllowEveryoneC:\Windows\System32\GroupPolicy\User\Scripts\*PathNo
AllowEMEA\XK-G-ORG-Delegation Local Administration Rights Tier2*PathNo
AllowEveryoneC:\Desktop Integration Siebel Agent 21.5.0\*PathNo
AllowEveryoneC:\ResponseClientProd\*PathNo
AllowEveryone%OSDRIVE%\Softphone\*PathNo
AllowEveryone\\emea.tpg.ads\xk\Pristina\Clients\*\Settings\DRD\AdminTools.batPathNo
AllowEveryoneC:\\ResponseClientINT\*PathNo
DenyEveryone*PathNo
AllowNT AUTHORITY\LOCAL SERVICE*PathNo
AllowEveryone\\emea.tpg.ads\SYSVOL\emea.tpg.ads\Policies\*\*PathNo
AllowEveryone(Default Rule) All scripts located in the Windows folderPathNo
AllowEveryoneC:\DISA\*PathNo
AllowEveryone%OSDRIVE%\Tools\*PathNo
AllowEveryone%OSDRIVE%\OneRes\*PathNo
AllowEveryoneC:\Windows\System32\GroupPolicy\Machine\Scripts\*PathNo
AllowEveryoneC:\ResponseClient\*PathNo
AllowNT AUTHORITY\SYSTEM*PathNo
AllowNT AUTHORITY\NETWORK SERVICE*PathNo
AllowEveryone\\emea.tpg.ads\xk\Pristina\Public\AdminTools\AdminTools.batPathNo
AllowBUILTIN\Administrators(Default Rule) All scriptsPathNo
User Configuration (Enabled)
No settings defined.