Group Policy Management
body { font-size:68%;font-family:MS Shell Dlg; margin:0px,0px,0px,0px; border: 1px solid #666666; background:#F6F6F6; width:100%; word-break:normal; word-wrap:break-word; } .head { font-weight:bold; font-size:160%; font-family:MS Shell Dlg; width:100%; color:#6587DC; background:#E3EAF9; border:1px solid #5582D2; padding-left:8px; height:24px; } .path { margin-left: 10px; margin-top: 10px; margin-bottom:5px;width:100%; } .info { padding-left:10px;width:100%; } table { font-size:100%; width:100%; border:1px solid #999999; } th { border-bottom:1px solid #999999; text-align:left; padding-left:10px; height:24px; } td { background:#FFFFFF; padding-left:10px; padding-bottom:10px; padding-top:10px; } .btn { width:100%; text-align:right; margin-top:16px; } .hdr { font-weight:bold; border:1px solid #999999; text-align:left; padding-top: 4px; padding-left:10px; height:24px; margin-bottom:-1px; width:100%; } .bdy { width:100%; height:182px; display:block; overflow:scroll; z-index:2; background:#FFFFFF; padding-left:10px; padding-bottom:10px; padding-top:10px; border:1px solid #999999; } button { width:6.9em; height:2.1em; font-size:100%; font-family:MS Shell Dlg; margin-right:15px; } @media print { .bdy { display:block; overflow:visible; } button { display:none; } .head { color:#000000; background:#FFFFFF; border:1px solid #000000; } }
Setting Path:
Explanation
No explanation is available for this setting.
Supported On:
Not available
Pupil Policy
Data collected on: 09/01/2008 12:30:46
General
Details
Domainmhs.internal
OwnerPUPILS\Domain Admins
Created01/08/2006 13:50:20
Modified06/12/2007 12:48:28
User Revisions410 (AD), 410 (sysvol)
Computer Revisions109 (AD), 109 (sysvol)
Unique ID{BA12600A-13B4-4FEF-B597-3EA4DD1DECC2}
GPO StatusEnabled
Links
LocationEnforcedLink StatusPath
PupilsNoEnabledmhs.internal/Moorside/Users/Pupils

This list only includes links in the domain of the GPO.
Security Filtering
The settings in this GPO can only apply to the following groups, users, and computers:
Name
NT AUTHORITY\Authenticated Users
WMI Filtering
WMI Filter NameNone
DescriptionNot applicable
Delegation
These groups and users have the specified permission for this GPO
NameAllowed PermissionsInherited
NT AUTHORITY\Authenticated UsersRead (from Security Filtering)No
NT AUTHORITY\ENTERPRISE DOMAIN CONTROLLERSReadNo
NT AUTHORITY\SYSTEMEdit settings, delete, modify securityNo
PUPILS\Domain AdminsEdit settings, delete, modify securityNo
PUPILS\Enterprise AdminsEdit settings, delete, modify securityNo
Computer Configuration (Enabled)
Windows Settings
Security Settings
Account Policies/Password Policy
PolicySetting
Enforce password history6 passwords remembered
Maximum password age30 days
Minimum password age1 days
Minimum password length6 characters
Password must meet complexity requirementsEnabled
Local Policies/User Rights Assignment
PolicySetting
Deny log on locallymorsguest
Event Log
PolicySetting
Prevent local guests group from accessing application logEnabled
Prevent local guests group from accessing security logEnabled
Prevent local guests group from accessing system logEnabled
Retention method for application logAs needed
Retention method for security logAs needed
Retention method for system logAs needed
Software Restriction Policies
Enforcement
PolicySetting
Apply software restriction policies toAll software files except libraries (such as DLLs)
Apply software restriction policies to the following usersAll users
Designated File Types
File ExtensionFile Type
ADEMicrosoft Office Access Project Extension
ADPMicrosoft Office Access Project
BASBAS File
BATWindows Batch File
CHMCompiled HTML Help file
CMDWindows Command Script
COMApplication
CPLControl Panel extension
CRTSecurity Certificate
EXEApplication
HLPHelp File
HTAHTML Application
INFSetup Information
INSInternet Communication Settings
ISPInternet Communication Settings
LNKShortcut
MDBMicrosoft Office Access Application
MDEMicrosoft Office Access MDE Database
MSCMicrosoft Common Console Document
MSIWindows Installer Package
MSPWindows Installer Patch
MSTMST File
OCXActiveX Control
PCDPCD File
PIFShortcut to Program
REGRegistration Entries
SCRScreen Saver
SHSScrap object
URLInternet Shortcut
VBVB File
WSCWindows Script Component
Trusted Publishers
Allow the following users to select trusted publishersEnd users
Before trusting a publisher, check the following to determine if the certificate is revokedNone
Software Restriction Policies/Security Levels
PolicySetting
Default Security LevelUnrestricted
Software Restriction Policies/Additional Rules
Path Rules
%HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRoot%
Security LevelUnrestricted
Description
Date last modified11/06/2007 09:39:20
%HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRoot%*.exe
Security LevelUnrestricted
Description
Date last modified11/06/2007 09:39:20
%HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRoot%System32\*.exe
Security LevelUnrestricted
Description
Date last modified11/06/2007 09:39:20
%HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ProgramFilesDir%
Security LevelUnrestricted
Description
Date last modified11/06/2007 09:39:20
Administrative Templates
Network/DNS Client
PolicySetting
Connection-Specific DNS SuffixEnabled
DNS Suffix:mhs.internal
PolicySetting
DNS ServersEnabled
IP Addresses:10.4.28.200
PolicySetting
DNS Suffix Search ListEnabled
DNS Suffixes:mhs.internal
PolicySetting
Dynamic UpdateEnabled
Primary DNS SuffixEnabled
Enter a primary DNS suffix:mhs.internal
PolicySetting
Register DNS records with connection-specific DNS suffixEnabled
System/Logon
User Configuration (Enabled)
Windows Settings
Scripts
Logon
NameParameters
\\gold\NETLOGON\logon.vbs
\\gold\LimitLogin$\llogin.vbs
Logoff
NameParameters
\\gold\netlogon\logoff.vbs
\\gold\limitlogin$\llogoff.vbs
Security Settings
Public Key Policies/Autoenrollment Settings
PolicySetting
Enroll certificates automaticallyEnabled
Renew expired certificates, update pending certificates, and remove revoked certificatesDisabled
Update certificates that use certificate templatesDisabled
Software Restriction Policies
Enforcement
PolicySetting
Apply software restriction policies toAll software files except libraries (such as DLLs)
Apply software restriction policies to the following usersAll users except local administrators
Designated File Types
File ExtensionFile Type
aviVideo Clip
BATWindows Batch File
bgiBGInfo Configuration File
COMApplication
CPLControl Panel extension
EXEApplication
INFSetup Information
mp3MP3 Format Sound
MSCMicrosoft Common Console Document
swfSWF File
vbsVBScript Script File
Trusted Publishers
Allow the following users to select trusted publishersEnd users
Before trusting a publisher, check the following to determine if the certificate is revokedNone
Software Restriction Policies/Security Levels
PolicySetting
Default Security LevelDisallowed
Software Restriction Policies/Additional Rules
Hash Rules
bmx.swf; 851 KB; 11/12/2006 00:00:00
File hashDEB70A3B037A06DC55F856AAA2D5E621:870629:32771
Security levelDisallowed
Description
Date last modified08/11/2007 11:36:34
GENLAUN.EXE; 27 KB; 03/10/2007 12:27:51
File hash84C4757F039F69355FA85E8BAF1EAE48:27395:32771
Security levelUnrestricted
Description
Date last modified04/10/2007 09:52:37
jrew.exe; 15 KB; 03/10/2007 12:27:58
File hash998DA38CA6DADF3CC20E6DF3A2CA227E:15107:32771
Security levelUnrestricted
Description
Date last modified04/10/2007 09:52:58
launcher.exe; 37 KB; 03/10/2007 12:27:23
File hashCD7345FE0269845BC5C5A0933A56CCB1:36864:32771
Security levelUnrestricted
Description
Date last modified04/10/2007 09:52:22
Projector.exe (8.5.0.321); Projector; Macromedia Projector; Director 8.5 Shockwave Studio; Macromedia, Inc.
File hash025118C1FD3FB5C4D0F36670EBBDF1CD:1222834:32771
Security levelUnrestricted
Description
Date last modified04/10/2007 09:52:12
ReportExe.exe (1.0.0.0); ReportExe; ReportExe; CCC
File hash251BEE81C385F7D1E2A4DB27A175F2C4:32768:32771
Security levelUnrestricted
Description
Date last modified04/10/2007 09:53:13
Path Rules
%HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRoot%
Security LevelUnrestricted
Description
Date last modified18/01/2006 12:50:02
%HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRoot%\*.exe
Security LevelUnrestricted
Description
Date last modified18/01/2006 12:50:02
%HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ProgramFilesDir%
Security LevelUnrestricted
Description
Date last modified18/01/2006 13:03:28
%programfiles%\Windows NT\Pinball\pinball.exe
Security LevelDisallowed
Description
Date last modified11/06/2007 10:01:21
%systemroot%\system32\freecell.exe
Security LevelDisallowed
Description
Date last modified11/06/2007 09:49:57
%systemroot%\system32\mshearts.exe
Security LevelDisallowed
Description
Date last modified11/06/2007 09:49:43
%systemroot%\system32\sol.exe
Security LevelDisallowed
Description
Date last modified11/06/2007 09:49:15
%systemroot%\system32\spider.exe
Security LevelDisallowed
Description
Date last modified11/06/2007 09:48:15
%systemroot%\system32\winmine.exe
Security LevelDisallowed
Description
Date last modified11/06/2007 09:49:30
*.mdb
Security LevelUnrestricted
Description
Date last modified03/01/2007 14:41:33
*.swf
Security LevelDisallowed
Description
Date last modified06/12/2007 12:48:28
\\bronze\kudos\
Security LevelUnrestricted
Description
Date last modified11/01/2007 08:16:00
\\bronze\NETLOGON\
Security LevelUnrestricted
Description
Date last modified06/11/2007 12:36:30
\\Bronze\psa\
Security LevelUnrestricted
Description
Date last modified09/08/2006 11:40:06
\\gold\LimitLogin$
Security LevelUnrestricted
Description
Date last modified06/11/2007 10:19:53
\\GOLD\netlogon\*.*
Security LevelUnrestricted
Description
Date last modified02/08/2006 12:40:08
\\SILVER\pupils$\
Security LevelUnrestricted
Description
Date last modified13/08/2007 13:15:42
C:\CAI\
Security LevelUnrestricted
Description
Date last modified14/12/2006 12:24:51
C:\Destools\pcbdm
Security LevelUnrestricted
Description
Date last modified02/03/2006 09:40:30
C:\Documents and Settings\All Users\Start Menu\Programs\Startup\*.lnk
Security LevelUnrestricted
Description
Date last modified25/01/2006 11:22:19
C:\History\
Security LevelUnrestricted
Description
Date last modified14/12/2006 12:24:59
C:\localcai\
Security LevelUnrestricted
Description
Date last modified14/12/2006 12:24:44
C:\program files\adobe\acrobat 7.0\reader\*.exe
Security LevelUnrestricted
Description
Date last modified18/01/2006 12:59:03
C:\program files\adobe\photoshop 7.0\*.exe
Security LevelUnrestricted
Description
Date last modified18/01/2006 13:01:18
C:\Program Files\Cascaid\Kudos\
Security LevelUnrestricted
Description
Date last modified03/08/2006 12:00:13
C:\program files\Corel\
Security LevelUnrestricted
Description
Date last modified04/07/2006 11:29:24
C:\Program Files\Corel\Graphics10\Programs\
Security LevelUnrestricted
Description
Date last modified03/04/2006 09:08:19
C:\Program Files\Crocodile Clips\Crocodile Technology 1.6\*.exe
Security LevelUnrestricted
Description
Date last modified24/01/2006 14:59:51
C:\program files\Internet Explorer\iexplore.exe
Security LevelUnrestricted
Description
Date last modified18/01/2006 12:53:02
C:\Program Files\Keep I.T. Easy\Flowol 2\
Security LevelUnrestricted
Description
Date last modified03/05/2006 11:29:04
C:\Program Files\LucidResearch\LASS Secondary Network\*.exe
Security LevelUnrestricted
Description
Date last modified30/01/2006 11:37:16
C:\Program Files\Macromedia\Dreamweaver MX\*.exe
Security LevelUnrestricted
Description
Date last modified18/01/2006 12:59:51
C:\Program Files\Macromedia\Extension Manager\*.exe
Security LevelUnrestricted
Description
Date last modified18/01/2006 13:00:07
C:\Program Files\Macromedia\Firework MX\*.exe
Security LevelUnrestricted
Description
Date last modified18/01/2006 13:00:21
C:\Program Files\Macromedia\Flash MX\*.exe
Security LevelUnrestricted
Description
Date last modified18/01/2006 13:00:32
C:\Program Files\Macromedia\Freehand 10\*.exe
Security LevelUnrestricted
Description
Date last modified18/01/2006 13:00:46
C:\Program Files\Microsoft Office\
Security LevelUnrestricted
Description
Date last modified02/08/2006 11:55:23
C:\program files\network associates\
Security LevelUnrestricted
Description
Date last modified07/02/2006 13:50:45
C:\Program Files\New Wave Concepts\PCB Wizard 3\*.exe
Security LevelUnrestricted
Description
Date last modified24/01/2006 15:03:59
C:\program files\print manager plus - client\*.*
Security LevelUnrestricted
Description
Date last modified26/05/2006 08:16:30
C:\Program Files\QCA Testing\Delivery Point System\TDS\bin\*.*
Security LevelUnrestricted
Description
Date last modified28/04/2006 11:11:10
C:\Program Files\Real\RealPlayer\
Security LevelUnrestricted
Description
Date last modified21/03/2006 14:41:17
C:\Program Files\RealVNC\
Security LevelUnrestricted
Description
Date last modified11/07/2006 13:05:42
C:\program files\windows defender\*.exe
Security LevelDisallowed
Description
Date last modified14/06/2006 08:13:04
C:\Program Files\Windows Media Player
Security LevelUnrestricted
Description
Date last modified04/04/2006 08:17:16
C:\ResultsManager\
Security LevelUnrestricted
Description
Date last modified14/12/2006 12:25:09
C:\Student\
Security LevelUnrestricted
Description
Date last modified14/12/2006 12:25:18
C:\teacher\
Security LevelUnrestricted
Description
Date last modified14/12/2006 12:25:25
C:\Virtual PCs\
Security LevelUnrestricted
Description
Date last modified12/03/2007 12:16:06
C:\windows\system32\*.exe
Security LevelUnrestricted
Description
Date last modified20/01/2006 08:34:22
C:\windows\system32\wscript.exe
Security LevelUnrestricted
Description
Date last modified20/01/2006 15:09:29
D:\
Security LevelUnrestricted
Description
Date last modified01/02/2007 14:26:06
M:\
Security LevelUnrestricted
Description
Date last modified14/12/2006 12:24:25
msmsgs.exe
Security LevelDisallowed
Description
Date last modified20/01/2006 14:54:44
msnmsgr.exe
Security LevelDisallowed
Description
Date last modified30/01/2006 10:55:53
pushprinterconnections.exe
Security LevelUnrestricted
Description
Date last modified03/08/2006 10:58:14
T:\
Security LevelUnrestricted
Description
Date last modified04/10/2007 08:51:08
T:\*.*
Security LevelUnrestricted
Description
Date last modified04/10/2007 09:55:30
Folder Redirection
My Documents
Setting: Basic (Redirect everyone's folder to the same location)
Path: \\%HOMESHARE%%HOMEPATH%
Options
Grant user exclusive rights to My DocumentsDisabled
Move the contents of My Documents to the new locationDisabled
Policy Removal BehaviorLeave contents
Start Menu
Setting: Basic (Redirect everyone's folder to the same location)
Path: \\silver\pupils$
Options
Grant user exclusive rights to Start MenuDisabled
Move the contents of Start Menu to the new locationDisabled
Policy Removal BehaviorLeave contents
Internet Explorer Maintenance
Browser User Interface/Customized Title Bar
Title Bar Text
ICT Network Support
Connection/Proxy Settings
Enable proxy settings
ProtocolServerPort
HTTP10.4.28.2068080
Secure10.4.28.2068080
FTP10.4.28.2068080
Gopher10.4.28.2068080
Socks10.4.28.2068080
Exceptions:Do not use proxy server for addresses beginning with10.*.*.*, *.mhs.internal, *.salford.gov.uk, *.salford.org.uk,
Do not use proxy server for local (intranet) addressesEnabled
Connection/User Agent String
Custom string to be appended to user agent string
Moorside High School Pupil
URLs/Important URLs
NameURL
Home page URLhttp://lithium/intranet
Search bar URLhttp://www.google.co.uk
Online support page URLNot configured
URLs/Favorites and Links
PolicySetting
Place favorites and links at the top of the list in the order specified belowEnabled
Delete existing Favorites and Links, if presentEnabled
Only delete the favorites created by the administratorNot configured
Delete existing channels, if presentEnabled
Favorites\BBC Schools
NameURL
Bitesizehttp://www.bbc.co.uk/schools/gcsebitesize
Revisionhttp://www.bbc.co.uk/schools/revision/
Favorites\Business Studies
NameURL
Richer Soundshttp://www.richersounds.com
Favorites\Geography
NameURL
National Geographichttp://www.nationalgeographic.com
NASAhttp://www.nasa.gov
Favorites\ICT
NameURL
OCR ICT Websitehttp://curriculum.ttsonline.net
Internal Mailhttps://gold/exchange
Favorites\Languages
NameURL
Linguascopehttp://www.linguascope.com
Languages Onlinehttp://www.languagesonline.org.uk
Favorites\Technology
NameURL
Technology Studenthttp://www.technologystudent.com
Crocodiliahttp://www.crocodilia.co.uk
Links
NameURL
Google UKhttp://www.google.co.uk
Pupil Intranethttp://lithium/intranet
SAM Learninghttp://www.samlearning.com
Mirago UKhttp://zone.mirago.co.uk
Administrative Templates
Control Panel
Control Panel/Display
PolicySetting
Hide Appearance and Themes tabEnabled
Hide Desktop tabEnabled
Hide Screen Saver tabEnabled
Hide Settings tabEnabled
Remove Display in Control PanelEnabled
Screen SaverEnabled
Screen Saver executable nameEnabled
Screen Saver executable nameP:\themes\moorside4.scr
PolicySetting
Screen Saver timeoutEnabled
Number of seconds to wait to enable the Screen Saver
Seconds:120
Control Panel/Display/Desktop Themes
PolicySetting
Load a specific visual style file or force Windows ClassicEnabled
Path to Visual Style:\\silver\psa\themes\Royale\Royale.msstyles
To select Luna type:
%windir%\resources\Themes\Luna\Luna.msstyles
To select a different visual style, type:
ie: \\<server>\share\Corp.msstyles
To select Windows Classic, leave the box
above blank and enable this setting
PolicySetting
Prevent selection of windows and buttons stylesEnabled
Prohibit selection of font sizeEnabled
Prohibit Theme color selectionEnabled
Remove Theme optionEnabled
Control Panel/Printers
Desktop
Desktop/Active Desktop
PolicySetting
Allow only bitmapped wallpaperDisabled
Disable Active DesktopEnabled
Disallows HTML and Jpg Wallpaper
PolicySetting
Disable all itemsEnabled
Enable Active DesktopDisabled
Prohibit changesEnabled
Prohibit editing itemsEnabled
Microsoft Office 2003/Tools | Customize | Options
PolicySetting
Always show full menusEnabled
Check to enforce setting on; uncheck to enforce setting offEnabled
Microsoft Office Communicator Policy Settings/Microsoft Office Communicator Feature Policies
PolicySetting
Warning TextEnabled
Warning TextAll Messages are monitored and anyone found to be abusing the system will be banned and disciplinary procedures will be enforced
Microsoft Office Excel 2003/Disable items in user interface/Predefined
PolicySetting
Disable command bar buttons and menu itemsDisabled
Disable shortcut keysEnabled
Ctrl+F (Find...)Disabled
Ctrl+K (Insert | Hyperlink...)Disabled
Alt+F8 (Tools | Macro | Macros...)Disabled
Alt+F11 (Tools | Macro | Visual Basic Editor)Enabled
Alt+Shift+F11 (Tools | Macro | Microsoft Script Editor)Enabled
Microsoft Office Excel 2003/Tools | Macro/Security...
PolicySetting
Security LevelEnabled
Security LevelLow
PolicySetting
Suppress High Security Macro alert for unsigned MacrosEnabled
Check to enforce setting on; uncheck to enforce setting offEnabled
PolicySetting
Trust all installed add-ins and templatesEnabled
Check to enforce setting on; uncheck to enforce setting offEnabled
Microsoft Office Excel 2003/Tools | Options.../General
PolicySetting
Default file locationEnabled
Default file locationH:\
Microsoft Office Excel 2003/Tools | Options.../Save
PolicySetting
AutoRecover save locationEnabled
AutoRecover save location:H:\
Microsoft Office Excel 2003/Tools | Options.../Transition
PolicySetting
Microsoft Excel menu or Help keyEnabled
Help key47
Enter ASCII value for key of choice (e.g. '/'=47)
Microsoft Excel menus or Lotus 1-2-3 HelpMicrosoft Excel menus
Microsoft Office PowerPoint 2003/Tools | Options.../Save
PolicySetting
Default file locationEnabled
Default file locationH:\
Microsoft Office Publisher 2003/Default File Locations
PolicySetting
Picture locationEnabled
Picture locationH:\
PolicySetting
Publication locationEnabled
Publication locationH:\
Microsoft Office Word 2003/Tools | Options.../File Locations
PolicySetting
DocumentsEnabled
DocumentsH:\
Network/Network Connections
Network/Offline Files
PolicySetting
Action on server disconnectEnabled
Specify how the system is to respond when a network server
becomes unavailable.
Action: Never go offline
Never go offline = Server's files are unavailable to local computer
Work offline = Server's files are available to local computer
PolicySetting
Do not automatically make redirected folders available offlineEnabled
Prevent use of Offline Files folderEnabled
Prohibit user configuration of Offline FilesEnabled
Prevents users from changing any cache configuration settings.
PolicySetting
Remove 'Make Available Offline'Enabled
Synchronize all offline files before logging offDisabled
Synchronize all offline files when logging onDisabled
Start Menu
PolicySetting
Start MenuEnabled
Remove Favorites menu from Start Menu 
Remove Find menu from Start Menu 
Remove Run menu from Start Menu 
Remove the Active Desktop item from the Settings menuEnabled
Remove the Windows Update item from the Settings menu 
Disable drag and drop context menus on the Start Menu 
Remove the Folder Options menu item from the Settings menu 
Remove Documents menu from Start Menu 
Do not keep history of recently opened documents 
Clear history of recent opened documents 
Disable Logoff 
Disable Shut Down command from Start Menu 
Disable changes to Printers and Control Panel Settings 
Disable changes to Taskbar and Start Menu Settings 
Disable context menu for Taskbar 
Add Run Dlg checkbox for New Memory Space (Windows NT only)Disabled
Start Menu and Taskbar
PolicySetting
Add Logoff to the Start MenuEnabled
Clear history of recently opened documents on exitEnabled
Do not display any custom toolbars in the taskbarEnabled
Do not keep history of recently opened documentsEnabled
Do not use the search-based method when resolving shell shortcutsEnabled
Do not use the tracking-based method when resolving shell shortcutsEnabled
Force classic Start MenuEnabled
Gray unavailable Windows Installer programs Start Menu shortcutsEnabled
Lock the TaskbarEnabled
Prevent changes to Taskbar and Start Menu SettingsEnabled
Remove access to the context menus for the taskbarEnabled
Remove and prevent access to the Shut Down commandEnabled
Remove Balloon Tips on Start Menu itemsEnabled
Remove common program groups from Start MenuEnabled
Remove Documents menu from Start MenuEnabled
Remove Drag-and-drop context menus on the Start MenuEnabled
Remove frequent programs list from the Start MenuEnabled
Remove Help menu from Start MenuEnabled
Remove links and access to Windows UpdateEnabled
Remove My Documents icon from Start MenuEnabled
Remove My Music icon from Start MenuEnabled
Remove My Network Places icon from Start MenuEnabled
Remove My Pictures icon from Start MenuEnabled
Remove Network Connections from Start MenuEnabled
Remove pinned programs list from the Start MenuEnabled
Remove programs on Settings menuEnabled
Remove Run menu from Start MenuEnabled
Remove Search menu from Start MenuDisabled
Remove Set Program Access and Defaults from Start menuEnabled
Remove the "Undock PC" button from the Start MenuEnabled
Turn off notification area cleanupEnabled
Turn off personalized menusEnabled
Turn off user trackingEnabled
System
PolicySetting
Code signing for device driversEnabled
When Windows detects a driver file without a digital signature:Block
PolicySetting
Configure driver search locationsEnabled
Don't search floppy disk drivesEnabled
Don't search CD-ROM drivesEnabled
Don't search Windows UpdateEnabled
PolicySetting
Don't display the Getting Started welcome screen at logonEnabled
Prevent access to registry editing toolsEnabled
Disable regedit from running silently?Yes
PolicySetting
Prevent access to the command promptEnabled
Disable the command prompt script processing also?No
PolicySetting
Restrict these programs from being launched from HelpEnabled
Enter executables separated by commas:iexplore.exe
Example: calc.exe,paint.exe
PolicySetting
Turn off AutoplayEnabled
Turn off Autoplay on:All drives
PolicySetting
Windows Automatic UpdatesDisabled
System/Ctrl+Alt+Del Options
System/Group Policy
PolicySetting
Group Policy domain controller selectionEnabled
When Group Policy Object Editor is selecting a domain controller to use, it should:Use the Primary Domain Controller
PolicySetting
Group Policy refresh interval for usersEnabled
This setting allows you to customize how often Group Policy is applied
to users. The range is 0 to 64800 minutes (45 days).
Minutes:5
This is a random time added to the refresh interval to prevent
all clients from requesting Group Policy at the same time.
The range is 0 to 1440 minutes (24 hours)
Minutes:5
PolicySetting
Group Policy slow link detectionEnabled
Connection speed (Kbps):500
Enter 0 to disable slow link detection.
System/Internet Communication Management/Internet Communication settings
System/Scripts
Windows Components/Internet Explorer
Windows Components/Internet Explorer/Browser menus
Windows Components/Internet Explorer/Internet Control Panel
Windows Components/Internet Explorer/Internet Control Panel/Advanced Page
Windows Components/Internet Explorer/Internet Control Panel/Security Page
Windows Components/Internet Explorer/Internet Control Panel/Security Page/Internet Zone
PolicySetting
Logon optionsEnabled
Logon optionsAutomatic logon with current username and password
Windows Components/Internet Explorer/Internet Control Panel/Security Page/Intranet Zone
PolicySetting
Access data sources across domainsEnabled
Access data sources across domainsDisable
PolicySetting
Allow active content over restricted protocols to access my computerEnabled
Allow active content over restricted protocols to access my computerPrompt
PolicySetting
Allow active scriptingEnabled
Allow active scriptingEnable
PolicySetting
Allow binary and script behaviorsEnabled
Allow Binary and Script BehaviorsEnable
PolicySetting
Allow drag and drop or copy and paste filesEnabled
Allow drag and drop or copy and paste filesEnable
PolicySetting
Allow file downloadsEnabled
Allow file downloadsEnable
PolicySetting
Allow font downloadsEnabled
Allow font downloadsEnable
PolicySetting
Allow installation of desktop itemsEnabled
Allow installation of desktop itemsPrompt
PolicySetting
Allow META REFRESHEnabled
Allow META REFRESHEnable
PolicySetting
Allow paste operations via scriptEnabled
Allow paste operations via scriptEnable
PolicySetting
Allow script-initiated windows without size or position constraintsEnabled
Allow script-initiated windows without size or position constraintsDisable
PolicySetting
Automatic prompting for ActiveX controlsEnabled
Automatic prompting for ActiveX controlsDisable
PolicySetting
Automatic prompting for file downloadsEnabled
Automatic prompting for file downloadsDisable
PolicySetting
Display mixed contentEnabled
Display mixed contentPrompt
PolicySetting
Do not prompt for client certificate selection when no certificates or only one certificate exists.Enabled
Do not prompt for client certificate selection when no certificates or only one certificate exists.Disable
PolicySetting
Download signed ActiveX controlsEnabled
Download signed ActiveX controlsPrompt
PolicySetting
Download unsigned ActiveX controlsEnabled
Download unsigned ActiveX controlsDisable
PolicySetting
Initialize and script ActiveX controls not marked as safeEnabled
Initialize and script ActiveX controls not marked as safeDisable
PolicySetting
Java permissionsEnabled
Java permissionsHigh safety
PolicySetting
Launching applications and files in an IFRAMEEnabled
Launching applications and files in an IFRAMEPrompt
PolicySetting
Logon optionsEnabled
Logon optionsAutomatic logon only in Intranet zone
PolicySetting
Navigate sub-frames across different domainsEnabled
Navigate sub-frames across different domainsEnable
PolicySetting
Open files based on content, not file extensionEnabled
Open files based on content, not file extensionEnable
PolicySetting
Run .NET Framework-reliant components not signed with AuthenticodeEnabled
Run .NET Framework-reliant components not signed with AuthenticodeEnable
PolicySetting
Run .NET Framework-reliant components signed with AuthenticodeEnabled
Run .NET Framework-reliant components signed with AuthenticodeEnable
PolicySetting
Run ActiveX controls and pluginsEnabled
Run ActiveX controls and pluginsEnable
PolicySetting
Script ActiveX controls marked safe for scriptingEnabled
Script ActiveX controls marked safe for scriptingEnable
PolicySetting
Scripting of Java appletsEnabled
Scripting of Java appletsEnable
PolicySetting
Software channel permissionsEnabled
Software channel permissionsMedium safety
PolicySetting
Submit non-encrypted form dataEnabled
Submit non-encrypted form dataPrompt
PolicySetting
Use Pop-up BlockerEnabled
Use Pop-up BlockerEnable
PolicySetting
Userdata persistenceEnabled
Userdata persistenceEnable
PolicySetting
Web sites in less privileged Web content zones can navigate into this zoneEnabled
Web sites in less privileged Web content zones can navigate into this zoneEnable
Windows Components/Internet Explorer/Internet Control Panel/Security Page/Locked-Down Restricted Sites Zone
PolicySetting
Access data sources across domainsEnabled
Access data sources across domainsDisable
PolicySetting
Allow active scriptingEnabled
Allow active scriptingDisable
PolicySetting
Allow binary and script behaviorsEnabled
Allow Binary and Script BehaviorsDisable
PolicySetting
Allow drag and drop or copy and paste filesEnabled
Allow drag and drop or copy and paste filesPrompt
PolicySetting
Allow file downloadsEnabled
Allow file downloadsDisable
PolicySetting
Allow font downloadsEnabled
Allow font downloadsPrompt
PolicySetting
Allow installation of desktop itemsEnabled
Allow installation of desktop itemsDisable
PolicySetting
Allow META REFRESHEnabled
Allow META REFRESHDisable
PolicySetting
Allow paste operations via scriptEnabled
Allow paste operations via scriptDisable
PolicySetting
Allow script-initiated windows without size or position constraintsEnabled
Allow script-initiated windows without size or position constraintsDisable
PolicySetting
Automatic prompting for ActiveX controlsEnabled
Automatic prompting for ActiveX controlsDisable
PolicySetting
Automatic prompting for file downloadsEnabled
Automatic prompting for file downloadsDisable
PolicySetting
Display mixed contentEnabled
Display mixed contentPrompt
PolicySetting
Do not prompt for client certificate selection when no certificates or only one certificate exists.Enabled
Do not prompt for client certificate selection when no certificates or only one certificate exists.Disable
PolicySetting
Download signed ActiveX controlsEnabled
Download signed ActiveX controlsDisable
PolicySetting
Download unsigned ActiveX controlsEnabled
Download unsigned ActiveX controlsDisable
PolicySetting
Initialize and script ActiveX controls not marked as safeEnabled
Initialize and script ActiveX controls not marked as safeDisable
PolicySetting
Java permissionsEnabled
Java permissionsDisable Java
PolicySetting
Launching applications and files in an IFRAMEEnabled
Launching applications and files in an IFRAMEDisable
PolicySetting
Logon optionsEnabled
Logon optionsPrompt for user name and password
PolicySetting
Navigate sub-frames across different domainsEnabled
Navigate sub-frames across different domainsDisable
PolicySetting
Open files based on content, not file extensionEnabled
Open files based on content, not file extensionDisable
PolicySetting
Run .NET Framework-reliant components not signed with AuthenticodeEnabled
Run .NET Framework-reliant components not signed with AuthenticodeDisable
PolicySetting
Run .NET Framework-reliant components signed with AuthenticodeEnabled
Run .NET Framework-reliant components signed with AuthenticodeDisable
PolicySetting
Run ActiveX controls and pluginsEnabled
Run ActiveX controls and pluginsDisable
PolicySetting
Script ActiveX controls marked safe for scriptingEnabled
Script ActiveX controls marked safe for scriptingDisable
PolicySetting
Scripting of Java appletsEnabled
Scripting of Java appletsDisable
PolicySetting
Software channel permissionsEnabled
Software channel permissionsHigh safety
PolicySetting
Submit non-encrypted form dataEnabled
Submit non-encrypted form dataPrompt
PolicySetting
Use Pop-up BlockerEnabled
Use Pop-up BlockerEnable
PolicySetting
Userdata persistenceEnabled
Userdata persistenceDisable
PolicySetting
Web sites in less privileged Web content zones can navigate into this zoneEnabled
Web sites in less privileged Web content zones can navigate into this zoneDisable
Windows Components/Internet Explorer/Toolbars
PolicySetting
Configure Toolbar ButtonsEnabled
Show Back buttonEnabled
Show Forward buttonEnabled
Show Stop buttonEnabled
Show Refresh buttonEnabled
Show Home buttonEnabled
Show Search buttonDisabled
Show Favorites buttonDisabled
Show History buttonDisabled
Show Folders buttonDisabled
Show Fullscreen buttonDisabled
Show Tools buttonDisabled
Show Mail buttonDisabled
Show Font size buttonDisabled
Show Print buttonDisabled
Show Edit buttonDisabled
Show Discussions buttonDisabled
Show Cut buttonDisabled
Show Copy buttonDisabled
Show Paste buttonDisabled
Show Encoding buttonDisabled
PolicySetting
Disable customizing browser toolbar buttonsEnabled
Disable customizing browser toolbarsEnabled
Windows Components/Windows Explorer
Windows Components/Windows Explorer/Common Open File Dialog
Windows Components/Windows Installer
Windows Components/Windows Media Player
Windows Components/Windows Media Player/Networking
PolicySetting
Hide Network TabEnabled
Windows Components/Windows Media Player/Playback
PolicySetting
Prevent Codec DownloadEnabled
Windows Components/Windows Media Player/User Interface
PolicySetting
Hide Privacy TabEnabled
Hide Security TabEnabled
Windows Components/Windows Messenger
Windows Components/Windows Movie Maker
Windows Media Player customizations
PolicySetting
Customize the Windows Media PlayerEnabled
Title bar of the Windows Media Player:Moorside High School
Button name on Windows Media Player navigation bar:
URL for button on Windows Media Player navigation bar:
PolicySetting
Prevent automatic codec downloadEnabled
Extra Registry Settings
Display names for some settings cannot be found. You might be able to resolve this issue by updating the .ADM files used by Group Policy Management.

SettingState
Software\Microsoft\Internet Explorer\media\Autoplayno
Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\Btn_Media2
Software\Policies\Microsoft\Internet Explorer\Control Panel\DisableDeleteBrowsingHistory1
Software\Policies\Microsoft\Internet Explorer\Control Panel\DisableDeleteForms1
Software\Policies\Microsoft\Internet Explorer\Control Panel\DisableDeletePasswords1
Software\Policies\Microsoft\Internet Explorer\Control Panel\Settings1
Software\Policies\Microsoft\Internet Explorer\Main\AllowWindowReuse1
Software\Policies\Microsoft\Internet Explorer\Main\AlwaysShowMenus0
Software\Policies\Microsoft\Internet Explorer\Main\DisableFirstRunCustomize1
Software\Policies\Microsoft\Internet Explorer\Main\FormSuggest Passwordsno
Software\Policies\Microsoft\Internet Explorer\Main\FormSuggest PW Askno
Software\Policies\Microsoft\Internet Explorer\Main\Start Pagehttp://lithium/intranet
Software\Policies\Microsoft\Internet Explorer\Main\Use FormSuggestno
Software\Policies\Microsoft\Internet Explorer\PhishingFilter\Enabled2
Software\Policies\Microsoft\Internet Explorer\Restrictions\DisablePopupFilterLevel1
Software\Policies\Microsoft\Internet Explorer\Restrictions\RestrictPopupExceptionList1
Software\Policies\Microsoft\Internet Explorer\Security\P3Global\Enabled0
Software\Policies\Microsoft\Internet Explorer\SQM\DisableCustomerImprovementProgram1
Software\Policies\Microsoft\Internet Explorer\TabbedBrowsing\PopupsUseNewWindow2
Software\Policies\Microsoft\Windows\CurrentVersion\Explorer\AutoComplete\AutoSuggestno