Group Policy Management
body { font-size:68%;font-family:MS Shell Dlg; margin:0px,0px,0px,0px; border: 1px solid #666666; background:#F6F6F6; width:100%; word-break:normal; word-wrap:break-word; } .head { font-weight:bold; font-size:160%; font-family:MS Shell Dlg; width:100%; color:#6587DC; background:#E3EAF9; border:1px solid #5582D2; padding-left:8px; height:24px; } .path { margin-left: 10px; margin-top: 10px; margin-bottom:5px;width:100%; } .info { padding-left:10px;width:100%; } table { font-size:100%; width:100%; border:1px solid #999999; } th { border-bottom:1px solid #999999; text-align:left; padding-left:10px; height:24px; } td { background:#FFFFFF; padding-left:10px; padding-bottom:10px; padding-top:10px; } .btn { width:100%; text-align:right; margin-top:16px; } .hdr { font-weight:bold; border:1px solid #999999; text-align:left; padding-top: 4px; padding-left:10px; height:24px; margin-bottom:-1px; width:100%; } .bdy { width:100%; height:182px; display:block; overflow:scroll; z-index:2; background:#FFFFFF; padding-left:10px; padding-bottom:10px; padding-top:10px; border:1px solid #999999; } button { width:6.9em; height:2.1em; font-size:100%; font-family:MS Shell Dlg; margin-right:15px; } @media print { .bdy { display:block; overflow:visible; } button { display:none; } .head { color:#000000; background:#FFFFFF; border:1px solid #000000; } }
Setting Path:
Explanation
No explanation is available for this setting.
Supported On:
Not available
Group Policy Results
BGFA\administrator on BGFA\DESKTOP-K0G4LUG
Data collected on: 03/05/2018 15:29:41
Summary
 During last computer policy refresh on 03/05/2018 15:21:22
 
No Errors Detected
A fast link was detected More information...
 During last user policy refresh on 03/05/2018 15:22:06
 
No Errors Detected
A fast link was detected More information...
Computer Details
General
Computer nameBGFA\DESKTOP-K0G4LUG
Domainbgfa.internal
SiteDefault-First-Site-Name
Organizational Unitbgfa.internal/Testing OU
Security Group Membership
show
Component Status
Component NameStatusTime TakenLast Process TimeEvent Log
Group Policy InfrastructureSuccess10 Second(s) 269 Millisecond(s)03/05/2018 15:21:22View Log
RegistrySuccess609 Millisecond(s)03/05/2018 15:15:50View Log
SecuritySuccess2 Second(s) 172 Millisecond(s)03/05/2018 15:15:52View Log
Software InstallationSuccess359 Millisecond(s)03/05/2018 15:15:53View Log
Settings
Policies
Software Settings
Installed Applications
Google Chrome
Winning GPOGoogle Chrome
Product Information
NameGoogle Chrome
Version66.219
LanguageEnglish (United States)
Platformx64
Support URL
Deployment Information
GeneralSetting
Deployment typeAssigned
Deployment source\\bgf-sr-003\applic$\GoogleChrome\googlechromestandaloneenterprise64.msi
Uninstall this application when it falls out of the scope of managementEnabled

Advanced Deployment OptionsSetting
Ignore language when deploying this packageDisabled
Make this 32-bit X86 application available to Win64 computersDisabled
Include OLE class and product informationDisabled

Diagnostic InformationSetting
Product code{be40b3e0-129e-313c-b663-94c192c5143f}
Deployment Count0
Security
Permissions
TypeNamePermissionInherited
AllowBGFA\Domain AdminsFull controlNo
AllowNT AUTHORITY\Authenticated UsersReadNo
AllowNT AUTHORITY\SYSTEMFull controlNo
AllowBGFA\Domain AdminsRead, WriteYes
AllowBGFA\Enterprise AdminsRead, WriteYes
AllowNT AUTHORITY\ENTERPRISE DOMAIN CONTROLLERSReadYes
AllowNT AUTHORITY\Authenticated UsersReadYes
AllowNT AUTHORITY\SYSTEMRead, WriteYes
AllowBGFA\lmi123Read, WriteYes
AllowCREATOR OWNERRead, WriteYes
Allow inheritable permissions from the parent to propagate to this object and all child objectsEnabled
Advanced
UpgradesSetting
Required upgrade for existing packagesEnabled
Packages that this package will upgradeGPO
None
Packages that will upgrade this packageGPO
None

Transforms
None
Cause
This application was applied due to the following conditions:
The application was assigned.
Its language matched the system language.
Windows Settings
Security Settings
Account Policies/Password Policy
PolicySettingWinning GPO
Password must meet complexity requirementsDisabledDefault Domain Policy
Store passwords using reversible encryptionDisabledDefault Domain Policy
Account Policies/Account Lockout Policy
PolicySettingWinning GPO
Account lockout threshold0 invalid logon attemptsDefault Domain Policy
Local Policies/User Rights Assignment
PolicySettingWinning GPO
Allow log on through Terminal ServicesBGFA\AdminStaffGroup, EveryoneEnable RDC
Local Policies/Security Options
Network Access
PolicySettingWinning GPO
Network access: Allow anonymous SID/Name translationDisabledDefault Domain Policy
Network Security
PolicySettingWinning GPO
Network security: Do not store LAN Manager hash value on next password changeEnabledDefault Domain Policy
Network security: Force logoff when logon hours expireDisabledDefault Domain Policy
Public Key Policies/Certificate Services Client - Auto-Enrollment Settings
PolicySettingWinning GPO
Automatic certificate managementEnabled[Default setting]
OptionSetting
Enroll new certificates, renew expired certificates, process pending certificate requests and remove revoked certificatesDisabled
Update and manage certificates that use certificate templates from Active DirectoryDisabled
Public Key Policies/Encrypting File System
Certificates
Issued ToIssued ByExpiration DateIntended PurposesWinning GPO
administratoradministrator05/02/2117 11:55:55File RecoveryDefault Domain Policy

For additional information about individual settings, launch the Local Group Policy Object Editor.
Windows Firewall with Advanced Security
Global Settings
PolicySettingWinning GPO
Policy version2.26Disable Firewall
Disable stateful FTPNot Configured
Disable stateful PPTPNot Configured
IPsec exemptNot Configured
IPsec through NATNot Configured
Preshared key encodingNot Configured
SA idle timeNot Configured
Strong CRL checkNot Configured
Domain Profile Settings
PolicySettingWinning GPO
Firewall stateOffDisable Firewall
Inbound connectionsNot Configured
Outbound connectionsNot Configured
Apply local firewall rulesNot Configured
Apply local connection security rulesNot Configured
Display notificationsNot Configured
Allow unicast responsesNot Configured
Log dropped packetsNot Configured
Log successful connectionsNot Configured
Log file pathNot Configured
Log file maximum size (KB)Not Configured
Connection Security Settings
Administrative Templates
Policy definitions (ADMX files) retrieved from the central store.
Google/Google Chrome
PolicySettingWinning GPO
Enable Bookmark BarEnabledGoogle Chrome
Enable reporting of usage and crash-related dataDisabledGoogle Chrome
Show Home button on toolbarEnabledGoogle Chrome
Google/Google Chrome - Default Settings (users can override)
PolicySettingWinning GPO
Show Home button on toolbarEnabledGoogle Chrome
Google/Google Chrome - Default Settings (users can override)/Home page
PolicySettingWinning GPO
Configure the home page URLEnabledGoogle Chrome
Home page URLwww.google.co.uk
Google/Google Chrome/Extensions
PolicySettingWinning GPO
Configure the list of force-installed apps and extensionsEnabledGoogle Chrome
Extension/App IDs and update URLs to be silently installed
bijihlabcfdnabacffofojgmehjdielb ;http://clients2.google.com/service/update2/crx
Google/Google Chrome/Home page
PolicySettingWinning GPO
Configure the home page URLEnabledGoogle Chrome
Home page URLwww.google.co.uk
Google/Google Chrome/Startup pages
PolicySettingWinning GPO
Action on startupEnabledGoogle Chrome
Action on startupOpen a list of URLs
PolicySettingWinning GPO
URLs to open on startupEnabledGoogle Chrome
URLs to open on startup
http://www.google.co.uk
Network/Network Connections/Windows Defender Firewall/Domain Profile
PolicySettingWinning GPO
Windows Defender Firewall: Allow inbound Remote Desktop exceptionsEnabledEnable RDC
Allow unsolicited incoming messages from these IP addresses:
Syntax:
Type "*" to allow messages from any network, or
else type a comma-separated list that contains
any number or combination of these:
IP addresses, such as 10.0.0.1
Subnet descriptions, such as 10.2.3.0/24
The string "localsubnet"
Example: to allow messages from 10.0.0.1,
10.0.0.2, and from any system on the
local subnet or on the 10.3.4.x subnet,
type the following in the "Allow unsolicited"
incoming messages from these IP addresses":
10.0.0.1,10.0.0.2,localsubnet,10.3.4.0/24
PolicySettingWinning GPO
Windows Defender Firewall: Protect all network connectionsDisabledDisable Firewall
Windows Components/File Explorer
PolicySettingWinning GPO
Set a default associations configuration fileEnabledGoogle Chrome Default Browser
Default Associations Configuration File\\BGF-SR-003\netlogon\AppAssociations.xml
Windows Components/Remote Desktop Services/Remote Desktop Session Host/Connections
PolicySettingWinning GPO
Allow users to connect remotely by using Remote Desktop ServicesEnabledEnable RDC
Group Policy Objects
Applied GPOs
Default Domain Policy [{31B2F340-016D-11D2-945F-00C04FB984F9}]
Link Locationbgfa.internal
Extensions Configured{B1BE8D72-6EAC-11D2-A4EA-00C04F79F83A}
Security
Registry
EnforcedNo
DisabledNone
Security FiltersNT AUTHORITY\Authenticated Users
RevisionAD (15), SYSVOL (15)
WMI Filter 
Disable Firewall [{E2E561B0-28D1-4400-96CE-179C567003A9}]
Link Locationbgfa.internal/Testing OU
Extensions ConfiguredRegistry
EnforcedNo
DisabledNone
Security FiltersNT AUTHORITY\Authenticated Users
RevisionAD (4), SYSVOL (4)
WMI Filter 
Enable RDC [{B2AD1B5D-06A9-40B4-9511-30EE125C5DCB}]
Link Locationbgfa.internal/Testing OU
Extensions ConfiguredSecurity
Registry
EnforcedNo
DisabledNone
Security FiltersNT AUTHORITY\Authenticated Users
RevisionAD (5), SYSVOL (5)
WMI Filter 
Enable RDP [{7359E967-D695-41AB-AD9C-362B54FF2602}]
Link Locationbgfa.internal
Extensions ConfiguredSecurity
EnforcedNo
DisabledNone
Security FiltersNT AUTHORITY\Authenticated Users
RevisionAD (3), SYSVOL (3)
WMI Filter 
Google Chrome [{9F5486EE-4FFE-4EFA-90DC-0F0F7EB9B194}]
Link Locationbgfa.internal/Testing OU
Extensions ConfiguredSoftware Installation
Registry
EnforcedNo
DisabledNone
Security FiltersNT AUTHORITY\Authenticated Users
RevisionAD (12), SYSVOL (12)
WMI Filter 
Google Chrome Default Browser [{3A1C7939-7156-473D-AB2F-C2D231C9B388}]
Link Locationbgfa.internal/Testing OU
Extensions ConfiguredRegistry
EnforcedNo
DisabledNone
Security FiltersNT AUTHORITY\Authenticated Users
RevisionAD (1), SYSVOL (1)
WMI Filter 
Denied GPOs
Local Group Policy [LocalGPO]
Link LocationLocal
Extensions Configured 
EnforcedNo
DisabledNone
Security Filters 
RevisionAD (0), SYSVOL (0)
WMI Filter 
Reason DeniedEmpty
WMI Filters
NameValueReference GPO(s)
None
User Details
General
User nameBGFA\administrator
Domainbgfa.internal
Security Group Membership
show
Component Status
Component NameStatusTime TakenLast Process TimeEvent Log
Group Policy InfrastructureSuccess435 Millisecond(s)03/05/2018 15:22:06View Log
Settings
No settings defined.
Group Policy Objects
Applied GPOs
Denied GPOs
Local Group Policy [LocalGPO]
Link LocationLocal
Extensions Configured 
EnforcedNo
DisabledNone
Security Filters 
RevisionAD (0), SYSVOL (0)
WMI Filter 
Reason DeniedEmpty
WMI Filters
NameValueReference GPO(s)
None