Jump to content

Recommended Posts

Posted

Hi,

 

I'm on Windows Server 2016. I downloaded the Windows 11 ADMX files and theyve extracted to C:\Program Files (x86)\Microsoft Group Policy\Windows 11 October 2021 Update (21H2)\PolicyDefinitions

 

Where do I put them now as they dont show up in GP Editor? And is it just a matter of pasting them in or do I have to delete the old ones?

 

Also, will it mess up my current GPO's on Windows 10?

 

 

Thankyou.

Posted

Update the Central Policy Store

I always take a copy of the old PolicyDefinitions folder and then paste the files in, allowing them to merge with the current folders.

 

Shouldn't kill the Win10 GPOs as they tend to use the same settings and just add the new ones needed, and then these will be ignored by Win10 machines.

  • Thanks 1
Posted (edited)

Where do you usually put them? You should have a 'Central Store' (Policy Definitions) in SYSVOL... 'Program Files' is for local GPOs I think.

 

I always found that odd with the ADMX self extractor, (but I think you used to be able to change the destination) though I guess not everyone who uses ADMX has a SYSVOL or runs an AD/GPO based network...?

 

As above, backup/copy your original ADMX somewhere safe first!

 

EDIT:

 

 

Windows 11 ADMX Templates Are Not Backward Compatible -- Redmondmag.com

Its a little different this time around. The above article explains there will be some hoops to jump through if you want to test things out.

 

How has that not been widely shouted about on here...?

Edited by Koldov
  • Thanks 2
  • 2 weeks later...
Posted (edited)
How has that not been widely shouted about on here...?

 

To be clear, Windows 11 ADMX files are backwards compatible with Windows 10/8.1/8/7 etc.

 

There's only 9 policies which are specific to Windows 10 which aren't in the Windows 11 ADMX, so I suspect most people can upgrade without any issues. Here's a link to the list as of Feb this year, I doubt the Windows 10 list has changed since then:

 

https://techcommunity.microsoft.com/t5/core-infrastructure-and-security/windows-10-or-windows-11-gpo-admx-which-one-to-use-for-your/ba-p/3063322

 

Edit: The problem comes if they introduce a new feature and accompanying GP settings specifically for Windows 10 and not Windows 11, in that case the Windows 11 ADMX files will not reflect those settings and you'll have to load the Windows 10 ADMX files from a client store instead. Obviously not ideal and a terrible decision, but to me it seems pretty unlikely that we'll actually need to do this during a transition period.

Edited by JRowley
  • Thanks 2
Posted (edited)

Can't remember exactly what it was now, but I seem to remember there was a similar situation (might have been moving from XP to 7, or 7 to 10...) where there was all of a sudden a change in how Internet Explorer GPOs were handled.

 

There was no way to undo a particular setting in the new ADMX and you had to have a machine on the old OS with RSAT or something to change the setting.

Edited by Koldov
Posted
Is this article saying that new ADMX policies are installed in a new folder called PolicyDefinitions-21H2 (for example), along side the original PolicyDefinitions folder? I've always installed new ADMX templates into PolicyDefinitions and overwritten the older files.
Posted (edited)

I think it's only a first step before merging the 2 together, it's a bit like making a copy of the old Policy Definitions folder before you install and overwrite with the new ones (which we all do, right?)...

 

"When the operating system collection is completed, merge any OS extension or application ADMX/ADML files into the new PolicyDefinitions folder.

When this is finished, rename the current PolicyDefinitions folder to reflect that it's the previous version, such as PolicyDefinitions-1709. Then, rename the new folder (such as PolicyDefinitions-1803) to the production name. We suggest this approach as you can revert to the old folder in case you experience a severe problem with the new set of files. When you don't experience any problems with the new set of files, you can move the older PolicyDefinitions folder to an archive location outside sysvol folder."

Edited by Koldov
  • 1 month later...

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now



×
×
  • Create New...