Sonic007 Posted June 9, 2022 Posted June 9, 2022 Hi, I'm on Windows Server 2016. I downloaded the Windows 11 ADMX files and theyve extracted to C:\Program Files (x86)\Microsoft Group Policy\Windows 11 October 2021 Update (21H2)\PolicyDefinitions Where do I put them now as they dont show up in GP Editor? And is it just a matter of pasting them in or do I have to delete the old ones? Also, will it mess up my current GPO's on Windows 10? Thankyou.
TechMonkey Posted June 9, 2022 Posted June 9, 2022 Update the Central Policy Store I always take a copy of the old PolicyDefinitions folder and then paste the files in, allowing them to merge with the current folders. Shouldn't kill the Win10 GPOs as they tend to use the same settings and just add the new ones needed, and then these will be ignored by Win10 machines. 1
DaveTheTech Posted June 9, 2022 Posted June 9, 2022 Windows 11 ADMX Templates Are Not Backward Compatible -- Redmondmag.com Its a little different this time around. The above article explains there will be some hoops to jump through if you want to test things out. 3
Koldov Posted June 9, 2022 Posted June 9, 2022 (edited) Where do you usually put them? You should have a 'Central Store' (Policy Definitions) in SYSVOL... 'Program Files' is for local GPOs I think. I always found that odd with the ADMX self extractor, (but I think you used to be able to change the destination) though I guess not everyone who uses ADMX has a SYSVOL or runs an AD/GPO based network...? As above, backup/copy your original ADMX somewhere safe first! EDIT: Windows 11 ADMX Templates Are Not Backward Compatible -- Redmondmag.com Its a little different this time around. The above article explains there will be some hoops to jump through if you want to test things out. How has that not been widely shouted about on here...? Edited June 9, 2022 by Koldov 2
JRowley Posted June 20, 2022 Posted June 20, 2022 (edited) How has that not been widely shouted about on here...? To be clear, Windows 11 ADMX files are backwards compatible with Windows 10/8.1/8/7 etc. There's only 9 policies which are specific to Windows 10 which aren't in the Windows 11 ADMX, so I suspect most people can upgrade without any issues. Here's a link to the list as of Feb this year, I doubt the Windows 10 list has changed since then: https://techcommunity.microsoft.com/t5/core-infrastructure-and-security/windows-10-or-windows-11-gpo-admx-which-one-to-use-for-your/ba-p/3063322 Edit: The problem comes if they introduce a new feature and accompanying GP settings specifically for Windows 10 and not Windows 11, in that case the Windows 11 ADMX files will not reflect those settings and you'll have to load the Windows 10 ADMX files from a client store instead. Obviously not ideal and a terrible decision, but to me it seems pretty unlikely that we'll actually need to do this during a transition period. Edited June 20, 2022 by JRowley 2
Koldov Posted June 21, 2022 Posted June 21, 2022 (edited) Can't remember exactly what it was now, but I seem to remember there was a similar situation (might have been moving from XP to 7, or 7 to 10...) where there was all of a sudden a change in how Internet Explorer GPOs were handled. There was no way to undo a particular setting in the new ADMX and you had to have a machine on the old OS with RSAT or something to change the setting. Edited June 21, 2022 by Koldov
CHiLL Posted June 21, 2022 Posted June 21, 2022 Is this article saying that new ADMX policies are installed in a new folder called PolicyDefinitions-21H2 (for example), along side the original PolicyDefinitions folder? I've always installed new ADMX templates into PolicyDefinitions and overwritten the older files.
Koldov Posted June 21, 2022 Posted June 21, 2022 (edited) I think it's only a first step before merging the 2 together, it's a bit like making a copy of the old Policy Definitions folder before you install and overwrite with the new ones (which we all do, right?)... "When the operating system collection is completed, merge any OS extension or application ADMX/ADML files into the new PolicyDefinitions folder. When this is finished, rename the current PolicyDefinitions folder to reflect that it's the previous version, such as PolicyDefinitions-1709. Then, rename the new folder (such as PolicyDefinitions-1803) to the production name. We suggest this approach as you can revert to the old folder in case you experience a severe problem with the new set of files. When you don't experience any problems with the new set of files, you can move the older PolicyDefinitions folder to an archive location outside sysvol folder." Edited June 21, 2022 by Koldov
deano3693 Posted July 25, 2022 Posted July 25, 2022 Anyone got any recommended Group Policies that are a 'must' configure for Windows 11 - we're just in the process of upgrading.
Recommended Posts
Create an account or sign in to comment
You need to be a member in order to leave a comment
Create an account
Sign up for a new account in our community. It's easy!
Register a new accountSign in
Already have an account? Sign in here.
Sign In Now