Group Policy Management
body { font-size:68%;font-family:MS Shell Dlg; margin:0px,0px,0px,0px; border: 1px solid #666666; background:#F6F6F6; width:100%; word-break:normal; word-wrap:break-word; } .head { font-weight:bold; font-size:160%; font-family:MS Shell Dlg; width:100%; color:#6587DC; background:#E3EAF9; border:1px solid #5582D2; padding-left:8px; height:24px; } .path { margin-left: 10px; margin-top: 10px; margin-bottom:5px;width:100%; } .info { padding-left:10px;width:100%; } table { font-size:100%; width:100%; border:1px solid #999999; } th { border-bottom:1px solid #999999; text-align:left; padding-left:10px; height:24px; } td { background:#FFFFFF; padding-left:10px; padding-bottom:10px; padding-top:10px; } .btn { width:100%; text-align:right; margin-top:16px; } .hdr { font-weight:bold; border:1px solid #999999; text-align:left; padding-top: 4px; padding-left:10px; height:24px; margin-bottom:-1px; width:100%; } .bdy { width:100%; height:182px; display:block; overflow:scroll; z-index:2; background:#FFFFFF; padding-left:10px; padding-bottom:10px; padding-top:10px; border:1px solid #999999; } button { width:6.9em; height:2.1em; font-size:100%; font-family:MS Shell Dlg; margin-right:15px; } @media print { .bdy { display:block; overflow:visible; } button { display:none; } .head { color:#000000; background:#FFFFFF; border:1px solid #000000; } }
Setting Path:
Explanation
No explanation is available for this setting.
Supported On:
Not available
TerminalServers
Data collected on: 12/21/2022 12:24:19 PM
General
Details
Domainacton.privatcloud.biz
OwnerACTON\Domain Admins
Created12/21/2022 11:11:20 AM
Modified12/21/2022 12:12:24 PM
User Revisions0 (AD), 0 (SYSVOL)
Computer Revisions76 (AD), 76 (SYSVOL)
Unique ID{20943F16-4E32-49AF-BEE5-6BCD70CD28ED}
GPO StatusEnabled
Links
LocationEnforcedLink StatusPath
actonNoEnabledacton.privatcloud.biz

This list only includes links in the domain of the GPO.
Security Filtering
The settings in this GPO can only apply to the following groups, users, and computers:
Name
ACTON\TerminalServers
Delegation
These groups and users have the specified permission for this GPO
NameAllowed PermissionsInherited
ACTON\Domain AdminsEdit settings, delete, modify securityNo
ACTON\Enterprise AdminsEdit settings, delete, modify securityNo
ACTON\TerminalServersRead (from Security Filtering)No
NT AUTHORITY\Authenticated UsersReadNo
NT AUTHORITY\ENTERPRISE DOMAIN CONTROLLERSReadNo
NT AUTHORITY\SYSTEMEdit settings, delete, modify securityNo
Computer Configuration (Enabled)
Policies
Windows Settings
Security Settings
Windows Firewall with Advanced Security
Global Settings
PolicySetting
Policy version2.29
Disable stateful FTPNot Configured
Disable stateful PPTPNot Configured
IPsec exemptNot Configured
IPsec through NATNot Configured
Preshared key encodingNot Configured
SA idle timeNot Configured
Strong CRL checkNot Configured
Inbound Rules
NameDescription
Remote Desktop - User Mode (UDP-In)Inbound rule for the Remote Desktop service to allow RDP traffic. [UDP 3389]
This rule might contain some elements that cannot be interpreted by the current version of GPMC reporting module
EnabledTrue
Program%SystemRoot%\system32\svchost.exe
ActionBlock
Authorized computers
Authorized users
Protocol17
Local port3389
Remote portAny
ICMP settingsAny
Local scopeAny
Remote scopeAny
ProfileAll
Network interface typeAll
Servicetermservice
Allow edge traversalFalse
GroupRemote Desktop
Connection Security Settings
Administrative Templates
Policy definitions (ADMX files) retrieved from the local computer.
Windows Components/Remote Desktop Services/Remote Desktop Connection Client
PolicySettingComment
Turn Off UDP On ClientEnabled
Windows Components/Remote Desktop Services/Remote Desktop Session Host/Connections
PolicySettingComment
Automatic reconnectionEnabled
Configure keep-alive connection intervalEnabled
Keep-Alive interval:1
PolicySettingComment
Restrict Remote Desktop Services users to a single Remote Desktop Services sessionEnabled
Select network detection on the serverEnabled
Select Network Detect LevelTurn off Connect Time Detect
PolicySettingComment
Select RDP transport protocolsEnabled
Select Transport TypeUse only TCP
PolicySettingComment
Set rules for remote control of Remote Desktop Services user sessionsEnabled
Options:Full Control without user's permission
PolicySettingComment
Turn off Fair Share CPU SchedulingEnabled
Windows Components/Remote Desktop Services/Remote Desktop Session Host/Device and Resource Redirection
PolicySettingComment
Allow audio and video playback redirectionDisabled
Allow audio recording redirectionDisabled
Allow time zone redirectionEnabled
Do not allow Clipboard redirectionDisabled
Do not allow COM port redirectionEnabled
Do not allow drive redirectionDisabled
Do not allow LPT port redirectionEnabled
Do not allow smart card device redirectionEnabled
Do not allow supported Plug and Play device redirectionEnabled
Do not allow video capture redirectionEnabled
Limit audio playback qualityEnabled
Audio QualityMedium
Windows Components/Remote Desktop Services/Remote Desktop Session Host/Printer Redirection
PolicySettingComment
Use Remote Desktop Easy Print printer driver firstDisabled
Windows Components/Remote Desktop Services/Remote Desktop Session Host/Remote Session Environment
PolicySettingComment
Configure compression for RemoteFX dataEnabled
RDP compression algorithm:Optimized to use less network bandwidth
PolicySettingComment
Configure image quality for RemoteFX Adaptive GraphicsEnabled
Image quality:Low
PolicySettingComment
Configure RemoteFX Adaptive GraphicsEnabled
RDP experience:Optimize for minimum bandwidth usage
PolicySettingComment
Limit number of monitorsEnabled
Maximum Monitors1
PolicySettingComment
Use advanced RemoteFX graphics for RemoteAppEnabled
Windows Components/Remote Desktop Services/Remote Desktop Session Host/Security
PolicySettingComment
Set client connection encryption levelEnabled
Encryption LevelHigh Level
Choose the encryption level from the drop-down list.
Windows Components/Remote Desktop Services/Remote Desktop Session Host/Session Time Limits
PolicySettingComment
End session when time limits are reachedEnabled
Set time limit for active but idle Remote Desktop Services sessionsEnabled
Idle session limit:Never
PolicySettingComment
Set time limit for active Remote Desktop Services sessionsEnabled
Active session limit :Never
PolicySettingComment
Set time limit for disconnected sessionsEnabled
End a disconnected session2 hours
PolicySettingComment
Set time limit for logoff of RemoteApp sessionsEnabled
RemoteApp session logoff delay:8 hours
Windows Components/Remote Desktop Services/Remote Desktop Session Host/Temporary folders
PolicySettingComment
Do not delete temp folders upon exitEnabled
Do not use temporary folders per sessionDisabled
Preferences
Windows Settings
Registry
Collection: FairShare
Common
Options
Stop processing items on this extension if an error occurs on this itemNo
Apply once and do not reapplyNo
Registry item: EnableCpuQuota
General
ActionUpdate
Properties
HiveHKEY_LOCAL_MACHINE
Key pathSYSTEM\CurrentControlSet\Control\Session Manager\Quota System
Value nameEnableCpuQuota
Value typeREG_DWORD
Value data0x0 (0)
Common
Options
Stop processing items on this extension if an error occurs on this itemNo
Remove this item when it is no longer appliedNo
Apply once and do not reapplyNo
Registry item: Services
General
ActionCreate
Properties
HiveHKEY_LOCAL_MACHINE
Key pathSYSTEM\CurrentControlSet\Services
Value name(Default)
Value typeREG_SZ
Value dataTSFairShare
Common
Options
Stop processing items on this extension if an error occurs on this itemNo
Remove this item when it is no longer appliedNo
Apply once and do not reapplyNo
Registry item: TSFairShare
General
ActionCreate
Properties
HiveHKEY_LOCAL_MACHINE
Key pathSYSTEM\CurrentControlSet\Services\TSFairShare
Value name(Default)
Value typeREG_SZ
Value dataDisk
Common
Options
Stop processing items on this extension if an error occurs on this itemNo
Remove this item when it is no longer appliedNo
Apply once and do not reapplyNo
Registry item: TSFairShare
General
ActionCreate
Properties
HiveHKEY_LOCAL_MACHINE
Key pathSYSTEM\CurrentControlSet\Services\TSFairShare
Value name(Default)
Value typeREG_SZ
Value dataNetFS
Common
Options
Stop processing items on this extension if an error occurs on this itemNo
Remove this item when it is no longer appliedNo
Apply once and do not reapplyNo
Registry item: EnableFairShare
General
ActionUpdate
Properties
HiveHKEY_LOCAL_MACHINE
Key pathSYSTEM\CurrentControlSet\Services\TSFairShare\Disk
Value nameEnableFairShare
Value typeREG_DWORD
Value data0x0 (0)
Common
Options
Stop processing items on this extension if an error occurs on this itemNo
Remove this item when it is no longer appliedNo
Apply once and do not reapplyNo
Registry item: EnableFairShare
General
ActionUpdate
Properties
HiveHKEY_LOCAL_MACHINE
Key pathSYSTEM\CurrentControlSet\Services\TSFairShare\NetFS
Value nameEnableFairShare
Value typeREG_DWORD
Value data0x0 (0)
Common
Options
Stop processing items on this extension if an error occurs on this itemNo
Remove this item when it is no longer appliedNo
Apply once and do not reapplyNo
User Configuration (Enabled)
No settings defined.