| TerminalServers | |
| Data collected on: 12/21/2022 12:24:19 PM | |
| Domain | acton.privatcloud.biz |
| Owner | ACTON\Domain Admins |
| Created | 12/21/2022 11:11:20 AM |
| Modified | 12/21/2022 12:12:24 PM |
| User Revisions | 0 (AD), 0 (SYSVOL) |
| Computer Revisions | 76 (AD), 76 (SYSVOL) |
| Unique ID | {20943F16-4E32-49AF-BEE5-6BCD70CD28ED} |
| GPO Status | Enabled |
| Location | Enforced | Link Status | Path |
|---|---|---|---|
| acton | No | Enabled | acton.privatcloud.biz |
| Name |
|---|
| ACTON\TerminalServers |
| Name | Allowed Permissions | Inherited |
|---|---|---|
| ACTON\Domain Admins | Edit settings, delete, modify security | No |
| ACTON\Enterprise Admins | Edit settings, delete, modify security | No |
| ACTON\TerminalServers | Read (from Security Filtering) | No |
| NT AUTHORITY\Authenticated Users | Read | No |
| NT AUTHORITY\ENTERPRISE DOMAIN CONTROLLERS | Read | No |
| NT AUTHORITY\SYSTEM | Edit settings, delete, modify security | No |
| Policy | Setting |
|---|---|
| Policy version | 2.29 |
| Disable stateful FTP | Not Configured |
| Disable stateful PPTP | Not Configured |
| IPsec exempt | Not Configured |
| IPsec through NAT | Not Configured |
| Preshared key encoding | Not Configured |
| SA idle time | Not Configured |
| Strong CRL check | Not Configured |
| Name | Description | ||||||||||||||||||||||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| Remote Desktop - User Mode (UDP-In) | Inbound rule for the Remote Desktop service to allow RDP traffic. [UDP 3389] | ||||||||||||||||||||||||||||||||||
| |||||||||||||||||||||||||||||||||||
| Policy | Setting | Comment |
|---|---|---|
| Turn Off UDP On Client | Enabled |
| Policy | Setting | Comment | ||
|---|---|---|---|---|
| Automatic reconnection | Enabled | |||
| Configure keep-alive connection interval | Enabled | |||
| ||||
| Policy | Setting | Comment | ||
| Restrict Remote Desktop Services users to a single Remote Desktop Services session | Enabled | |||
| Select network detection on the server | Enabled | |||
| ||||
| Policy | Setting | Comment | ||
| Select RDP transport protocols | Enabled | |||
| ||||
| Policy | Setting | Comment | ||
| Set rules for remote control of Remote Desktop Services user sessions | Enabled | |||
| ||||
| Policy | Setting | Comment | ||
| Turn off Fair Share CPU Scheduling | Enabled | |||
| Policy | Setting | Comment | ||
|---|---|---|---|---|
| Allow audio and video playback redirection | Disabled | |||
| Allow audio recording redirection | Disabled | |||
| Allow time zone redirection | Enabled | |||
| Do not allow Clipboard redirection | Disabled | |||
| Do not allow COM port redirection | Enabled | |||
| Do not allow drive redirection | Disabled | |||
| Do not allow LPT port redirection | Enabled | |||
| Do not allow smart card device redirection | Enabled | |||
| Do not allow supported Plug and Play device redirection | Enabled | |||
| Do not allow video capture redirection | Enabled | |||
| Limit audio playback quality | Enabled | |||
| ||||
| Policy | Setting | Comment |
|---|---|---|
| Use Remote Desktop Easy Print printer driver first | Disabled |
| Policy | Setting | Comment | ||
|---|---|---|---|---|
| Configure compression for RemoteFX data | Enabled | |||
| ||||
| Policy | Setting | Comment | ||
| Configure image quality for RemoteFX Adaptive Graphics | Enabled | |||
| ||||
| Policy | Setting | Comment | ||
| Configure RemoteFX Adaptive Graphics | Enabled | |||
| ||||
| Policy | Setting | Comment | ||
| Limit number of monitors | Enabled | |||
| ||||
| Policy | Setting | Comment | ||
| Use advanced RemoteFX graphics for RemoteApp | Enabled | |||
| Policy | Setting | Comment | ||||
|---|---|---|---|---|---|---|
| Set client connection encryption level | Enabled | |||||
| ||||||
| Policy | Setting | Comment | ||
|---|---|---|---|---|
| End session when time limits are reached | Enabled | |||
| Set time limit for active but idle Remote Desktop Services sessions | Enabled | |||
| ||||
| Policy | Setting | Comment | ||
| Set time limit for active Remote Desktop Services sessions | Enabled | |||
| ||||
| Policy | Setting | Comment | ||
| Set time limit for disconnected sessions | Enabled | |||
| ||||
| Policy | Setting | Comment | ||
| Set time limit for logoff of RemoteApp sessions | Enabled | |||
| ||||
| Policy | Setting | Comment |
|---|---|---|
| Do not delete temp folders upon exit | Enabled | |
| Do not use temporary folders per session | Disabled |
| Stop processing items on this extension if an error occurs on this item | No |
| Apply once and do not reapply | No |
| Action | Update |
| Hive | HKEY_LOCAL_MACHINE |
| Key path | SYSTEM\CurrentControlSet\Control\Session Manager\Quota System |
| Value name | EnableCpuQuota |
| Value type | REG_DWORD |
| Value data | 0x0 (0) |
| Stop processing items on this extension if an error occurs on this item | No |
| Remove this item when it is no longer applied | No |
| Apply once and do not reapply | No |
| Action | Create |
| Hive | HKEY_LOCAL_MACHINE |
| Key path | SYSTEM\CurrentControlSet\Services |
| Value name | (Default) |
| Value type | REG_SZ |
| Value data | TSFairShare |
| Stop processing items on this extension if an error occurs on this item | No |
| Remove this item when it is no longer applied | No |
| Apply once and do not reapply | No |
| Action | Create |
| Hive | HKEY_LOCAL_MACHINE |
| Key path | SYSTEM\CurrentControlSet\Services\TSFairShare |
| Value name | (Default) |
| Value type | REG_SZ |
| Value data | Disk |
| Stop processing items on this extension if an error occurs on this item | No |
| Remove this item when it is no longer applied | No |
| Apply once and do not reapply | No |
| Action | Create |
| Hive | HKEY_LOCAL_MACHINE |
| Key path | SYSTEM\CurrentControlSet\Services\TSFairShare |
| Value name | (Default) |
| Value type | REG_SZ |
| Value data | NetFS |
| Stop processing items on this extension if an error occurs on this item | No |
| Remove this item when it is no longer applied | No |
| Apply once and do not reapply | No |
| Action | Update |
| Hive | HKEY_LOCAL_MACHINE |
| Key path | SYSTEM\CurrentControlSet\Services\TSFairShare\Disk |
| Value name | EnableFairShare |
| Value type | REG_DWORD |
| Value data | 0x0 (0) |
| Stop processing items on this extension if an error occurs on this item | No |
| Remove this item when it is no longer applied | No |
| Apply once and do not reapply | No |
| Action | Update |
| Hive | HKEY_LOCAL_MACHINE |
| Key path | SYSTEM\CurrentControlSet\Services\TSFairShare\NetFS |
| Value name | EnableFairShare |
| Value type | REG_DWORD |
| Value data | 0x0 (0) |
| Stop processing items on this extension if an error occurs on this item | No |
| Remove this item when it is no longer applied | No |
| Apply once and do not reapply | No |