This page is a subset of our
Common Group Policies page.
NOTE: The author will not accept responsibility for damages as a result of
following the suggestions below. They are provided "as is" and intended
only as a rough guide. You should always back up your servers System State
prior to changing Group Policies. USE AT "YOUR OWN RISK".
Group Policy Management
body { font-size:68%;font-family:MS Shell Dlg;
margin:0px,0px,0px,0px; border: 1px solid #666666;
background:#F6F6F6; width:100%; word-break:normal;
word-wrap:break-word; } .head { font-weight:bold;
font-size:160%; font-family:MS Shell Dlg;
width:100%; color:#6587DC; background:#E3EAF9;
border:1px solid #5582D2; padding-left:8px;
height:24px; } .path { margin-left: 10px;
margin-top: 10px; margin-bottom:5px;width:100%; }
.info { padding-left:10px;width:100%; } table {
font-size:100%; width:100%; border:1px solid
#999999; } th { border-bottom:1px solid #999999;
text-align:left; padding-left:10px; height:24px; }
td { background:#FFFFFF; padding-left:10px;
padding-bottom:10px; padding-top:10px; } .btn {
width:100%; text-align:right; margin-top:16px; }
.hdr { font-weight:bold; border:1px solid #999999;
text-align:left; padding-top: 4px;
padding-left:10px; height:24px; margin-bottom:-1px;
width:100%; } .bdy { width:100%; height:182px;
display:block; overflow:scroll; z-index:2;
background:#FFFFFF; padding-left:10px;
padding-bottom:10px; padding-top:10px; border:1px
solid #999999; } button { width:6.9em; height:2.1em;
font-size:100%; font-family:MS Shell Dlg;
margin-right:15px; } @media print { .bdy {
display:block; overflow:visible; } button {
display:none; } .head { color:#000000;
background:#FFFFFF; border:1px solid #000000; } }
Setting Path:
Explanation
P rint
C lose
No explanation is available
for this setting.
Supported On:
Not available
Computer
Configuration (Enabled)
Account Policies/Password Policy
Policy Setting
Enforce password history 5 passwords remembered
Maximum password age 120 days
Minimum password age 0 days
Minimum password length 5 characters
Password must meet complexity requirements Disabled
Store passwords using reversible encryption Disabled
Account
Policies/Account Lockout Policy
Policy Setting
Account lockout duration 5 minutes
Account lockout threshold 3 invalid logon attempts
Reset account lockout counter after 5 minutes
Local
Policies/Audit Policy
Policy Setting
Audit logon events Success, Failure
Audit object access Success, Failure
Local
Policies/Security Options
Policy Setting
Microsoft network server: Disconnect clients when logon hours expire
Enabled
Policy Setting
Network security: Force logoff when logon hours expire Enabled
Ian - Allow Printer Driver Install on Vista - Nov 2007
User
Configuration (Enabled)
Policy definitions (ADMX files)
retrieved from the local machine.
Ian - Enable Verbose Mode Start Up & Shut Down Messages - Dec 2008
Computer Configuration (Enabled)
Policy definitions (ADMX files) retrieved from the local machine.
Ian - Allow RDP - July 2007
Computer
Configuration (Enabled)
Policy definitions (ADMX files)
retrieved from the local machine.
Windows Components/Terminal Services/Terminal Server/Connections
Ian - Enable Remote Assistance
Computer
Configuration (Enabled)
Policy definitions (ADMX files)
retrieved from the local machine.
Policy Setting
Comment
Offer Remote Assistance Enabled
Permit remote control of this computer: Allow helpers to
remotely control the computer
Helpers:
YourInternalDomainName\domain admins
Policy
Setting Comment
Solicited Remote Assistance Enabled
Permit remote control of this computer: Allow helpers to
remotely control the computer
Maximum ticket time (value): 1
Maximum ticket time (units): Hours
Method for sending e-mail invitations: Mailto
Ian - Firewall: Enable F&P Sharing, RDP, Remote
Admin - July 2007
Computer
Configuration (Enabled)
Policy definitions (ADMX files)
retrieved from the local machine.
Network/Network Connections/Windows Firewall/Domain Profile
Ian - Hide / Remove RESTORE button from PREVIOUS VERSIONS tab -
December 2008
User Configuration (Enabled)
Windows
Components/Windows Explorer/Previous Versions
Ian - Hide Security/Sharing Tabs - KB303153 -
January 2004
Computer
Configuration (Enabled)
CLASSES_ROOT\CLSID\{1F2E5C40-9550-11CE-99D2-00AA006E086C}
Configure this key then: Propagate
inheritable permissions to all subkeys
CLASSES_ROOT\CLSID\{40dd6e20-7c17-11ce-a804-00aa003ca9f6}
Configure this key then: Propagate
inheritable permissions to all subkeys
Permissions
Allow inheritable permissions from the parent to propagate
to this object and all child objects Disabled
Auditing No auditing specified
User
Configuration (Enabled)
Policy definitions (ADMX files)
retrieved from the local machine.
Windows Components/Windows Explorer