Group Policy Management
body { font-size:68%;font-family:MS Shell Dlg; margin:0px,0px,0px,0px; border: 1px solid #666666; background:#F6F6F6; width:100%; word-break:normal; word-wrap:break-word; } .head { font-weight:bold; font-size:160%; font-family:MS Shell Dlg; width:100%; color:#6587DC; background:#E3EAF9; border:1px solid #5582D2; padding-left:8px; height:24px; } .path { margin-left: 10px; margin-top: 10px; margin-bottom:5px;width:100%; } .info { padding-left:10px;width:100%; } table { font-size:100%; width:100%; border:1px solid #999999; } th { border-bottom:1px solid #999999; text-align:left; padding-left:10px; height:24px; } td { background:#FFFFFF; padding-left:10px; padding-bottom:10px; padding-top:10px; } .btn { width:100%; text-align:right; margin-top:16px; } .hdr { font-weight:bold; border:1px solid #999999; text-align:left; padding-top: 4px; padding-left:10px; height:24px; margin-bottom:-1px; width:100%; } .bdy { width:100%; height:182px; display:block; overflow:scroll; z-index:2; background:#FFFFFF; padding-left:10px; padding-bottom:10px; padding-top:10px; border:1px solid #999999; } button { width:6.9em; height:2.1em; font-size:100%; font-family:MS Shell Dlg; margin-right:15px; } @media print { .bdy { display:block; overflow:visible; } button { display:none; } .head { color:#000000; background:#FFFFFF; border:1px solid #000000; } }
Setting Path:
Explanation
No explanation is available for this setting.
Supported On:
Not available
Group Policy Results
LLPSINC\Michaelb on LLPSINC\MICHAELB-PC-2
Data collected on: 12/12/2025 6:37:02 PM
Summary
 During last computer policy refresh on 12/12/2025 6:34:26 PM
 
No Errors Detected
A fast link was detected More information...
 During last user policy refresh on 12/12/2025 6:34:27 PM
 
No Errors Detected
A fast link was detected More information...
Computer Details
General
Computer nameLLPSINC\MICHAELB-PC-2
Domainllpsinc.com
SiteDefault-First-Site-Name
Organizational Unitllpsinc.com/Workstations
Security Group Membership
show
Component Status
Component NameStatusTime TakenLast Process TimeEvent Log
Group Policy InfrastructureSuccess189 Millisecond(s)12/12/2025 6:34:26 PMView Log
Group Policy Scheduled TasksSuccess156 Millisecond(s)12/12/2025 6:34:25 PMView Log
RegistrySuccess375 Millisecond(s)12/12/2025 6:34:24 PMView Log
ScriptsSuccess110 Millisecond(s)12/12/2025 6:34:24 PMView Log
SecuritySuccess344 Millisecond(s)12/12/2025 6:34:25 PMView Log
Software InstallationPending1 Second(s) 79 Millisecond(s)12/12/2025 6:34:26 PMView Log
Software Installation did not complete policy processing because a system restart is required for the settings to be applied. Group Policy will attempt to apply the settings the next time the computer is restarted.

Additional information may have been logged. Review the Policy Events tab in the console or the application event log for events between 12/12/2025 6:34:25 PM and 12/12/2025 6:34:26 PM.
Settings
Policies
Software Settings
Installed Applications
3CXPhone
Winning GPO3CX
Product Information
Name3CXPhone
Version4.0
LanguageEnglish (United States)
Platformx86
Support URLhttp://www.3cx.com/support/index.html
Deployment Information
GeneralSetting
Deployment typeAssigned
Deployment source\\fs1.llpsinc.com\deployment\3CXPhone\3CXPhone6.msi
Uninstall this application when it falls out of the scope of managementDisabled

Advanced Deployment OptionsSetting
Ignore language when deploying this packageDisabled
Make this 32-bit X86 application available to Win64 computersEnabled
Include OLE class and product informationDisabled

Diagnostic InformationSetting
Product code{0df8fa4d-299c-4250-9f09-c14e47e12224}
Deployment Count0
Security
Permissions
TypeNamePermissionInherited
AllowLLPSINC\Domain AdminsFull controlNo
AllowNT AUTHORITY\Authenticated UsersReadNo
AllowNT AUTHORITY\SYSTEMFull controlNo
AllowLLPSINC\Domain AdminsRead, WriteYes
AllowLLPSINC\Enterprise AdminsRead, WriteYes
AllowNT AUTHORITY\ENTERPRISE DOMAIN CONTROLLERSReadYes
AllowNT AUTHORITY\Authenticated UsersReadYes
AllowNT AUTHORITY\SYSTEMRead, WriteYes
AllowCREATOR OWNERRead, WriteYes
Allow inheritable permissions from the parent to propagate to this object and all child objectsEnabled
Advanced
UpgradesSetting
Required upgrade for existing packagesEnabled
Packages that this package will upgradeGPO
None
Packages that will upgrade this packageGPO
None

Transforms
None
Cause
This application was applied due to the following conditions:
The application was assigned.
Its language matched the system language.
7-Zip 24.09 (x64 edition)
Winning GPO7zip
Product Information
Name7-Zip 24.09 (x64 edition)
Version24.9
LanguageEnglish (United States)
Platformx64
Support URLhttp://www.7-zip.org/support.html
Deployment Information
GeneralSetting
Deployment typeAssigned
Deployment source\\fs1.llpsinc.com\deployment\7zip\7z2409-x64.msi
Uninstall this application when it falls out of the scope of managementDisabled

Advanced Deployment OptionsSetting
Ignore language when deploying this packageDisabled
Make this 32-bit X86 application available to Win64 computersDisabled
Include OLE class and product informationDisabled

Diagnostic InformationSetting
Product code{23170f69-40c1-2702-2409-000001000000}
Deployment Count0
Security
Permissions
TypeNamePermissionInherited
AllowLLPSINC\Domain AdminsFull controlNo
AllowNT AUTHORITY\Authenticated UsersReadNo
AllowNT AUTHORITY\SYSTEMFull controlNo
AllowLLPSINC\Domain AdminsRead, WriteYes
AllowLLPSINC\Enterprise AdminsRead, WriteYes
AllowNT AUTHORITY\ENTERPRISE DOMAIN CONTROLLERSReadYes
AllowNT AUTHORITY\Authenticated UsersReadYes
AllowNT AUTHORITY\SYSTEMRead, WriteYes
AllowCREATOR OWNERRead, WriteYes
Allow inheritable permissions from the parent to propagate to this object and all child objectsEnabled
Advanced
UpgradesSetting
Required upgrade for existing packagesEnabled
Packages that this package will upgradeGPO
7-Zip 19.00 (x64 edition)7zip
7-Zip 22.01 (x64 edition)7zip
Packages that will upgrade this packageGPO
None

Transforms
None
Cause
This application was applied due to the following conditions:
The application was installed as the result of a forced upgrade.
Its language matched the system language.
Google Chrome 134.0.6998.89
Winning GPOGoogle Chrome Install
Product Information
NameGoogle Chrome 134.0.6998.89
Version70.213
LanguageEnglish (United States)
Platformx64
Support URL
Deployment Information
GeneralSetting
Deployment typeAssigned
Deployment source\\fs1.llpsinc.com\deployment\Google\Chrome\googlechrome-134.0.6998.89.msi
Uninstall this application when it falls out of the scope of managementDisabled

Advanced Deployment OptionsSetting
Ignore language when deploying this packageDisabled
Make this 32-bit X86 application available to Win64 computersDisabled
Include OLE class and product informationDisabled

Diagnostic InformationSetting
Product code{2c16cdfa-5fce-3ab5-9be5-8a816a4fbd7f}
Deployment Count0
Security
Permissions
TypeNamePermissionInherited
AllowLLPSINC\Domain AdminsFull controlNo
AllowNT AUTHORITY\Authenticated UsersReadNo
AllowNT AUTHORITY\SYSTEMFull controlNo
AllowLLPSINC\Domain AdminsRead, WriteYes
AllowLLPSINC\Enterprise AdminsRead, WriteYes
AllowNT AUTHORITY\ENTERPRISE DOMAIN CONTROLLERSReadYes
AllowNT AUTHORITY\Authenticated UsersReadYes
AllowNT AUTHORITY\SYSTEMRead, WriteYes
AllowCREATOR OWNERRead, WriteYes
Allow inheritable permissions from the parent to propagate to this object and all child objectsEnabled
Advanced
UpgradesSetting
Required upgrade for existing packagesEnabled
Packages that this package will upgradeGPO
Google Chrome 133.0.6943.60Google Chrome Install
Google Chrome (2)Google Chrome Install
Google ChromeGoogle Chrome Install
Google Chrome (3)Google Chrome Install
Packages that will upgrade this packageGPO
None

Transforms
None
Cause
This application was applied due to the following conditions:
The application was installed as the result of a forced upgrade.
Its language matched the system language.
LibreOffice 25.2 Help Pack (English (United States))
Winning GPOLibreOffice Install
Product Information
NameLibreOffice 25.2 Help Pack (English (United States))
Version25.2
LanguageEnglish (United States)
Platformx64
Support URLhttps://www.libreoffice.org/get-help
Deployment Information
GeneralSetting
Deployment typeAssigned
Deployment source\\FS1\deployment\LibreOffice\LibreOffice_25.2.0_Win_x86-64_helppack_en-US.msi
Uninstall this application when it falls out of the scope of managementDisabled

Advanced Deployment OptionsSetting
Ignore language when deploying this packageDisabled
Make this 32-bit X86 application available to Win64 computersDisabled
Include OLE class and product informationDisabled

Diagnostic InformationSetting
Product code{28109b12-9258-4f74-9d85-972414ce7c55}
Deployment Count0
Security
Permissions
TypeNamePermissionInherited
AllowLLPSINC\Domain AdminsFull controlNo
AllowNT AUTHORITY\Authenticated UsersReadNo
AllowNT AUTHORITY\SYSTEMFull controlNo
AllowLLPSINC\Domain UsersReadYes
AllowLLPSINC\Domain ComputersReadYes
AllowLLPSINC\Domain AdminsRead, WriteYes
AllowLLPSINC\Enterprise AdminsRead, WriteYes
AllowNT AUTHORITY\Authenticated UsersReadYes
AllowNT AUTHORITY\ENTERPRISE DOMAIN CONTROLLERSReadYes
AllowNT AUTHORITY\SYSTEMRead, WriteYes
AllowCREATOR OWNERRead, WriteYes
Allow inheritable permissions from the parent to propagate to this object and all child objectsEnabled
Advanced
UpgradesSetting
Required upgrade for existing packagesEnabled
Packages that this package will upgradeGPO
LibreOffice 7.1 Help Pack (English (United States))LibreOffice Install
LibreOffice 7.4 Help Pack (English (United States))LibreOffice Install
Packages that will upgrade this packageGPO
None

Transforms
None
Cause
This application was applied due to the following conditions:
The application was installed as the result of a forced upgrade.
Its language matched the system language.
LibreOffice 25.2.0.3
Winning GPOLibreOffice Install
Product Information
NameLibreOffice 25.2.0.3
Version25.2
LanguageEnglish (United States)
Platformx64
Support URLhttps://www.libreoffice.org/get-help
Deployment Information
GeneralSetting
Deployment typeAssigned
Deployment source\\FS1\deployment\LibreOffice\LibreOffice_25.2.0_Win_x86-64.msi
Uninstall this application when it falls out of the scope of managementDisabled

Advanced Deployment OptionsSetting
Ignore language when deploying this packageDisabled
Make this 32-bit X86 application available to Win64 computersDisabled
Include OLE class and product informationDisabled

Diagnostic InformationSetting
Product code{e38afcd6-bf08-4eca-aaff-d6d57fac1a3a}
Deployment Count0
Security
Permissions
TypeNamePermissionInherited
AllowLLPSINC\Domain AdminsFull controlNo
AllowNT AUTHORITY\Authenticated UsersReadNo
AllowNT AUTHORITY\SYSTEMFull controlNo
AllowLLPSINC\Domain UsersReadYes
AllowLLPSINC\Domain ComputersReadYes
AllowLLPSINC\Domain AdminsRead, WriteYes
AllowLLPSINC\Enterprise AdminsRead, WriteYes
AllowNT AUTHORITY\Authenticated UsersReadYes
AllowNT AUTHORITY\ENTERPRISE DOMAIN CONTROLLERSReadYes
AllowNT AUTHORITY\SYSTEMRead, WriteYes
AllowCREATOR OWNERRead, WriteYes
Allow inheritable permissions from the parent to propagate to this object and all child objectsEnabled
Advanced
UpgradesSetting
Required upgrade for existing packagesEnabled
Packages that this package will upgradeGPO
LibreOffice 7.4.0.3LibreOffice Install
LibreOffice 7.1.5.2LibreOffice Install
Packages that will upgrade this packageGPO
None

Transforms
None
Cause
This application was applied due to the following conditions:
The application was installed as the result of a forced upgrade.
Its language matched the system language.
Mozilla Firefox 128.7.0esr x64 en-US
Winning GPOMozilla Firefox
Product Information
NameMozilla Firefox 128.7.0esr x64 en-US
Version128.7
LanguageNone
Platformx64
Support URL
Deployment Information
GeneralSetting
Deployment typeAssigned
Deployment source\\fs1.llpsinc.com\deployment\Firefox\Firefox Setup 128.7.0esr.msi
Uninstall this application when it falls out of the scope of managementDisabled

Advanced Deployment OptionsSetting
Ignore language when deploying this packageDisabled
Make this 32-bit X86 application available to Win64 computersDisabled
Include OLE class and product informationDisabled

Diagnostic InformationSetting
Product code{1294a4c5-9977-480f-9497-c0ea1e630130}
Deployment Count0
Security
Permissions
TypeNamePermissionInherited
AllowLLPSINC\Domain AdminsFull controlNo
AllowNT AUTHORITY\Authenticated UsersReadNo
AllowNT AUTHORITY\SYSTEMFull controlNo
AllowLLPSINC\Domain AdminsRead, WriteYes
AllowLLPSINC\Enterprise AdminsRead, WriteYes
AllowNT AUTHORITY\ENTERPRISE DOMAIN CONTROLLERSReadYes
AllowNT AUTHORITY\Authenticated UsersReadYes
AllowNT AUTHORITY\SYSTEMRead, WriteYes
AllowCREATOR OWNERRead, WriteYes
Allow inheritable permissions from the parent to propagate to this object and all child objectsEnabled
Advanced
UpgradesSetting
Required upgrade for existing packagesEnabled
Packages that this package will upgradeGPO
Mozilla Firefox 78.6.1esr x64 en-USMozilla Firefox
Mozilla Firefox 128.4.0esr x64 en-USMozilla Firefox
Packages that will upgrade this packageGPO
None

Transforms
None
Cause
This application was applied due to the following conditions:
The application was assigned.
It was language neutral.
VLC media player 3.0.20 (64-bit)
Winning GPOVideoLAN Client
Product Information
NameVLC media player 3.0.20 (64-bit)
Version3.0
LanguageEnglish (United States)
Platformx64
Support URLhttps://www.videolan.org/support/
Deployment Information
GeneralSetting
Deployment typeAssigned
Deployment source\\FS1\deployment\VLC\vlc-3.0.20-win64.msi
Uninstall this application when it falls out of the scope of managementDisabled

Advanced Deployment OptionsSetting
Ignore language when deploying this packageDisabled
Make this 32-bit X86 application available to Win64 computersDisabled
Include OLE class and product informationDisabled

Diagnostic InformationSetting
Product code{9675011c-2395-4ad7-b1cc-92910f991f58}
Deployment Count0
Security
Permissions
TypeNamePermissionInherited
AllowLLPSINC\Domain AdminsFull controlNo
AllowNT AUTHORITY\Authenticated UsersReadNo
AllowNT AUTHORITY\SYSTEMFull controlNo
AllowLLPSINC\Domain AdminsRead, WriteYes
AllowLLPSINC\Enterprise AdminsRead, WriteYes
AllowNT AUTHORITY\ENTERPRISE DOMAIN CONTROLLERSReadYes
AllowNT AUTHORITY\Authenticated UsersReadYes
AllowNT AUTHORITY\SYSTEMRead, WriteYes
AllowCREATOR OWNERRead, WriteYes
Allow inheritable permissions from the parent to propagate to this object and all child objectsEnabled
Advanced
UpgradesSetting
Required upgrade for existing packagesEnabled
Packages that this package will upgradeGPO
VLC media player 3.0.17 (64-bit)VideoLAN Client
VLC media player 3.0.16 (64-bit)VideoLAN Client
Packages that will upgrade this packageGPO
None

Transforms
None
Cause
This application was applied due to the following conditions:
The application was installed as the result of a forced upgrade.
Its language matched the system language.
Windows Settings
Scripts
Startup
NameParametersLast RunScript Order in GPOWinning GPO
\\fs1.llpsinc.com\deployment\PrinterDrivers\drivers.ps1-InfPath \\fs1\deployment\PrinterDrivers\buzhub950\KOAX1A__.inf Not configuredPrinter Driver Install
Security Settings
Account Policies/Password Policy
PolicySettingWinning GPO
Enforce password history3 passwords rememberedDefault Domain Policy
Maximum password age365 daysDefault Domain Policy
Minimum password age0 daysDefault Domain Policy
Minimum password length8 charactersDefault Domain Policy
Password must meet complexity requirementsEnabledDefault Domain Policy
Store passwords using reversible encryptionDisabledDefault Domain Policy
Account Policies/Account Lockout Policy
PolicySettingWinning GPO
Account lockout threshold0 invalid logon attemptsDefault Domain Policy
Local Policies/User Rights Assignment
PolicySettingWinning GPO
Change the system timeAdministratorsDefault Domain Policy
Local Policies/Security Options
Network Security
PolicySettingWinning GPO
Network security: Force logoff when logon hours expireDisabledDefault Domain Policy
Other
PolicySettingWinning GPO
Interactive logon: Machine inactivity limit3600 secondsLock Screeen After Inactivity
Restricted Groups
GroupMembersMember ofWinning GPO
Workstation AdminsLLPSINC\Workstation AdminsAdministratorsLLPS Workstations
Public Key Policies/Certificate Services Client - Auto-Enrollment Settings
PolicySettingWinning GPO
Automatic certificate managementEnabled[Default setting]
OptionSetting
Enroll new certificates, renew expired certificates, process pending certificate requests and remove revoked certificatesDisabled
Update and manage certificates that use certificate templates from Active DirectoryDisabled
Public Key Policies/Encrypting File System
Certificates
Issued ToIssued ByExpiration DateIntended PurposesWinning GPO
administratoradministrator12/23/2012 10:46:01 PMFile RecoveryDefault Domain Policy

For additional information about individual settings, launch the Local Group Policy Object Editor.
Windows Firewall with Advanced Security
Global Settings
PolicySettingWinning GPO
Policy versionNot Configured
Disable stateful FTPNot Configured
Disable stateful PPTPNot Configured
IPsec exemptNot Configured
IPsec through NATNot Configured
Preshared key encodingNot Configured
SA idle timeNot Configured
Strong CRL checkNot Configured
Domain Profile Settings
PolicySettingWinning GPO
Firewall stateOffDefault Domain Policy
Inbound connectionsNot Configured
Outbound connectionsNot Configured
Apply local firewall rulesNot Configured
Apply local connection security rulesNot Configured
Display notificationsNot Configured
Allow unicast responsesNot Configured
Log dropped packetsNot Configured
Log successful connectionsNot Configured
Log file pathNot Configured
Log file maximum size (KB)Not Configured
Connection Security Settings
Administrative Templates
Policy definitions (ADMX files) retrieved from the local computer.
Network/Network Connections/Windows Defender Firewall/Domain Profile
PolicySettingWinning GPO
Windows Defender Firewall: Protect all network connectionsDisabledDefault Domain Policy
Network/Network Connections/Windows Defender Firewall/Standard Profile
PolicySettingWinning GPO
Windows Defender Firewall: Protect all network connectionsDisabledDefault Domain Policy
Printers
PolicySettingWinning GPO
Package Point and print - Approved serversEnabledLLPS Settings
Enter fully qualified server namesSource GPO
svr2003.llpsinc.comLLPS Settings
fs1.llpsinc.comLLPS Settings
PolicySettingWinning GPO
Point and Print RestrictionsEnabledLLPS Settings
Users can only point and print to these servers:Enabled
Enter fully qualified server names separated by semicolonsfs1.llpsinc.com
Users can only point and print to machines in their forestEnabled
Security Prompts:
When installing drivers for a new connection:Do not show warning or elevation prompt
When updating drivers for an existing connection:Do not show warning or elevation prompt
This setting only applies to:
Windows Vista and later
System
PolicySettingWinning GPO
Display highly detailed status messagesEnabledLLPS Workstations
Do not display Manage Your Server page at logonEnabledLLPS Workstations
Remove Boot / Shutdown / Logon / Logoff status messagesDisabledLLPS Workstations
System/Group Policy
PolicySettingWinning GPO
Set Group Policy refresh interval for computersEnabledDefault Domain Policy
This setting allows you to customize how often Group Policy is applied
to computers. The range is 0 to 44640 minutes (31 days).
Minutes:30
This is a random time added to the refresh interval to prevent
all clients from requesting Group Policy at the same time.
The range is 0 to 1440 minutes (24 hours)
Minutes:5
System/Logon
PolicySettingWinning GPO
Always wait for the network at computer startup and logonEnabledLLPS Workstations
Assign a default domain for logonEnabledLLPS Workstations
Default Logon domain:llpsinc.com
Enter the name of the domain
PolicySettingWinning GPO
Do not display the Getting Started welcome screen at logonEnabledLLPS Workstations
Do not enumerate connected users on domain-joined computersEnabledLLPS Workstations
Enumerate local users on domain-joined computersDisabledLLPS Workstations
Show first sign-in animation DisabledLLPS Workstations
Turn on convenience PIN sign-inEnabledLLPS Settings
System/PIN Complexity
PolicySettingWinning GPO
Minimum PIN lengthEnabledLLPS Settings
Minimum PIN length4
System/Remote Assistance
PolicySettingWinning GPO
Configure Offer Remote AssistanceEnabledRemote Assistance
Permit remote control of this computer:Allow helpers to remotely control the computer
Helpers:
LLPSINC\Workstation Admins
LLPSINC\Domain Admins
PolicySettingWinning GPO
Turn on session loggingEnabledRemote Assistance
System/Scripts
PolicySettingWinning GPO
Display instructions in shutdown scripts as they runEnabledLLPS Workstations
Display instructions in startup scripts as they runEnabledLLPS Workstations
Run logon scripts synchronouslyEnabledLLPS Workstations
System/Windows Time Service
PolicySettingWinning GPO
Global Configuration SettingsEnabledDefault Domain Policy
Clock Discipline Parameters
FrequencyCorrectRate4
HoldPeriod5
LargePhaseOffset1280000
MaxAllowedPhaseOffset300
MaxNegPhaseCorrection54000
MaxPosPhaseCorrection54000
PhaseCorrectRate1
PollAdjustFactor5
SpikeWatchPeriod90
UpdateInterval30000
General Parameters
AnnounceFlags10
EventLogFlags2
LocalClockDispersion10
MaxPollInterval15
MinPollInterval10
ClockHoldoverPeriod 
RequireSecureTimeSyncRequests 
UtilizeSslTimeData 
ClockAdjustmentAuditLimit 
ChainEntryTimeout 
ChainMaxEntries 
ChainMaxHostEntries 
ChainDisable 
ChainLoggingRate 
System/Windows Time Service/Time Providers
PolicySettingWinning GPO
Configure Windows NTP ClientEnabledDefault Domain Policy
NtpServertime.windows.com,0x1
TypeAllSync
CrossSiteSyncFlags2
ResolvePeerBackoffMinutes15
ResolvePeerBackoffMaxTimes7
SpecialPollInterval3600
EventLogFlags0
PolicySettingWinning GPO
Enable Windows NTP ClientEnabledDefault Domain Policy
Enable Windows NTP ServerEnabledDefault Domain Policy
Windows Components/File Explorer
PolicySettingWinning GPO
Set a default associations configuration fileEnabledChrome Default Browser
Default Associations Configuration File\\llpsinc.com\NETLOGON\chromedefault.xml
Windows Components/Internet Explorer
PolicySettingWinning GPO
Prevent running First Run wizardEnabledLLPS Workstations
Select your choiceGo directly to home page
Windows Components/Microsoft Defender Antivirus
PolicySettingWinning GPO
Turn off Microsoft Defender AntivirusEnabledDisable Defender
Windows Components/Microsoft Defender Antivirus/Real-time Protection
PolicySettingWinning GPO
Monitor file and program activity on your computerDisabledDisable Defender
Scan all downloaded files and attachmentsDisabledDisable Defender
Turn off real-time protectionEnabledDisable Defender
Turn on behavior monitoringDisabledDisable Defender
Turn on raw volume write notificationsDisabledDisable Defender
Windows Components/Remote Desktop Services/Remote Desktop Session Host/Connections
PolicySettingWinning GPO
Allow users to connect remotely by using Remote Desktop ServicesDisabledDefault Domain Policy
Windows Components/Windows Update/Manage end user experience
PolicySettingWinning GPO
Allow updates to be downloaded automatically over metered connectionsDisabledWindows Updates
Configure Automatic UpdatesEnabledWindows Updates
Configure automatic updating:4 - Auto download and schedule the install
The following settings are only required and applicable if 4 is selected.
Install during automatic maintenanceEnabled
Scheduled install day: 0 - Every day
Scheduled install time:03:00
If you have selected “4 – Auto download and schedule the install” for your scheduled install day and specified a schedule, you also have the option to limit updating to a weekly, bi-weekly or monthly occurrence, using the options below:
Every weekEnabled
First week of the monthDisabled
Second week of the monthDisabled
Third week of the monthDisabled
Fourth week of the monthDisabled
Install updates for other Microsoft productsEnabled
PolicySettingWinning GPO
Enable features introduced via servicing that are off by defaultEnabledWindows Updates
Remove access to "Pause updates" featureEnabledWindows Updates
Specify active hours range for auto-restartsEnabledWindows Updates
Specify the max active hours range:
Max range: 18
PolicySettingWinning GPO
Specify deadline for automatic updates and restarts for feature updateEnabledWindows Updates
Deadline (days):2
Grace Period (days):7
Don't auto-restart until end of grace periodDisabled
PolicySettingWinning GPO
Specify deadline for automatic updates and restarts for quality updateEnabledWindows Updates
Deadline (days):7
Grace period (days):2
Don't auto-restart until end of grace periodDisabled
PolicySettingWinning GPO
Turn off auto-restart for updates during active hoursEnabledWindows Updates
Active Hours
Start: 8 AM
End:7 PM
Windows Components/Windows Update/Manage updates offered from Windows Update
PolicySettingWinning GPO
Do not include drivers with Windows UpdatesDisabledWindows Updates
Enable optional updatesEnabledWindows Updates
Select how users receive optional updates:Automatically receive optional updates (including CFRs)
PolicySettingWinning GPO
Select when Preview Builds and Feature Updates are receivedEnabledWindows Updates
How many days after a Feature Update is released would you like to defer the update before it is offered to the device?14
Pause Preview Builds or Feature Updates starting:
(format yyyy-mm-dd example: 2016-10-30)
PolicySettingWinning GPO
Select when Quality Updates are receivedEnabledWindows Updates
After a quality update is released, defer receiving it for this many days:7
Pause Quality Updates starting
(format yyyy-mm-dd example: 2016-10-30)
Preferences
Control Panel Settings
Scheduled Tasks
Immediate Task (At least Windows 7) (Name: Remove Sophos Endpoint)
The following settings have applied to this object. Within this category, settings nearest the top of the report are the prevailing settings when resolving conflicts.
Remove Sophos Endpoint
Winning GPORemove Sophos
Result: Success
General
Task
Name Remove Sophos Endpoint
Author LLPSINC\jleonard
Description
Run only when user is logged on InteractiveToken
UserId NT AUTHORITY\System
Run with highest privileges HighestAvailable
Hidden No
Configure for 1.2
Enabled Yes
Actions
1. Start a program
Program/script "C:\Program Files\Sophos\Sophos Endpoint Agent\SophosUninstall.exe"
Arguments --quiet --language=1033
Settings
Stop if the computer ceases to be idle Yes
Restart if the idle state resumes No
Start the task only if the computer is on AC power Yes
Stop if the computer switches to battery power Yes
Allow task to be run on demand Yes
Run task as soon as possible after a scheduled start is missed Yes
Stop task if it runs longer than 3 days
If the running task does not end when requested, force it to stop Yes
If the task is not scheduled to run again, delete it after Immediately
If the task is already running, then the following rule applies IgnoreNew
Immediate Task (At least Windows 7) (Name: Install Cisco Secure Endpoint)
The following settings have applied to this object. Within this category, settings nearest the top of the report are the prevailing settings when resolving conflicts.
Install Cisco Secure Endpoint
Winning GPOCisco Secure Endpoint
Result: Success
General
Task
Name Install Cisco Secure Endpoint
Author LLPSINC\jleonard
Description
Run only when user is logged on InteractiveToken
UserId NT AUTHORITY\System
Run with highest privileges HighestAvailable
Hidden No
Configure for 1.2
Enabled Yes
Actions
1. Start a program
Program/script \\fs1\deployment\Cisco\Secure Endpoint\amp_Protect.exe
Arguments /R /S
Settings
Stop if the computer ceases to be idle No
Restart if the idle state resumes No
Start the task only if the computer is on AC power No
Stop if the computer switches to battery power No
Allow task to be run on demand No
Run task as soon as possible after a scheduled start is missed Yes
Stop task if it runs longer than Immediately
If the running task does not end when requested, force it to stop No
If the task is not scheduled to run again, delete it after Immediately
If the task is already running, then the following rule applies IgnoreNew
Group Policy Objects
Applied GPOs
3CX [{6A0F408F-7521-4826-A882-3FCEFF78D2CD}]
Link Locationllpsinc.com/Workstations
Extensions ConfiguredSoftware Installation
EnforcedNo
DisabledNone
Security FiltersNT AUTHORITY\Authenticated Users
RevisionAD (3), SYSVOL (3)
WMI Filter 
7zip [{8F675347-9E68-435F-A08D-E8923EF09EC1}]
Link Locationllpsinc.com
Extensions ConfiguredSoftware Installation
EnforcedNo
DisabledNone
Security FiltersNT AUTHORITY\Authenticated Users
RevisionAD (11), SYSVOL (11)
WMI Filter 
Chrome Default Browser [{7E621197-8134-4921-911A-492ED91ED2F4}]
Link Locationllpsinc.com/Workstations
Extensions ConfiguredRegistry
EnforcedNo
DisabledNone
Security FiltersNT AUTHORITY\Authenticated Users
RevisionAD (1), SYSVOL (1)
WMI Filter 
Cisco Secure Endpoint [{2BB9CE8D-0FE3-4942-8998-0BFF40621953}]
Link Locationllpsinc.com/Workstations
Extensions ConfiguredGroup Policy Scheduled Tasks
Group Policy Infrastructure
EnforcedNo
DisabledNone
Security FiltersNT AUTHORITY\Authenticated Users
RevisionAD (6), SYSVOL (6)
WMI Filter 
Default Domain Policy [{31B2F340-016D-11D2-945F-00C04FB984F9}]
Link Locationllpsinc.com
Extensions Configured{B1BE8D72-6EAC-11D2-A4EA-00C04F79F83A}
Security
Registry
EnforcedNo
DisabledNone
Security FiltersNT AUTHORITY\Authenticated Users
RevisionAD (55), SYSVOL (55)
WMI Filter 
Disable Defender [{E1270ACF-6046-49B1-BC73-A8C118BB3D7D}]
Link Locationllpsinc.com
Extensions ConfiguredRegistry
EnforcedNo
DisabledNone
Security FiltersNT AUTHORITY\Authenticated Users
RevisionAD (6), SYSVOL (6)
WMI Filter 
Google Chrome Install [{50E86DB1-0F0D-4628-B692-DE0DFABADBD0}]
Link Locationllpsinc.com
Extensions ConfiguredSoftware Installation
Registry
EnforcedNo
DisabledNone
Security FiltersNT AUTHORITY\Authenticated Users
RevisionAD (18), SYSVOL (18)
WMI Filter 
LibreOffice Install [{49106784-E485-44CB-808C-121D02F7A3B0}]
Link Locationllpsinc.com/Workstations
Extensions ConfiguredSoftware Installation
EnforcedNo
DisabledNone
Security FiltersNT AUTHORITY\Authenticated Users
RevisionAD (30), SYSVOL (30)
WMI Filter 
LLPS Settings [{C18AB73B-CE4A-4DBC-8E15-251783342B8D}]
Link Locationllpsinc.com
Extensions ConfiguredSecurity
Registry
EnforcedNo
DisabledNone
Security FiltersNT AUTHORITY\Authenticated Users
RevisionAD (12), SYSVOL (12)
WMI Filter 
LLPS Workstations [{5EC625A8-F7B8-4B35-A61A-39D53A95DCFA}]
Link Locationllpsinc.com/Workstations
Extensions ConfiguredSecurity
Registry
EnforcedNo
DisabledNone
Security FiltersNT AUTHORITY\Authenticated Users
RevisionAD (15), SYSVOL (15)
WMI Filter 
Lock Screeen After Inactivity [{3EF3412A-832F-4C56-9A88-08F3E0A5142D}]
Link Locationllpsinc.com
Extensions ConfiguredSecurity
EnforcedNo
DisabledNone
Security FiltersNT AUTHORITY\Authenticated Users
RevisionAD (2), SYSVOL (2)
WMI Filter 
Mozilla Firefox [{E1CD5A4C-B39C-4D68-901F-B30C5D00C85B}]
Link Locationllpsinc.com/Workstations
Extensions ConfiguredSoftware Installation
EnforcedNo
DisabledNone
Security FiltersNT AUTHORITY\Authenticated Users
RevisionAD (10), SYSVOL (10)
WMI Filter 
Printer Driver Install [{ABBB3AB7-7E31-4F27-BC42-278A64260194}]
Link Locationllpsinc.com
Extensions ConfiguredScripts
EnforcedNo
DisabledNone
Security FiltersNT AUTHORITY\Authenticated Users
RevisionAD (2), SYSVOL (2)
WMI Filter 
Remote Assistance [{9FD61489-6BF8-4B48-B31C-0A64B636AE4E}]
Link Locationllpsinc.com/Workstations
Extensions ConfiguredRegistry
EnforcedNo
DisabledNone
Security FiltersNT AUTHORITY\Authenticated Users
RevisionAD (2), SYSVOL (2)
WMI Filter 
Remove Sophos [{A7C7BD29-AAF2-4111-B656-FE310D7956CC}]
Link Locationllpsinc.com/Workstations
Extensions ConfiguredGroup Policy Scheduled Tasks
Group Policy Infrastructure
EnforcedNo
DisabledNone
Security FiltersNT AUTHORITY\Authenticated Users
RevisionAD (10), SYSVOL (10)
WMI Filter 
VideoLAN Client [{DE3779C7-0017-4FD7-A37C-44490F8E0146}]
Link Locationllpsinc.com/Workstations
Extensions ConfiguredSoftware Installation
EnforcedNo
DisabledNone
Security FiltersNT AUTHORITY\Authenticated Users
RevisionAD (12), SYSVOL (12)
WMI Filter 
Windows Updates [{7D704501-976D-4CFD-A1F3-14D764434863}]
Link Locationllpsinc.com
Extensions ConfiguredRegistry
EnforcedNo
DisabledNone
Security FiltersNT AUTHORITY\Authenticated Users
RevisionAD (12), SYSVOL (12)
WMI Filter 
Denied GPOs
Data-BW [{9E10643C-1140-4FC6-8E1D-4A393A1D1676}]
Link Locationllpsinc.com
Extensions Configured{8A28E2C5-8D06-49A4-A08C-632DAA493E17}
EnforcedNo
DisabledNone
Security FiltersLLPSINC\IT
LLPSINC\Dataprocessing
RevisionAD (1), SYSVOL (65535)
WMI Filter 
Reason DeniedAccess Denied (Security Filtering)
Local Group Policy [LocalGPO]
Link LocationLocal
Extensions Configured 
EnforcedNo
DisabledNone
Security Filters 
RevisionAD (0), SYSVOL (0)
WMI Filter 
Reason DeniedEmpty
PowerSettings for Remote Access PCs [{98DB32F3-6EBE-4DAF-9D71-7858B8ED2082}]
Link Locationllpsinc.com
Extensions Configured{E62688F0-25FD-4C90-BFF5-F508B9D2E31F}
Group Policy Infrastructure
EnforcedNo
DisabledNone
Security FiltersLLPSINC\RDP Enabled Computers
RevisionAD (10), SYSVOL (65535)
WMI Filter 
Reason DeniedAccess Denied (Security Filtering)
WMI Filters
NameValueReference GPO(s)
None
User Details
General
User nameLLPSINC\Michaelb
Domainllpsinc.com
Organizational Unitllpsinc.com/Data - Admin
Security Group Membership
show
Component Status
Component NameStatusTime TakenLast Process TimeEvent Log
Group Policy InfrastructureSuccess225 Millisecond(s)12/12/2025 6:34:27 PMView Log
Deployed Printer ConnectionsSuccess110 Millisecond(s)12/12/2025 6:34:27 PMView Log
Group Policy Drive MapsSuccess860 Millisecond(s)12/12/2025 6:34:27 PMView Log
Group Policy ShortcutsSuccess141 Millisecond(s)12/12/2025 6:34:27 PMView Log
Internet Explorer ZonemappingSuccess (no data)0 Millisecond(s)12/12/2025 6:34:26 PMView Log
RegistrySuccess63 Millisecond(s)12/12/2025 6:34:26 PMView Log
ScriptsSuccess62 Millisecond(s)12/12/2025 6:34:26 PMView Log
Settings
Policies
Windows Settings
Scripts
Logon
NameParametersLast RunScript Order in GPOWinning GPO
\\fs1.llpsinc.com\deployment\PrinterDrivers\addPrinter-IPP.ps1-printerName "Konica_Minolta_950i" -driverName "KONICA MINOLTA Universal PS v3.9.4" -Port "http://fs1.llpsinc.com:631/printers/Konica_Minolta_950i" Not configuredKonica Minolta BizHUB 950i
Printer Connections
PathWinning GPO
\\fs1\KONICA_MINOLTA_951BizHub951
\\fs1\MF4800MF4800
\\fs1\M477fdnM477fdn
\\fs1\Data-BWData-BW
\\fs1\M479fdnM478fdn
Administrative Templates
Policy definitions (ADMX files) retrieved from the local computer.
Windows Components/Internet Explorer/Internet Control Panel/Security Page
PolicySettingWinning GPO
Site to Zone Assignment ListEnabledLLPS Settings
Enter the zone assignments here. Source GPO
crm.llpsinc.com1LLPS Settings
crm-qa.llpsinc.com1LLPS Settings
crm-develop.llpsinc.com1LLPS Settings
support.llpsinc.com1LLPS Settings
*.llpsinc.com1LLPS Settings
crm-state.llpsinc.com1LLPS Settings
Extra Registry Settings
Display names for some settings cannot be found. You might be able to resolve this issue by updating the .ADM files used by Group Policy Management.

SettingStateWinning GPO
SOFTWARE\Policies\Microsoft\PassportForWork\PINComplexity\MinimumPINLength4LLPS Settings
Preferences
Windows Settings
Drive Maps
Drive Map (Drive: P)
The following settings have applied to this object. Within this category, settings nearest the top of the report are the prevailing settings when resolving conflicts.
P:
Winning GPOProduction
Result: Success
General
ActionUpdate
Properties
LetterP
Location\\fs1.llpsinc.com\Production
ReconnectEnabled
Label asProduction
Use first availableDisabled
Hide/Show this driveNo change
Hide/Show all drivesNo change
Drive Map (Drive: G)
The following settings have applied to this object. Within this category, settings nearest the top of the report are the prevailing settings when resolving conflicts.
G:
Winning GPOData
Result: Success
General
ActionReplace
Properties
LetterG
Location\\fs1.llpsinc.com\Data
ReconnectEnabled
Label asData
Use first availableDisabled
Hide/Show this driveNo change
Hide/Show all drivesNo change
Drive Map (Drive: S)
The following settings have applied to this object. Within this category, settings nearest the top of the report are the prevailing settings when resolving conflicts.
S:
Winning GPOScans
Result: Success
General
ActionReplace
Properties
LetterS
Location\\fs1.llpsinc.com\scans
ReconnectEnabled
Label asScans
Use first availableDisabled
Hide/Show this driveNo change
Hide/Show all drivesNo change
Shortcuts
Shortcut (Path: C:\Users\Michaelb\OneDrive - Labor Law Poster Service\Desktop\Helpdesk System.url)
The following settings have applied to this object. Within this category, settings nearest the top of the report are the prevailing settings when resolving conflicts.
Helpdesk System
Winning GPOHelpdesk Icon
Result: Success
General
ActionUpdate
Attributes
Target typeURL
Shortcut pathC:\Users\Michaelb\OneDrive - Labor Law Poster Service\Desktop\Helpdesk System.url
Target URLhttps://support.llpsinc.com/
Icon pathC:\Windows\System32\SHELL32.dll
Icon index170
Shortcut keyNone
RunNormal window
Shortcut (Path: C:\Users\Michaelb\OneDrive - Labor Law Poster Service\Desktop\Helpdesk Admin.url)
The following settings have applied to this object. Within this category, settings nearest the top of the report are the prevailing settings when resolving conflicts.
Helpdesk Admin
Winning GPOHelpdesk Icon
Result: Success
General
ActionUpdate
Attributes
Target typeURL
Shortcut pathC:\Users\Michaelb\OneDrive - Labor Law Poster Service\Desktop\Helpdesk Admin.url
Target URLhttps://support.llpsinc.com/scp/
Icon pathC:\Windows\System32\SHELL32.dll
Icon index166
Shortcut keyNone
RunNormal window
Group Policy Objects
Applied GPOs
BizHub951 [{15ABA490-6FE2-4CB9-8F3D-CC800DCB235E}]
Link Locationllpsinc.com
Extensions ConfiguredDeployed Printer Connections
EnforcedNo
DisabledNone
Security FiltersLLPSINC\IT
LLPSINC\Dataprocessing
RevisionAD (1), SYSVOL (1)
WMI Filter 
Data [{DCF0AB87-9B19-4E4F-9BD3-100E602FEC54}]
Link Locationllpsinc.com
Extensions ConfiguredGroup Policy Drive Maps
Group Policy Infrastructure
EnforcedNo
DisabledNone
Security FiltersLLPSINC\Dataprocessing
RevisionAD (2), SYSVOL (2)
WMI Filter 
Data-BW [{9E10643C-1140-4FC6-8E1D-4A393A1D1676}]
Link Locationllpsinc.com
Extensions ConfiguredDeployed Printer Connections
EnforcedNo
DisabledNone
Security FiltersLLPSINC\IT
LLPSINC\Dataprocessing
RevisionAD (1), SYSVOL (1)
WMI Filter 
Default Domain Policy [{31B2F340-016D-11D2-945F-00C04FB984F9}]
Link Locationllpsinc.com
Extensions ConfiguredRegistry
{3060E8D0-7020-11D2-842D-00C04FA372D4}
EnforcedNo
DisabledNone
Security FiltersNT AUTHORITY\Authenticated Users
RevisionAD (3), SYSVOL (3)
WMI Filter 
Helpdesk Icon [{8AC7159E-1936-4C92-9873-4F64CEB72F6C}]
Link Locationllpsinc.com
Extensions ConfiguredGroup Policy Shortcuts
Group Policy Infrastructure
EnforcedNo
DisabledNone
Security FiltersNT AUTHORITY\Authenticated Users
RevisionAD (8), SYSVOL (8)
WMI Filter 
Konica Minolta BizHUB 950i [{0798205F-4F8C-4845-A719-BDFAC3A29F5D}]
Link Locationllpsinc.com
Extensions ConfiguredScripts
EnforcedNo
DisabledNone
Security FiltersLLPSINC\Inbound
LLPSINC\IT
LLPSINC\Dataprocessing
LLPSINC\Production
RevisionAD (8), SYSVOL (8)
WMI Filter 
LLPS Settings [{C18AB73B-CE4A-4DBC-8E15-251783342B8D}]
Link Locationllpsinc.com
Extensions ConfiguredInternet Explorer Zonemapping
Registry
EnforcedNo
DisabledNone
Security FiltersNT AUTHORITY\Authenticated Users
RevisionAD (11), SYSVOL (11)
WMI Filter 
M477fdn [{126C7538-0206-454A-AA26-AD515D3FF9E9}]
Link Locationllpsinc.com
Extensions ConfiguredDeployed Printer Connections
EnforcedNo
DisabledNone
Security FiltersLLPSINC\IT
LLPSINC\Dataprocessing
LLPSINC\Production
RevisionAD (1), SYSVOL (1)
WMI Filter 
M478fdn [{99A2C4AB-6950-41B3-9E6C-FFB2D3D90E7D}]
Link Locationllpsinc.com
Extensions ConfiguredDeployed Printer Connections
EnforcedNo
DisabledNone
Security FiltersLLPSINC\Inbound
LLPSINC\IT
RevisionAD (5), SYSVOL (5)
WMI Filter 
MF4800 [{9A258E40-2FE4-4434-A6BB-55247D290971}]
Link Locationllpsinc.com
Extensions ConfiguredDeployed Printer Connections
EnforcedNo
DisabledNone
Security FiltersLLPSINC\IT
LLPSINC\Dataprocessing
RevisionAD (1), SYSVOL (1)
WMI Filter 
Production [{B3E0A477-FD52-4B7D-A38D-45A021814AD1}]
Link Locationllpsinc.com
Extensions ConfiguredGroup Policy Drive Maps
Group Policy Infrastructure
EnforcedNo
DisabledNone
Security FiltersLLPSINC\Production
RevisionAD (6), SYSVOL (6)
WMI Filter 
Scans [{9FBA3D01-14D5-46DB-86DD-AB5D53E954DD}]
Link Locationllpsinc.com
Extensions ConfiguredGroup Policy Drive Maps
Group Policy Infrastructure
EnforcedNo
DisabledNone
Security FiltersNT AUTHORITY\Authenticated Users
RevisionAD (2), SYSVOL (2)
WMI Filter 
Denied GPOs
AffordableCanvas [{A6D02C4A-8693-4B2A-99A8-E53AA92AF17C}]
Link Locationllpsinc.com
Extensions ConfiguredGroup Policy Drive Maps
Group Policy Infrastructure
EnforcedNo
DisabledNone
Security FiltersLLPSINC\AffordableCanvas
RevisionAD (4), SYSVOL (65535)
WMI Filter 
Reason DeniedAccess Denied (Security Filtering)
Local Group Policy [LocalGPO]
Link LocationLocal
Extensions Configured 
EnforcedNo
DisabledNone
Security Filters 
RevisionAD (0), SYSVOL (0)
WMI Filter 
Reason DeniedEmpty
Telemarketing Desktop Icons [{64F91D26-3865-42E2-93D4-8DC8E2DB3933}]
Link Locationllpsinc.com
Extensions ConfiguredGroup Policy Shortcuts
Group Policy Drive Maps
Group Policy Infrastructure
EnforcedNo
DisabledNone
Security FiltersLLPSINC\Customer Service
LLPSINC\Telemarketers
RevisionAD (68), SYSVOL (65535)
WMI Filter 
Reason DeniedAccess Denied (Security Filtering)
WMI Filters
NameValueReference GPO(s)
None