Group Policy Management
body { font-size:68%;font-family:MS Shell Dlg; margin:0px,0px,0px,0px; border: 1px solid #666666; background:#F6F6F6; width:100%; word-break:normal; word-wrap:break-word; } .head { font-weight:bold; font-size:160%; font-family:MS Shell Dlg; width:100%; color:#6587DC; background:#E3EAF9; border:1px solid #5582D2; padding-left:8px; height:24px; } .path { margin-left: 10px; margin-top: 10px; margin-bottom:5px;width:100%; } .info { padding-left:10px;width:100%; } table { font-size:100%; width:100%; border:1px solid #999999; } th { border-bottom:1px solid #999999; text-align:left; padding-left:10px; height:24px; } td { background:#FFFFFF; padding-left:10px; padding-bottom:10px; padding-top:10px; } .btn { width:100%; text-align:right; margin-top:16px; } .hdr { font-weight:bold; border:1px solid #999999; text-align:left; padding-top: 4px; padding-left:10px; height:24px; margin-bottom:-1px; width:100%; } .bdy { width:100%; height:182px; display:block; overflow:scroll; z-index:2; background:#FFFFFF; padding-left:10px; padding-bottom:10px; padding-top:10px; border:1px solid #999999; } button { width:6.9em; height:2.1em; font-size:100%; font-family:MS Shell Dlg; margin-right:15px; } @media print { .bdy { display:block; overflow:visible; } button { display:none; } .head { color:#000000; background:#FFFFFF; border:1px solid #000000; } }
Setting Path:
Explanation
No explanation is available for this setting.
Supported On:
Not available
CS Kiosk User Account
Data collected on: 8 Jun 2007 16:06:51
General
Details
Domaincs.uwaterloo.ca
OwnerCS-GENERAL\Domain Admins
Created16 Nov 2005 9:39:16
Modified25 May 2007 15:45:46
User Revisions147 (AD), 147 (sysvol)
Computer Revisions29 (AD), 29 (sysvol)
Unique ID{C9145B45-2595-4DE2-B58C-C54548D32A1A}
GPO StatusEnabled
Links
LocationEnforcedLink StatusPath
Kiosk UserYesEnabledcs.uwaterloo.ca/CS/Special Accounts/Kiosk User

This list only includes links in the domain of the GPO.
Security Filtering
The settings in this GPO can only apply to the following groups, users, and computers:
Name
NT AUTHORITY\Authenticated Users
WMI Filtering
WMI Filter NameNone
DescriptionNot applicable
Delegation
These groups and users have the specified permission for this GPO
NameAllowed PermissionsInherited
CSCF\Enterprise AdminsEdit settings, delete, modify securityNo
CS-GENERAL\Domain AdminsEdit settings, delete, modify securityNo
NT AUTHORITY\Authenticated UsersRead (from Security Filtering)No
NT AUTHORITY\ENTERPRISE DOMAIN CONTROLLERSReadNo
NT AUTHORITY\SYSTEMEdit settings, delete, modify securityNo
Computer Configuration (Enabled)
Windows Settings
Security Settings
Account Policies/Password Policy
PolicySetting
Minimum password length0 characters
Password must meet complexity requirementsDisabled
Administrative Templates
System/Group Policy
User Configuration (Enabled)
Windows Settings
Scripts
Logon
NameParameters
%systemroot%\system32\osk.exe
Administrative Templates
Control Panel
PolicySetting
Force classic Control Panel StyleEnabled
Hide specified Control Panel appletsDisabled
Prohibit access to the Control PanelDisabled
Show only specified Control Panel appletsEnabled
List of allowed Control Panel applets
Display
To create a list of allowed Control Panel applets, click Show,
then Add, and enter the Control Panel file name (ends with .cpl)
or the name displayed under that item in the Control Panel.
(e.g., desk.cpl, powercfg.cpl, Printers)
Control Panel/Display
PolicySetting
Hide Appearance and Themes tabEnabled
Hide Desktop tabEnabled
Hide Screen Saver tabEnabled
Password protect the screen saverDisabled
Prevent changing wallpaperEnabled
Screen SaverEnabled
Screen Saver executable nameEnabled
Screen Saver executable name%Systemroot%\System32\ssmypics.scr
PolicySetting
Screen Saver timeoutEnabled
Number of seconds to wait to enable the Screen Saver
Seconds:600
Control Panel/Display/Desktop Themes
Desktop
Network/Offline Files
Start Menu and Taskbar
System
PolicySetting
Custom user interfaceEnabled
Interface file name (for example, Explorer.exe)%SystemDrive%\software\cscf_kiosk\bin\cscf_kiosk.exe
PolicySetting
Don't display the Getting Started welcome screen at logonEnabled
Don't run specified Windows applicationsEnabled
List of disallowed applications
explorer.exe
PolicySetting
Prevent access to registry editing toolsEnabled
Disable regedit from running silently?Yes
PolicySetting
Prevent access to the command promptEnabled
Disable the command prompt script processing also?No
PolicySetting
Run only allowed Windows applicationsEnabled
List of allowed applications
%SystemDrive%\Program Files\Mozilla FireFox\firefox.cmd
%SystemDrive%\Program Files\Mozilla FireFox\firefox.exe
%SystemDrive%\software\adobe_acrobat_rdr-7.0\distribution\Reader\AcroRd32.exe
%SystemDrive%\software\cscf_kiosk\bin\cscf_kiosk.exe
%SystemDrive%\software\cscf_kiosk\bin\startfirefox.cmd
%SystemDrive%\software\firefox\distribution\firefox.exe
%SystemDrive%\software\firefox-1.0\distribution\firefox.exe
%SystemDrive%\software\firefox-2.0\distribution\firefox.exe
%SystemRoot%\system32\osk.exe
PolicySetting
Turn off AutoplayEnabled
Turn off Autoplay on:CD-ROM drives
System/Ctrl+Alt+Del Options
System/Logon
PolicySetting
Do not process the legacy run listEnabled
Do not process the run once listEnabled
Run these programs at user logonEnabled
Items to run at logon
%SystemDrive%\software\firefox-1.0\distribution\firefox.exe
Windows Components/Windows Explorer
PolicySetting
Hide these specified drives in My ComputerEnabled
Pick one of the following combinationsRestrict all drives
PolicySetting
Remove "Map Network Drive" and "Disconnect Network Drive"Enabled
Remove CD Burning featuresEnabled
Windows Components/Windows Messenger