Group Policies: Difference between revisions

1,020 bytes added ,  6 February 2017
no edit summary
No edit summary
No edit summary
 
Line 20: Line 20:


Makes sure all disconnected sessions (the user only clicks the cross at the top of the screen) are gracefully logged of after 6 hours.
Makes sure all disconnected sessions (the user only clicks the cross at the top of the screen) are gracefully logged of after 6 hours.
<strong>Local Admin password expiry</strong>
There are cases where we need to use the server's local admin login for maintenance (even if the server is a member of domain). This group policy makes sure the server's local Administrator account's password never expires.
<strong>No pinned Server Manager and PowerShell</strong>
This is to fix a known Microsoft issue where any newly added Remote Desktop user has Server Manager and PowerShell shortcuts pinned to his quick launch. Not, if using this GP.
<strong>Prohibited TS users</strong>
Restricts network and resource access to Kiosk RDP users and 3rd party contractors.
<strong>VNC Ctrl-Alt-Del</strong>
Disables UAC (user account control) above the VNC service. This allows a user to send the Ctrl-Alt-Del from his remote session without getting blocked by UAC.
<strong>WSUS</strong>
Sets the apply time, frequency and address of the central Windows Update server (currently hosted on Abydos). All servers report and pull data from this machine.
Anonymous user