none
Windows Log size Policy

    Question

  • I have implement the policy for Windows log size as follows ( Please see the print-screen )

    But, when i click on Event Viewer -- Application -- Properties, i see below size ( please see below print-screen )

    I think policy has not been implemented, am i right?

    If yes, than what need to be done, to make it right.


    Thanks & Regards,
    Param
    www.paramgupta.blogspot.com

    Saturday, March 12, 2016 11:25 AM

Answers

All replies

  • Hi Param,

    Would you tell us the detailed information about how do you apply the policy?

    Best Regards,

    Jay


    Please remember to mark the replies as answers if they help and un-mark them if they provide no help. If you have feedback for TechNet Subscriber Support, contact tnmff@microsoft.com.

    Monday, March 14, 2016 9:45 AM
    Moderator
  • Hi Jay,

    Thank you for your reply.

    Please find below print-screen of GPOs applied, also find gpresult /v attached


    Thanks & Regards,
    Param
    www.paramgupta.blogspot.com

    Wednesday, March 16, 2016 12:55 PM
  • Hi Param,

    Thanks for your post.

    But I cannot see the GPresult, would you provided it by another way.

    Best Regards,

    Jay


    Please remember to mark the replies as answers if they help and un-mark them if they provide no help. If you have feedback for TechNet Subscriber Support, contact tnmff@microsoft.com.

    Thursday, March 17, 2016 3:16 AM
    Moderator
  • Hi Jay,

    Thank you for your reply. Please find Gpresult attach.

    Microsoft (R) Windows (R) Operating System Group Policy Result tool v2.0
    Copyright (C) Microsoft Corp. 1981-2001
    
    Created On 16-03-2016 at 17:27:25
    
    
    
    RSOP data for CORP\User on ComputerName : Logging Mode
    ----------------------------------------------------
    
    OS Configuration:            Member Workstation
    OS Version:                  6.1.7601
    Site Name:                   Default-First-Site-Name
    Roaming Profile:             N/A
    Local Profile:               C:\Users\User
    Connected over a slow link?: No
    
    
    COMPUTER SETTINGS
    ------------------
        CN=ComputerName,OU=Test_OU,OU=Win7,OU=CompHardSr_OU,OU=CompSr_OU,OU=IT_OU,OU=Nation_OU,DC=Corp,DC=Domainname,DC=com
        Last time Group Policy was applied: 16-03-2016 at 16:04:44
        Group Policy was applied from:      DC.Corp.Domainname.com
        Group Policy slow link threshold:   500 kbps
        Domain Name:                        CORP
        Domain Type:                        Windows 2000
    
        Applied Group Policy Objects
        -----------------------------
            Comp7Hard_AdvancedAudit
            Comp7Hard_InternetCommunication
            Comp7Hard_SecurityOptions01
            Comp7Hard_SecurityOptions02_Interactive Logon
            Comp7Hard_SecurityOptions04_NetworkAccess
            Comp7Hard_SecurityOptions06
            Comp7Hard_SecurityOptions07_Other
            Comp7Hard_SleepSettings
            Comp7Hard_SystemRemote
            Comp7Hard_UserRightAssignment01
            Comp7Hard_UserRightAssignment02
            Comp7Hard_WindowsComponentsOthers
            Comp7Hard_WindowsUpdate
            CD-ROM Enable WinXP_CompGPrAdm
            Floppy-Enable Floppy_CompGPrAdm
            Floppy-Enable High Capacity Floppy_CompGPrAdm
            USB-Enable USB Mass Storage WinXP_CompGPrAdm
            User-Restrict User login for ITGrp_CompGPS
            Local Admin-Create & Add_ITAdminSp_CompGPPr
            Comp7Hard_WindowsUpdate
            RadiusNICconf_compOnly
            CyberoamCERT_Comp
            Dump File Creation_CompGPrAdm
            Folder Options Win XP_UsrGPPr
            Guest a/c-Disable Guest_CompGPS
            SID-Disable Enumeration of SID_CompGPS
            Local Admin Usr Inbuilt - Rename&Reset Password_CompGPPr
            Local Admin-Create & Add_CompGPPr
            Local User-Create_ComGPPr
            Folder Options Win Vista_UsrGPPr
            Log-Event log Retention policy_CompGPS
            Local User-N/w Opr_CompGPPr
            File-Copying Wallpaper_CompGPPr
            Default Domain Policy
            Logon2Windows Full DN_CompGPPr
            Firewall-Allow Remote Administration Exception_CompGPS
            CompanyLogo-on Comp Properties_CompGPPr
            Interactive Logon_CompGPS
            Audit log policies_CompGPS
            File-Copying ScreenSaver_CompGPPr
            wallpaperQKjpg_UsrGPS
            Local Group Policy
    
        The following GPOs were not applied because they were filtered out
        -------------------------------------------------------------------
            Internet Explorer Setting_UsrGPS
                Filtering:  Not Applied (Empty)
    
            ScreenSaverQK_UsrGPS
                Filtering:  Not Applied (Empty)
    
            Comp7Hard_SecurityOptions08_UAC
                Filtering:  Disabled (GPO)
    
            Wallpaper_winXP regFix_UsrGPPr
                Filtering:  Not Applied (Empty)
    
        The computer is a part of the following security groups
        -------------------------------------------------------
            BUILTIN\Administrators
            Everyone
            BUILTIN\Users
            NT AUTHORITY\NETWORK
            NT AUTHORITY\Authenticated Users
            This Organization
            ComputerName$
            Domain Computers
            IT_Comp_Grp
            System Mandatory Level
            
        Resultant Set Of Policies for Computer
        ---------------------------------------
    
            Software Installations
            ----------------------
                N/A
    
            Startup Scripts
            ---------------
                N/A
    
            Shutdown Scripts
            ----------------
                N/A
    
            Account Policies
            ----------------
                GPO: Default Domain Policy
                    Policy:            LockoutDuration
                    Computer Setting:  60
    
                GPO: Default Domain Policy
                    Policy:            MaximumPasswordAge
                    Computer Setting:  45
    
                GPO: Default Domain Policy
                    Policy:            MinimumPasswordAge
                    Computer Setting:  1
    
                GPO: Default Domain Policy
                    Policy:            ResetLockoutCount
                    Computer Setting:  30
    
                GPO: Default Domain Policy
                    Policy:            LockoutBadCount
                    Computer Setting:  5
    
                GPO: Default Domain Policy
                    Policy:            PasswordHistorySize
                    Computer Setting:  5
    
                GPO: Default Domain Policy
                    Policy:            MinimumPasswordLength
                    Computer Setting:  8
    
            Audit Policy
            ------------
                GPO: Audit log policies_CompGPS
                    Policy:            AuditPolicyChange
                    Computer Setting:  Success, Failure
    
                GPO: Audit log policies_CompGPS
                    Policy:            AuditAccountManage
                    Computer Setting:  Success, Failure
    
                GPO: Audit log policies_CompGPS
                    Policy:            AuditAccountLogon
                    Computer Setting:  Success, Failure
    
                GPO: Audit log policies_CompGPS
                    Policy:            AuditLogonEvents
                    Computer Setting:  Success, Failure
    
                GPO: Audit log policies_CompGPS
                    Policy:            AuditSystemEvents
                    Computer Setting:  Success, Failure
    
            User Rights
            -----------
                GPO: Comp7Hard_UserRightAssignment01
                    Policy:            CreateGlobalPrivilege
                    Computer Setting:  Administrators
                                       LOCAL SERVICE
                                       NETWORK SERVICE
                                       SERVICE
                                       
                GPO: Comp7Hard_UserRightAssignment01
                    Policy:            ImpersonatePrivilege
                    Computer Setting:  Administrators
                                       LOCAL SERVICE
                                       NETWORK SERVICE
                                       SERVICE
                                       
                GPO: Comp7Hard_UserRightAssignment01
                    Policy:            ChangeNotifyPrivilege
                    Computer Setting:  Administrators
                                       LOCAL SERVICE
                                       NETWORK SERVICE
                                       Users
                                       
                GPO: Comp7Hard_UserRightAssignment02
                    Policy:            IncreaseBasePriorityPrivilege
                    Computer Setting:  Administrators
                                       
                GPO: Comp7Hard_UserRightAssignment02
                    Policy:            TakeOwnershipPrivilege
                    Computer Setting:  Administrators
                                       
                GPO: Comp7Hard_UserRightAssignment01
                    Policy:            DenyInteractiveLogonRight
                    Computer Setting:  Guests
                                       
                GPO: Comp7Hard_UserRightAssignment01
                    Policy:            DebugPrivilege
                    Computer Setting:  Administrators
                                       
                GPO: Comp7Hard_UserRightAssignment01
                    Policy:            SystemtimePrivilege
                    Computer Setting:  Administrators
                                       LOCAL SERVICE
                                       
                GPO: Comp7Hard_UserRightAssignment02
                    Policy:            SecurityPrivilege
                    Computer Setting:  Administrators
                                       
                GPO: Comp7Hard_UserRightAssignment01
                    Policy:            AuditPrivilege
                    Computer Setting:  LOCAL SERVICE
                                       NETWORK SERVICE
                                       
                GPO: User-Restrict User login for ITGrp_CompGPS
                    Policy:            InteractiveLogonRight
                    Computer Setting:  Administrators
                                       Backup Operators
                                       CORP\IT_Admin_Grp
                                       CORP\IT_Grp
                                       CORP\QKHelpdesk
                                       CORP\QKNmonitor
                                       QKLNuser
                                       QKLuser
                                       
                GPO: Comp7Hard_UserRightAssignment01
                    Policy:            CreatePagefilePrivilege
                    Computer Setting:  Administrators
                                       
                GPO: Comp7Hard_UserRightAssignment01
                    Policy:            DenyNetworkLogonRight
                    Computer Setting:  Guests
                                       
                GPO: Comp7Hard_UserRightAssignment02
                    Policy:            LockMemoryPrivilege
                    Computer Setting:  N/A
    
                GPO: Comp7Hard_UserRightAssignment01
                    Policy:            NetworkLogonRight
                    Computer Setting:  Administrators
                                       Users
                                       
                GPO: Comp7Hard_UserRightAssignment02
                    Policy:            SystemProfilePrivilege
                    Computer Setting:  WdiServiceHost
                                       Administrators
                                       
                GPO: Comp7Hard_UserRightAssignment01
                    Policy:            DenyBatchLogonRight
                    Computer Setting:  Guests
                                       
                GPO: Comp7Hard_UserRightAssignment01
                    Policy:            RemoteShutdownPrivilege
                    Computer Setting:  Administrators
                                       
                GPO: Comp7Hard_UserRightAssignment02
                    Policy:            IncreaseWorkingSetPrivilege
                    Computer Setting:  LOCAL SERVICE
                                       Administrators
                                       
                GPO: Comp7Hard_UserRightAssignment02
                    Policy:            UndockPrivilege
                    Computer Setting:  Users
                                       Administrators
                                       
                GPO: Comp7Hard_UserRightAssignment02
                    Policy:            SystemEnvironmentPrivilege
                    Computer Setting:  Administrators
                                       
                GPO: Comp7Hard_UserRightAssignment02
                    Policy:            LoadDriverPrivilege
                    Computer Setting:  Administrators
                                       
                GPO: Comp7Hard_UserRightAssignment01
                    Policy:            IncreaseQuotaPrivilege
                    Computer Setting:  Administrators
                                       LOCAL SERVICE
                                       NETWORK SERVICE
                                       
                GPO: Comp7Hard_UserRightAssignment01
                    Policy:            TimeZonePrivilege
                    Computer Setting:  Administrators
                                       LOCAL SERVICE
                                       Users
                                       
                GPO: Comp7Hard_UserRightAssignment02
                    Policy:            ManageVolumePrivilege
                    Computer Setting:  Administrators
                                       
            Security Options
            ----------------
                GPO: Default Domain Policy
                    Policy:            PasswordComplexity
                    Computer Setting:  Enabled
    
                GPO: Default Domain Policy
                    Policy:            ClearTextPassword
                    Computer Setting:  Not Enabled
    
                GPO: Default Domain Policy
                    Policy:            ForceLogoffWhenHourExpire
                    Computer Setting:  Not Enabled
    
                GPO: Comp7Hard_SecurityOptions01
                    Policy:            EnableGuestAccount
                    Computer Setting:  Not Enabled
    
                GPO: Default Domain Policy
                    Policy:            RequireLogonToChangePassword
                    Computer Setting:  Not Enabled
    
                GPO: Comp7Hard_SecurityOptions04_NetworkAccess
                    Policy:            LSAAnonymousNameLookup
                    Computer Setting:  Not Enabled
    
                GPO: Comp7Hard_SecurityOptions02_Interactive Logon
                    Policy:            @wsecedit.dll,-59030
                    ValueName:         MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\CachedLogonsCount
                    Computer Setting:  25
    
                GPO: Comp7Hard_SecurityOptions07_Other
                    Policy:            @wsecedit.dll,-59045
                    ValueName:         MACHINE\System\CurrentControlSet\Services\LanManServer\Parameters\EnableForcedLogOff
                    Computer Setting:  1
    
                GPO: Comp7Hard_SecurityOptions04_NetworkAccess
                    Policy:            @wsecedit.dll,-59047
                    ValueName:         MACHINE\System\CurrentControlSet\Control\Lsa\RestrictAnonymousSAM
                    Computer Setting:  1
    
                GPO: Comp7Hard_SecurityOptions07_Other
                    Policy:            @wsecedit.dll,-59019
                    ValueName:         MACHINE\System\CurrentControlSet\Services\Netlogon\Parameters\SealSecureChannel
                    Computer Setting:  1
    
                GPO: Comp7Hard_SecurityOptions02_Interactive Logon
                    Policy:            @wsecedit.dll,-59022
                    ValueName:         MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System\DisableCAD
                    Computer Setting:  0
    
                GPO: Comp7Hard_SecurityOptions07_Other
                    Policy:            @wsecedit.dll,-59042
                    ValueName:         MACHINE\System\CurrentControlSet\Services\LanManServer\Parameters\AutoDisconnect
                    Computer Setting:  15
    
                GPO: Comp7Hard_SecurityOptions07_Other
                    Policy:            @wsecedit.dll,-59016
                    ValueName:         MACHINE\System\CurrentControlSet\Services\Netlogon\Parameters\DisablePasswordChange
                    Computer Setting:  0
    
                GPO: Comp7Hard_SecurityOptions07_Other
                    Policy:            @wsecedit.dll,-59043
                    ValueName:         MACHINE\System\CurrentControlSet\Services\LanManServer\Parameters\RequireSecuritySignature
                    Computer Setting:  1
    
                GPO: Comp7Hard_SecurityOptions07_Other
                    Policy:            @wsecedit.dll,-59017
                    ValueName:         MACHINE\System\CurrentControlSet\Services\Netlogon\Parameters\MaximumPasswordAge
                    Computer Setting:  30
    
                GPO: Comp7Hard_SecurityOptions01
                    Policy:            @wsecedit.dll,-59005
                    ValueName:         MACHINE\System\CurrentControlSet\Control\Print\Providers\LanMan Print Services\Servers\AddPrinterDrivers
                    Computer Setting:  1
    
                GPO: Comp7Hard_SecurityOptions04_NetworkAccess
                    Policy:            @wsecedit.dll,-59050
                    ValueName:         MACHINE\System\CurrentControlSet\Services\LanManServer\Parameters\RestrictNullSessAccess
                    Computer Setting:  1
    
                GPO: Comp7Hard_SecurityOptions07_Other
                    Policy:            @wsecedit.dll,-59044
                    ValueName:         MACHINE\System\CurrentControlSet\Services\LanManServer\Parameters\EnableSecuritySignature
                    Computer Setting:  1
    
                GPO: Comp7Hard_SecurityOptions06
                    Policy:            @wsecedit.dll,-59084
                    ValueName:         MACHINE\System\CurrentControlSet\Control\Session Manager\Kernel\ObCaseInsensitive
                    Computer Setting:  1
    
                GPO: Comp7Hard_SecurityOptions04_NetworkAccess
                    Policy:            @wsecedit.dll,-59049
                    ValueName:         MACHINE\System\CurrentControlSet\Control\Lsa\EveryoneIncludesAnonymous
                    Computer Setting:  0
    
                GPO: Comp7Hard_SecurityOptions01
                    Policy:            @wsecedit.dll,-59004
                    ValueName:         MACHINE\System\CurrentControlSet\Control\Lsa\CrashOnAuditFail
                    Computer Setting:  0
    
                GPO: Comp7Hard_SecurityOptions01
                    Policy:            @wsecedit.dll,-59099
                    ValueName:         MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\AllocateDASD
                    Computer Setting:  2
    
                GPO: Comp7Hard_SecurityOptions04_NetworkAccess
                    Policy:            @wsecedit.dll,-59054
                    ValueName:         MACHINE\System\CurrentControlSet\Control\SecurePipeServers\Winreg\AllowedExactPaths\Machine
                    Computer Setting:  System\CurrentControlSet\Control\ProductOptions,System\CurrentControlSet\Control\Server Applications,Software\Microsoft\Windows NT\CurrentVersion
    
                GPO: Interactive Logon_CompGPS
                    Policy:            @wsecedit.dll,-59029
                    ValueName:         MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System\LegalNoticeCaption
                    Computer Setting:  Domainname Terms and Condition
    
                GPO: Default Domain Policy
                    Policy:            @wsecedit.dll,-59058
                    ValueName:         MACHINE\System\CurrentControlSet\Control\Lsa\NoLMHash
                    Computer Setting:  1
    
                GPO: Comp7Hard_SecurityOptions02_Interactive Logon
                    Policy:            @wsecedit.dll,-59023
                    ValueName:         MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System\DontDisplayLastUserName
                    Computer Setting:  1
    
                GPO: Interactive Logon_CompGPS
                    Policy:            @wsecedit.dll,-59028
                    ValueName:         MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System\LegalNoticeText
                    Computer Setting:  This system is for authorized users only. Individual use of this computer,system and/or network without authority"," or in excess of your authority"," is strictly prohibited.
    
                GPO: Comp7Hard_SecurityOptions07_Other
                    Policy:            @wsecedit.dll,-59104
                    ValueName:         MACHINE\System\CurrentControlSet\Control\Lsa\SCENoApplyLegacyAuditPolicy
                    Computer Setting:  1
    
                GPO: Comp7Hard_SecurityOptions06
                    Policy:            @wsecedit.dll,-59080
                    ValueName:         MACHINE\System\CurrentControlSet\Control\Session Manager\ProtectionMode
                    Computer Setting:  1
    
                GPO: Comp7Hard_SecurityOptions07_Other
                    Policy:            @wsecedit.dll,-59020
                    ValueName:         MACHINE\System\CurrentControlSet\Services\Netlogon\Parameters\SignSecureChannel
                    Computer Setting:  1
    
                GPO: Comp7Hard_SecurityOptions04_NetworkAccess
                    Policy:            @wsecedit.dll,-59053
                    ValueName:         MACHINE\System\CurrentControlSet\Control\SecurePipeServers\Winreg\AllowedPaths\Machine
                    Computer Setting:  System\CurrentControlSet\Control\Print\Printers, System\CurrentControlSet\Services\Eventlog, Software\Microsoft\OLAP Server, Software\Microsoft\Windows NT\CurrentVersion\Print, Software\Microsoft\Windows NT\CurrentVersion\Windows, System\CurrentControlSet\Control\ContentIndex, System\CurrentControlSet\Control\Terminal Server, System\CurrentControlSet\Control\Terminal Server\UserConfig, System\CurrentControlSet\Control\Terminal Server\DefaultUserConfiguration, Software\Microsoft\Windows NT\CurrentVersion\Perflib, System\CurrentControlSet\Services\SysmonLog
    
                GPO: Comp7Hard_SecurityOptions07_Other
                    Policy:            @wsecedit.dll,-59021
                    ValueName:         MACHINE\System\CurrentControlSet\Services\Netlogon\Parameters\RequireStrongKey
                    Computer Setting:  1
    
                GPO: Comp7Hard_SecurityOptions06
                    Policy:            @wsecedit.dll,-59079
                    ValueName:         MACHINE\System\CurrentControlSet\Control\Session Manager\Memory Management\ClearPageFileAtShutdown
                    Computer Setting:  0
    
                GPO: Comp7Hard_SecurityOptions04_NetworkAccess
                    Policy:            @wsecedit.dll,-59055
                    ValueName:         MACHINE\System\CurrentControlSet\Control\Lsa\ForceGuest
                    Computer Setting:  0
    
                GPO: Comp7Hard_SecurityOptions07_Other
                    Policy:            @wsecedit.dll,-59018
                    ValueName:         MACHINE\System\CurrentControlSet\Services\Netlogon\Parameters\RequireSignOrSeal
                    Computer Setting:  1
    
                GPO: Comp7Hard_SecurityOptions07_Other
                    Policy:            @wsecedit.dll,-59076
                    ValueName:         MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Setup\RecoveryConsole\SecurityLevel
                    Computer Setting:  0
    
                GPO: Comp7Hard_SecurityOptions01
                    Policy:            @wsecedit.dll,-59001
                    ValueName:         MACHINE\System\CurrentControlSet\Control\Lsa\LimitBlankPasswordUse
                    Computer Setting:  1
    
                GPO: Comp7Hard_SecurityOptions04_NetworkAccess
                    Policy:            @wsecedit.dll,-59048
                    ValueName:         MACHINE\System\CurrentControlSet\Control\Lsa\RestrictAnonymous
                    Computer Setting:  1
    
                GPO: Comp7Hard_SecurityOptions02_Interactive Logon
                    Policy:            @wsecedit.dll,-59031
                    ValueName:         MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\PasswordExpiryWarning
                    Computer Setting:  14
    
            Event Log Settings
            ------------------
                GPO: Log-Event log Retention policy_CompGPS
                    Policy:            MaximumLogSize
                    Computer Setting:  1048576
                    Log Name:          Security
    
                GPO: Log-Event log Retention policy_CompGPS
                    Policy:            RetentionDays
                    Computer Setting:  90
                    Log Name:          Application
    
                GPO: Log-Event log Retention policy_CompGPS
                    Policy:            MaximumLogSize
                    Computer Setting:  1048576
                    Log Name:          Application
    
                GPO: Log-Event log Retention policy_CompGPS
                    Policy:            RetentionDays
                    Computer Setting:  90
                    Log Name:          Security
    
                GPO: Log-Event log Retention policy_CompGPS
                    Policy:            MaximumLogSize
                    Computer Setting:  1048576
                    Log Name:          System
    
                GPO: Log-Event log Retention policy_CompGPS
                    Policy:            RetentionDays
                    Computer Setting:  90
                    Log Name:          System
    
            Restricted Groups
            -----------------
                N/A
    
            System Services
            ---------------
                N/A
    
            Registry Settings
            -----------------
                N/A
    
            File System Settings
            --------------------
                GPO: USB-Enable USB Mass Storage WinXP_CompGPrAdm
                    ObjectName: C:\WINDOWS\INF\USBSTOR.PNF
    
                GPO: USB-Enable USB Mass Storage WinXP_CompGPrAdm
                    ObjectName: C:\WINDOWS\INF\USBSTOR.INF
    
            Public Key Policies
            -------------------
                N/A
    
            Administrative Templates
            ------------------------
                GPO: Local Group Policy
                    KeyName:     Software\Policies\Microsoft\Windows\Safer\CodeIdentifiers\TransparentEnabled
                    Value:       1, 0, 0, 0
                    State:       Enabled
    
                GPO: Comp7Hard_WindowsUpdate
                    KeyName:     Software\Policies\Microsoft\Windows\WindowsUpdate\AU\NoAUAsDefaultShutdownOption
                    Value:       0, 0, 0, 0
                    State:       Enabled
    
                GPO: Comp7Hard_WindowsComponentsOthers
                    KeyName:     Software\Policies\Microsoft\Windows\Installer\AlwaysInstallElevated
                    Value:       0, 0, 0, 0
                    State:       Enabled
    
                GPO: Comp7Hard_InternetCommunication
                    KeyName:     Software\Policies\Microsoft\Messenger\Client\CEIP
                    Value:       2, 0, 0, 0
                    State:       Enabled
    
                GPO: Comp7Hard_WindowsComponentsOthers
                    KeyName:     Software\Policies\Microsoft\Windows\EventLog\Application\Retention
                    Value:       48, 0, 0, 0
                    State:       Enabled
    
                GPO: Comp7Hard_WindowsComponentsOthers
                    KeyName:     Software\Microsoft\Windows\CurrentVersion\Policies\CredUI\EnumerateAdministrators
                    Value:       0, 0, 0, 0
                    State:       Enabled
    
                GPO: Comp7Hard_SystemRemote
                    KeyName:     Software\policies\Microsoft\Windows NT\Terminal Services\fAllowToGetHelp
                    Value:       0, 0, 0, 0
                    State:       Enabled
    
                GPO: Comp7Hard_InternetCommunication
                    KeyName:     Software\Policies\Microsoft\SearchCompanion\DisableContentFileUpdates
                    Value:       1, 0, 0, 0
                    State:       Enabled
    
                GPO: Comp7Hard_WindowsUpdate
                    KeyName:     Software\Policies\Microsoft\Windows\WindowsUpdate\AU\RescheduleWaitTimeEnabled
                    Value:       0, 0, 0, 0
                    State:       Enabled
    
                GPO: Local Group Policy
                    KeyName:     Software\Policies\Microsoft\Windows\Safer\CodeIdentifiers\262144\Paths\{d2c34ab2-529a-46b2-b293-fc853fce72ea}\Description
                    Value:       0, 0
                    State:       Enabled
    
                GPO: Comp7Hard_InternetCommunication
                    KeyName:     Software\Policies\Microsoft\Windows\DriverSearching\DontSearchWindowsUpdate
                    Value:       1, 0, 0, 0
                    State:       Enabled
    
                GPO: Comp7Hard_WindowsComponentsOthers
                    KeyName:     Software\Policies\Microsoft\Windows\EventLog\Application\MaxSize
                    Value:       0, 128, 0, 0
                    State:       Enabled
    
                GPO: Local Group Policy
                    KeyName:     Software\Policies\Microsoft\Windows\Safer\CodeIdentifiers\262144\Paths\{191cd7fa-f240-4a17-8986-94d480a6c8ca}\Description
                    Value:       0, 0
                    State:       Enabled
    
                GPO: Comp7Hard_WindowsUpdate
                    KeyName:     Software\Policies\Microsoft\Windows\WindowsUpdate\AU\NoAutoUpdate
                    Value:       1, 0, 0, 0
                    State:       Enabled
    
                GPO: Comp7Hard_WindowsUpdate
                    KeyName:     Software\Policies\Microsoft\Windows\WindowsUpdate\AU\ScheduledInstallDay
                    State:       disabled
    
                GPO: Comp7Hard_WindowsComponentsOthers
                    KeyName:     Software\Policies\Microsoft\Windows\EventLog\Security\Retention
                    Value:       48, 0, 0, 0
                    State:       Enabled
    
                GPO: USB-Enable USB Mass Storage WinXP_CompGPrAdm
                    KeyName:     SYSTEM\CurrentControlSet\Services\USBSTOR\Start
                    Value:       3, 0, 0, 0
                    State:       Enabled
    
                GPO: Firewall-Allow Remote Administration Exception_CompGPS
                    KeyName:     SOFTWARE\Policies\Microsoft\WindowsFirewall\DomainProfile\RemoteAdminSettings\Enabled
                    Value:       1, 0, 0, 0
                    State:       Enabled
    
                GPO: Comp7Hard_InternetCommunication
                    KeyName:     Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\NoWebServices
                    Value:       1, 0, 0, 0
                    State:       Enabled
    
                GPO: Comp7Hard_WindowsComponentsOthers
                    KeyName:     Software\Policies\Microsoft\Windows\EventLog\System\Retention
                    Value:       48, 0, 0, 0
                    State:       Enabled
    
                GPO: Local Group Policy
                    KeyName:     Software\Policies\Microsoft\Windows\Safer\CodeIdentifiers\DefaultLevel
                    Value:       0, 0, 4, 0
                    State:       Enabled
    
                GPO: Comp7Hard_SystemRemote
                    KeyName:     Software\policies\Microsoft\Windows NT\Terminal Services\DisablePasswordSaving
                    Value:       1, 0, 0, 0
                    State:       Enabled
    
                GPO: Comp7Hard_WindowsUpdate
                    KeyName:     Software\Policies\Microsoft\Windows\WindowsUpdate\AU\NoAUShutdownOption
                    Value:       0, 0, 0, 0
                    State:       Enabled
    
                GPO: Comp7Hard_WindowsUpdate
                    KeyName:     Software\Policies\Microsoft\Windows\WindowsUpdate\AU\RescheduleWaitTime
                    State:       disabled
    
                GPO: Local Group Policy
                    KeyName:     Software\Policies\Microsoft\Windows\Safer\CodeIdentifiers\262144\Paths\{191cd7fa-f240-4a17-8986-94d480a6c8ca}\SaferFlags
                    Value:       0, 0, 0, 0
                    State:       Enabled
    
                GPO: Comp7Hard_SystemRemote
                    KeyName:     Software\policies\Microsoft\Windows NT\Terminal Services\fUseMailto
                    State:       disabled
    
                GPO: Comp7Hard_SystemRemote
                    KeyName:     Software\policies\Microsoft\Windows NT\Terminal Services\MinEncryptionLevel
                    Value:       3, 0, 0, 0
                    State:       Enabled
    
                GPO: Comp7Hard_SystemRemote
                    KeyName:     Software\policies\Microsoft\Windows NT\Terminal Services\fAllowUnsolicited
                    Value:       0, 0, 0, 0
                    State:       Enabled
    
                GPO: Comp7Hard_SystemRemote
                    KeyName:     Software\policies\Microsoft\Windows NT\Rpc\RestrictRemoteClients
                    Value:       1, 0, 0, 0
                    State:       Enabled
    
                GPO: Local Group Policy
                    KeyName:     Software\Policies\Microsoft\Windows\Safer\CodeIdentifiers\PolicyScope
                    Value:       0, 0, 0, 0
                    State:       Enabled
    
                GPO: Comp7Hard_InternetCommunication
                    KeyName:     Software\Policies\Microsoft\Windows NT\Printers\DisableHTTPPrinting
                    Value:       1, 0, 0, 0
                    State:       Enabled
    
                GPO: Comp7Hard_SystemRemote
                    KeyName:     Software\policies\Microsoft\Windows NT\Terminal Services\fAllowFullControl
                    State:       disabled
    
                GPO: Comp7Hard_InternetCommunication
                    KeyName:     Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\NoPublishingWizard
                    Value:       1, 0, 0, 0
                    State:       Enabled
    
                GPO: Comp7Hard_InternetCommunication
                    KeyName:     Software\Policies\Microsoft\Windows NT\Printers\DisableWebPnPDownload
                    Value:       1, 0, 0, 0
                    State:       Enabled
    
                GPO: Comp7Hard_WindowsUpdate
                    KeyName:     Software\Policies\Microsoft\Windows\WindowsUpdate\AU\ScheduledInstallTime
                    State:       disabled
    
                GPO: Comp7Hard_SleepSettings
                    KeyName:     Software\Policies\Microsoft\Power\PowerSettings\0e796bdb-100d-47d6-a2d5-f7d2daa51f51\DCSettingIndex
                    Value:       1, 0, 0, 0
                    State:       Enabled
    
                GPO: Comp7Hard_WindowsUpdate
                    KeyName:     Software\Policies\Microsoft\Windows\WindowsUpdate\AU\NoAutoRebootWithLoggedOnUsers
                    Value:       1, 0, 0, 0
                    State:       Enabled
    
                GPO: Comp7Hard_SystemRemote
                    KeyName:     Software\policies\Microsoft\Windows NT\Terminal Services\fDisableCdm
                    Value:       1, 0, 0, 0
                    State:       Enabled
    
                GPO: Dump File Creation_CompGPrAdm
                    KeyName:     SYSTEM\CurrentControlSet\Control\CrashControl\CrashDumpEnabled
                    Value:       0, 0, 0, 0
                    State:       Enabled
    
                GPO: Local Group Policy
                    KeyName:     Software\Policies\Microsoft\Windows\Safer\CodeIdentifiers\262144\Paths\{d2c34ab2-529a-46b2-b293-fc853fce72ea}\SaferFlags
                    Value:       0, 0, 0, 0
                    State:       Enabled
    
                GPO: Comp7Hard_SystemRemote
                    KeyName:     Software\policies\Microsoft\Windows NT\Terminal Services\MaxTicketExpiryUnits
                    State:       disabled
    
                GPO: Floppy-Enable High Capacity Floppy_CompGPrAdm
                    KeyName:     SYSTEM\CurrentControlSet\Services\sfloppy\Start
                    Value:       3, 0, 0, 0
                    State:       Enabled
    
                GPO: Comp7Hard_WindowsComponentsOthers
                    KeyName:     Software\Policies\Microsoft\Windows\Explorer\NoDataExecutionPrevention
                    Value:       0, 0, 0, 0
                    State:       Enabled
    
                GPO: Floppy-Enable Floppy_CompGPrAdm
                    KeyName:     SYSTEM\CurrentControlSet\Services\Flpydisk\Start
                    Value:       3, 0, 0, 0
                    State:       Enabled
    
                GPO: Comp7Hard_SystemRemote
                    KeyName:     Software\policies\Microsoft\Windows NT\Terminal Services\MaxTicketExpiry
                    State:       disabled
    
                GPO: Comp7Hard_WindowsComponentsOthers
                    KeyName:     Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\NoDriveTypeAutoRun
                    Value:       255, 0, 0, 0
                    State:       Enabled
    
                GPO: Comp7Hard_WindowsComponentsOthers
                    KeyName:     Software\Policies\Microsoft\Windows\EventLog\Security\MaxSize
                    Value:       0, 64, 1, 0
                    State:       Enabled
    
                GPO: Comp7Hard_SystemRemote
                    KeyName:     Software\policies\Microsoft\Windows NT\Terminal Services\fAllowUnsolicitedFullControl
                    State:       disabled
    
                GPO: Comp7Hard_SystemRemote
                    KeyName:     Software\policies\Microsoft\Windows NT\Rpc\EnableAuthEpResolution
                    Value:       0, 0, 0, 0
                    State:       Enabled
    
                GPO: Comp7Hard_WindowsComponentsOthers
                    KeyName:     Software\Policies\Microsoft\Windows\EventLog\System\MaxSize
                    Value:       0, 128, 0, 0
                    State:       Enabled
    
                GPO: Firewall-Allow Remote Administration Exception_CompGPS
                    KeyName:     SOFTWARE\Policies\Microsoft\WindowsFirewall\DomainProfile\RemoteAdminSettings\RemoteAddresses
                    Value:       49, 0, 48, 0, 46, 0, 48, 0, 46, 0, 49, 0, 52, 0, 46, 0, 49, 0, 50, 0, 44, 0, 49, 0, 48, 0, 46, 0, 48, 0, 46, 0, 49, 0, 50, 0, 46, 0, 49, 0, 49, 0, 0, 0
                    State:       Enabled
    
                GPO: Comp7Hard_WindowsComponentsOthers
                    KeyName:     Software\Policies\Microsoft\Windows\WinRM\Service\WinRS\AllowRemoteShellAccess
                    Value:       1, 0, 0, 0
                    State:       Enabled
    
                GPO: CD-ROM Enable WinXP_CompGPrAdm
                    KeyName:     SYSTEM\CurrentControlSet\Services\Cdrom\Start
                    Value:       1, 0, 0, 0
                    State:       Enabled
    
                GPO: Comp7Hard_SystemRemote
                    KeyName:     Software\policies\Microsoft\Windows NT\Terminal Services\fPromptForPassword
                    Value:       1, 0, 0, 0
                    State:       Enabled
    
                GPO: Comp7Hard_WindowsUpdate
                    KeyName:     Software\Policies\Microsoft\Windows\WindowsUpdate\AU\AUOptions
                    State:       disabled
    
                GPO: Comp7Hard_SleepSettings
                    KeyName:     Software\Policies\Microsoft\Power\PowerSettings\0e796bdb-100d-47d6-a2d5-f7d2daa51f51\ACSettingIndex
                    Value:       1, 0, 0, 0
                    State:       Enabled
    
    
    USER SETTINGS
    --------------
        CN=Parmatma Gupta,OU=Jr_OU,OU=IT_OU,OU=Nation_OU,DC=Corp,DC=Domainname,DC=com
        Last time Group Policy was applied: 16-03-2016 at 16:04:44
        Group Policy was applied from:      DC.Corp.Domainname.com
        Group Policy slow link threshold:   500 kbps
        Domain Name:                        CORP
        Domain Type:                        Windows 2000
        
        Applied Group Policy Objects
        -----------------------------
            Dump File Creation_CompGPrAdm
            Folder Options Win XP_UsrGPPr
            Guest a/c-Disable Guest_CompGPS
            SID-Disable Enumeration of SID_CompGPS
            Local Admin Usr Inbuilt - Rename&Reset Password_CompGPPr
            Local User-Create_ComGPPr
            Internet Explorer Setting_UsrGPS
            Folder Options Win Vista_UsrGPPr
            File-Copying Wallpaper_CompGPPr
            Firewall-Allow Remote Administration Exception_CompGPS
            CompanyLogo-on Comp Properties_CompGPPr
            Interactive Logon_CompGPS
            Audit log policies_CompGPS
            ScreenSaverQK_UsrGPS
    
        The following GPOs were not applied because they were filtered out
        -------------------------------------------------------------------
            Log-Event log Retention policy_CompGPS
                Filtering:  Not Applied (Empty)
    
            File-Copying ScreenSaver_CompGPPr
                Filtering:  Not Applied (Empty)
    
            wallpaperQKjpg_UsrGPS
                Filtering:  Denied (Security)
    
            Local Admin-Create & Add_CompGPPr
                Filtering:  Not Applied (Empty)
    
            Logon2Windows Full DN_CompGPPr
                Filtering:  Not Applied (Empty)
    
            Local Group Policy
                Filtering:  Not Applied (Empty)
    
            Local User-N/w Opr_CompGPPr
                Filtering:  Not Applied (Empty)
    
            Wallpaper_winXP regFix_UsrGPPr
                Filtering:  Denied (Security)
    
            Default Domain Policy
                Filtering:  Not Applied (Empty)
    
        The user is a part of the following security groups
        ---------------------------------------------------
            Domain Users
            Everyone
            BUILTIN\Users
            BUILTIN\Administrators
            NT AUTHORITY\INTERACTIVE
            CONSOLE LOGON
            NT AUTHORITY\Authenticated Users
            This Organization
            LOCAL
            TerminalServicesAdmins
            IT_AdminSp_Grp
            IT_Admin_Grp
            Helpdesk_Grp
            IT_Grp
            High Mandatory Level
            
        The user has the following security privileges
        ----------------------------------------------
    
            Shut down the system
            Bypass traverse checking
            Remove computer from docking station
            Change the time zone
            Manage auditing and security log
            Back up files and directories
            Restore files and directories
            Change the system time
            Force shutdown from a remote system
            Take ownership of files or other objects
            Debug programs
            Modify firmware environment values
            Profile system performance
            Profile single process
            Increase scheduling priority
            Load and unload device drivers
            Create a pagefile
            Adjust memory quotas for a process
            Perform volume maintenance tasks
            Impersonate a client after authentication
            Create global objects
            Create symbolic links
            Increase a process working set
    
        Resultant Set Of Policies for User
        -----------------------------------
    
            Software Installations
            ----------------------
                N/A
    
            Logon Scripts
            -------------
                N/A
    
            Logoff Scripts
            --------------
                N/A
    
            Public Key Policies
            -------------------
                N/A
    
            Administrative Templates
            ------------------------
                GPO: ScreenSaverQK_UsrGPS
                    KeyName:     Software\Policies\Microsoft\Windows\Control Panel\Desktop\ScreenSaverIsSecure
                    Value:       49, 0, 0, 0
                    State:       Enabled
    
                GPO: ScreenSaverQK_UsrGPS
                    KeyName:     Software\Policies\Microsoft\Windows\Control Panel\Desktop\ScreenSaveTimeOut
                    Value:       51, 0, 48, 0, 48, 0, 0, 0
                    State:       Enabled
    
                GPO: ScreenSaverQK_UsrGPS
                    KeyName:     Software\Microsoft\Windows\CurrentVersion\Policies\System\NoDispScrSavPage
                    Value:       1, 0, 0, 0
                    State:       Enabled
    
                GPO: ScreenSaverQK_UsrGPS
                    KeyName:     Software\Policies\Microsoft\Windows\Control Panel\Desktop\SCRNSAVE.EXE
                    Value:       37, 0, 119, 0, 105, 0, 110, 0, 100, 0, 105, 0, 114, 0, 37, 0, 92, 0, 81, 0, 117, 0, 97, 0, 108, 0, 105, 0, 116, 0, 121, 0, 107, 0, 67, 0, 76, 0, 92, 0, 81, 0, 75, 0, 115, 0, 99, 0, 114, 0, 101, 0, 101, 0, 110, 0, 51, 0, 46, 0, 115, 0, 99, 0, 114, 0, 0, 0
                    State:       Enabled
    
                GPO: ScreenSaverQK_UsrGPS
                    KeyName:     Software\Policies\Microsoft\Windows\Control Panel\Desktop\ScreenSaveActive
                    Value:       49, 0, 0, 0
                    State:       Enabled
    
            Folder Redirection
            ------------------
                N/A
    
            Internet Explorer Browser User Interface
            ----------------------------------------
                GPO: Internet Explorer Setting_UsrGPS
                    Large Animated Bitmap Name:      N/A
                    Large Custom Logo Bitmap Name:   N/A
                    Title BarText:                   Company Technologies
                    UserAgent Text:                  N/A
                    Delete existing toolbar buttons: No
    
            Internet Explorer Connection
            ----------------------------
                HTTP Proxy Server:   N/A
                Secure Proxy Server: N/A
                FTP Proxy Server:    N/A
                Gopher Proxy Server: N/A
                Socks Proxy Server:  N/A
                Auto Config Enable:  No
                Enable Proxy:        No
                Use same Proxy:      No
    
            Internet Explorer URLs
            ----------------------
                GPO: Internet Explorer Setting_UsrGPS
                    Home page URL:           https://myhris.website.in/mywebsite
                    Search page URL:         N/A
                    Online support page URL: http://10.1.1.149:8080/
    
            Internet Explorer Security
            --------------------------
                Always Viewable Sites:     N/A
                Password Override Enabled: False
    
                GPO: Internet Explorer Setting_UsrGPS
                    Import the current Content Ratings Settings:      No
                    Import the current Security Zones Settings:       No
                    Import current Authenticode Security Information: No
                    Enable trusted publisher lockdown:                No
    
            Internet Explorer Programs
            --------------------------
                GPO: Internet Explorer Setting_UsrGPS
                    Import the current Program Settings: No
    


    Thanks & Regards,
    Param
    www.paramgupta.blogspot.com

    Thursday, March 17, 2016 10:00 AM
  • Hi Param,

    I notice that the GPO were filtered out.

    So I suggest you check related filtering settings about the GPO.

    In additional, there is a similar thread below may be helpful to you.

    https://social.technet.microsoft.com/Forums/windowsserver/en-US/48d1d813-ff38-46c2-913a-62150f4d127e/gpo-not-applied-empty-has-me-baffled?forum=winserverGP

    Best Regards,

    Jay


    Please remember to mark the replies as answers if they help and un-mark them if they provide no help. If you have feedback for TechNet Subscriber Support, contact tnmff@microsoft.com.

    Monday, March 21, 2016 6:56 AM
    Moderator
  • > I notice that the GPO were filtered out.
     
    Yes, in the user GPO processing it is filtered out. In the computer GPO
    processing it is applied as expected.
     
    I tried to repro this issue, and I failed. Of course, because I used
    only ONE place to configure the log size. The TO uses two places:
                 GPO: Comp7Hard_WindowsComponentsOthers
                    KeyName:
    Software\Policies\Microsoft\Windows\EventLog\Application\MaxSize
                    Value:       0, 128, 0, 0
                    State:       Enabled
     
    Monday, March 21, 2016 11:00 AM