Hi Everyone
As you probably know already, Microsoft released Windows 10 1703, aka Creators Update to CB this week. Here is a list of all the new group policy settings to enjoy 🙂
New Policy Settings in Existing Templates
| Template | Setting | Scope |
| AppPrivacy.admx | Let Windows apps access diagnostic information about other apps | Machine |
| CloudContent.admx | Do not use diagnostic data for tailored experiences | User |
| CloudContent.admx | Turn off the Windows Spotlight on Action Center | User |
| CloudContent.admx | Turn off the Windows Welcome Experience | User |
| MicrosoftEdge.admx | Allow Address bar drop-down list suggestions | Both |
| MicrosoftEdge.admx | Allow search engine customization | Both |
| MicrosoftEdge.admx | Set default search engine | Both |
| MicrosoftEdge.admx | Configure additional search engines | Both |
| MicrosoftEdge.admx | Disable lockdown of Start pages | Both |
| MicrosoftEdge.admx | Prevent Microsoft Edge from gathering Live Tile information when pinning a site to Start | Both |
| MicrosoftEdge.admx | Prevent the First Run webpage from opening on Microsoft Edge | Both |
| MicrosoftEdge.admx | Keep favorites in sync between Internet Explorer and Microsoft Edge | Both |
| MicrosoftEdge.admx | Configure the Adobe Flash Click-to-Run setting | Both |
| MicrosoftEdge.admx | Allow clearing browsing data on exit | Both |
| Taskbar.admx | Show additional calendar | User |
| TPM.admx | Configure the system to use legacy Dictionary Attack Prevention Parameters setting for TPM 2.0. | Machine |
| VolumeEncryption.admx | Disable new DMA devices when this computer is locked | Machine |
| VolumeEncryption.admx | Allow devices compliant with InstantGo or HSTI to opt out of pre-boot PIN. | Machine |
| WorkFolders-Client.admx | Enables the use of Token Broker for AD FS authentication | User |
New Templates
Note: This can include renamed templates, however those are usually rare.
| Template | Setting | Scope |
| AppHVSI.admx | Turn On/Off Windows Defender Application Guard (WDAG) | Machine |
| AppHVSI.admx | Configure Windows Defender Application Guard clipboard settings | Machine |
| AppHVSI.admx | Configure Windows Defender Application Guard Print Settings | Machine |
| AppHVSI.admx | Block Entperise websites to load non-Enterprise content in IE and Edge | Machine |
| Display.admx | Turn on GdiDPIScaling for applications | Machine |
| Display.admx | Turn off GdiDPIScaling for applications | Machine |
| FindMy.admx | Turn On/Off Find My Device | Machine |
| GameDVR.admx | Enables or disables Windows Game Recording and Broadcasting | Machine |
| MSAPolicy.admx | Block all consumer Microsoft account user authentication | Machine |
| NaAuth.admx | Configure Dynamic Lock | Machine |
| SmartScreen.admx | Configure Windows Defender SmartScreen | Machine |
| SmartScreen.admx | Configure App Install Control | Machine |
| SmartScreen.admx | Configure Windows Defender SmartScreen | Both |
| SmartScreen.admx | Prevent bypassing Windows Defender SmartScreen prompts for sites | Both |
| SmartScreen.admx | Prevent bypassing Windows Defender SmartScreen prompts for files | Both |
| Speech.admx | Allow Automatic Update of Speech Data | Machine |
Colin

Reblogged this on System Center.
LikeLike