mirror of
https://github.com/MicrosoftDocs/windows-itpro-docs.git
synced 2025-05-12 05:17:22 +00:00
945 lines
41 KiB
Markdown
945 lines
41 KiB
Markdown
---
|
|
title: ADMX_MSS-legacy Policy CSP
|
|
description: Learn more about the ADMX_MSS-legacy Area in Policy CSP.
|
|
ms.date: 08/06/2024
|
|
---
|
|
|
|
<!-- Auto-Generated CSP Document -->
|
|
|
|
<!-- ADMX_MSS-legacy-Begin -->
|
|
# Policy CSP - ADMX_MSS-legacy
|
|
|
|
[!INCLUDE [ADMX-backed CSP tip](includes/mdm-admx-csp-note.md)]
|
|
|
|
<!-- ADMX_MSS-legacy-Editable-Begin -->
|
|
<!-- Add any additional information about this policy here. Anything outside this section will get overwritten. -->
|
|
<!-- ADMX_MSS-legacy-Editable-End -->
|
|
|
|
<!-- Pol_MSS_AutoAdminLogon-Begin -->
|
|
## Pol_MSS_AutoAdminLogon
|
|
|
|
<!-- Pol_MSS_AutoAdminLogon-Applicability-Begin -->
|
|
| Scope | Editions | Applicable OS |
|
|
|:--|:--|:--|
|
|
| ✅ Device <br> ❌ User | ✅ Pro <br> ✅ Enterprise <br> ✅ Education <br> ✅ Windows SE <br> ✅ IoT Enterprise / IoT Enterprise LTSC | ✅ Windows 10, version 2004 with [KB5005101](https://support.microsoft.com/help/5005101) [10.0.19041.1202] and later <br> ✅ Windows 10, version 20H2 with [KB5005101](https://support.microsoft.com/help/5005101) [10.0.19042.1202] and later <br> ✅ Windows 10, version 21H1 with [KB5005101](https://support.microsoft.com/help/5005101) [10.0.19043.1202] and later <br> ✅ Windows 11, version 21H2 [10.0.22000] and later |
|
|
<!-- Pol_MSS_AutoAdminLogon-Applicability-End -->
|
|
|
|
<!-- Pol_MSS_AutoAdminLogon-OmaUri-Begin -->
|
|
```Device
|
|
./Device/Vendor/MSFT/Policy/Config/ADMX_MSS-legacy/Pol_MSS_AutoAdminLogon
|
|
```
|
|
<!-- Pol_MSS_AutoAdminLogon-OmaUri-End -->
|
|
|
|
<!-- Pol_MSS_AutoAdminLogon-Description-Begin -->
|
|
<!-- Description-Source-Not-Found -->
|
|
<!-- Pol_MSS_AutoAdminLogon-Description-End -->
|
|
|
|
<!-- Pol_MSS_AutoAdminLogon-Editable-Begin -->
|
|
<!-- Add any additional information about this policy here. Anything outside this section will get overwritten. -->
|
|
Enable Automatic Logon (not recommended).
|
|
<!-- Pol_MSS_AutoAdminLogon-Editable-End -->
|
|
|
|
<!-- Pol_MSS_AutoAdminLogon-DFProperties-Begin -->
|
|
**Description framework properties**:
|
|
|
|
| Property name | Property value |
|
|
|:--|:--|
|
|
| Format | `chr` (string) |
|
|
| Access Type | Add, Delete, Get, Replace |
|
|
<!-- Pol_MSS_AutoAdminLogon-DFProperties-End -->
|
|
|
|
<!-- Pol_MSS_AutoAdminLogon-AdmxBacked-Begin -->
|
|
<!-- ADMX-Not-Found -->
|
|
[!INCLUDE [ADMX-backed policy note](includes/mdm-admx-policy-note.md)]
|
|
|
|
**ADMX mapping**:
|
|
|
|
| Name | Value |
|
|
|:--|:--|
|
|
| Name | Pol_MSS_AutoAdminLogon |
|
|
| ADMX File Name | MSS-legacy.admx |
|
|
<!-- Pol_MSS_AutoAdminLogon-AdmxBacked-End -->
|
|
|
|
<!-- Pol_MSS_AutoAdminLogon-Examples-Begin -->
|
|
<!-- Add any examples for this policy here. Examples outside this section will get overwritten. -->
|
|
<!-- Pol_MSS_AutoAdminLogon-Examples-End -->
|
|
|
|
<!-- Pol_MSS_AutoAdminLogon-End -->
|
|
|
|
<!-- Pol_MSS_AutoReboot-Begin -->
|
|
## Pol_MSS_AutoReboot
|
|
|
|
<!-- Pol_MSS_AutoReboot-Applicability-Begin -->
|
|
| Scope | Editions | Applicable OS |
|
|
|:--|:--|:--|
|
|
| ✅ Device <br> ❌ User | ✅ Pro <br> ✅ Enterprise <br> ✅ Education <br> ✅ Windows SE <br> ✅ IoT Enterprise / IoT Enterprise LTSC | ✅ Windows 10, version 2004 with [KB5005101](https://support.microsoft.com/help/5005101) [10.0.19041.1202] and later <br> ✅ Windows 10, version 20H2 with [KB5005101](https://support.microsoft.com/help/5005101) [10.0.19042.1202] and later <br> ✅ Windows 10, version 21H1 with [KB5005101](https://support.microsoft.com/help/5005101) [10.0.19043.1202] and later <br> ✅ Windows 11, version 21H2 [10.0.22000] and later |
|
|
<!-- Pol_MSS_AutoReboot-Applicability-End -->
|
|
|
|
<!-- Pol_MSS_AutoReboot-OmaUri-Begin -->
|
|
```Device
|
|
./Device/Vendor/MSFT/Policy/Config/ADMX_MSS-legacy/Pol_MSS_AutoReboot
|
|
```
|
|
<!-- Pol_MSS_AutoReboot-OmaUri-End -->
|
|
|
|
<!-- Pol_MSS_AutoReboot-Description-Begin -->
|
|
<!-- Description-Source-Not-Found -->
|
|
<!-- Pol_MSS_AutoReboot-Description-End -->
|
|
|
|
<!-- Pol_MSS_AutoReboot-Editable-Begin -->
|
|
<!-- Add any additional information about this policy here. Anything outside this section will get overwritten. -->
|
|
Allow Windows to automatically restart after a system crash (recommended except for highly secure environments).
|
|
<!-- Pol_MSS_AutoReboot-Editable-End -->
|
|
|
|
<!-- Pol_MSS_AutoReboot-DFProperties-Begin -->
|
|
**Description framework properties**:
|
|
|
|
| Property name | Property value |
|
|
|:--|:--|
|
|
| Format | `chr` (string) |
|
|
| Access Type | Add, Delete, Get, Replace |
|
|
<!-- Pol_MSS_AutoReboot-DFProperties-End -->
|
|
|
|
<!-- Pol_MSS_AutoReboot-AdmxBacked-Begin -->
|
|
<!-- ADMX-Not-Found -->
|
|
[!INCLUDE [ADMX-backed policy note](includes/mdm-admx-policy-note.md)]
|
|
|
|
**ADMX mapping**:
|
|
|
|
| Name | Value |
|
|
|:--|:--|
|
|
| Name | Pol_MSS_AutoReboot |
|
|
| ADMX File Name | MSS-legacy.admx |
|
|
<!-- Pol_MSS_AutoReboot-AdmxBacked-End -->
|
|
|
|
<!-- Pol_MSS_AutoReboot-Examples-Begin -->
|
|
<!-- Add any examples for this policy here. Examples outside this section will get overwritten. -->
|
|
<!-- Pol_MSS_AutoReboot-Examples-End -->
|
|
|
|
<!-- Pol_MSS_AutoReboot-End -->
|
|
|
|
<!-- Pol_MSS_AutoShareServer-Begin -->
|
|
## Pol_MSS_AutoShareServer
|
|
|
|
<!-- Pol_MSS_AutoShareServer-Applicability-Begin -->
|
|
| Scope | Editions | Applicable OS |
|
|
|:--|:--|:--|
|
|
| ✅ Device <br> ❌ User | ✅ Pro <br> ✅ Enterprise <br> ✅ Education <br> ✅ Windows SE <br> ✅ IoT Enterprise / IoT Enterprise LTSC | ✅ Windows 10, version 2004 with [KB5005101](https://support.microsoft.com/help/5005101) [10.0.19041.1202] and later <br> ✅ Windows 10, version 20H2 with [KB5005101](https://support.microsoft.com/help/5005101) [10.0.19042.1202] and later <br> ✅ Windows 10, version 21H1 with [KB5005101](https://support.microsoft.com/help/5005101) [10.0.19043.1202] and later <br> ✅ Windows 11, version 21H2 [10.0.22000] and later |
|
|
<!-- Pol_MSS_AutoShareServer-Applicability-End -->
|
|
|
|
<!-- Pol_MSS_AutoShareServer-OmaUri-Begin -->
|
|
```Device
|
|
./Device/Vendor/MSFT/Policy/Config/ADMX_MSS-legacy/Pol_MSS_AutoShareServer
|
|
```
|
|
<!-- Pol_MSS_AutoShareServer-OmaUri-End -->
|
|
|
|
<!-- Pol_MSS_AutoShareServer-Description-Begin -->
|
|
<!-- Description-Source-Not-Found -->
|
|
<!-- Pol_MSS_AutoShareServer-Description-End -->
|
|
|
|
<!-- Pol_MSS_AutoShareServer-Editable-Begin -->
|
|
<!-- Add any additional information about this policy here. Anything outside this section will get overwritten. -->
|
|
Enable administrative shares on servers (recommended except for highly secure environments).
|
|
<!-- Pol_MSS_AutoShareServer-Editable-End -->
|
|
|
|
<!-- Pol_MSS_AutoShareServer-DFProperties-Begin -->
|
|
**Description framework properties**:
|
|
|
|
| Property name | Property value |
|
|
|:--|:--|
|
|
| Format | `chr` (string) |
|
|
| Access Type | Add, Delete, Get, Replace |
|
|
<!-- Pol_MSS_AutoShareServer-DFProperties-End -->
|
|
|
|
<!-- Pol_MSS_AutoShareServer-AdmxBacked-Begin -->
|
|
<!-- ADMX-Not-Found -->
|
|
[!INCLUDE [ADMX-backed policy note](includes/mdm-admx-policy-note.md)]
|
|
|
|
**ADMX mapping**:
|
|
|
|
| Name | Value |
|
|
|:--|:--|
|
|
| Name | Pol_MSS_AutoShareServer |
|
|
| ADMX File Name | MSS-legacy.admx |
|
|
<!-- Pol_MSS_AutoShareServer-AdmxBacked-End -->
|
|
|
|
<!-- Pol_MSS_AutoShareServer-Examples-Begin -->
|
|
<!-- Add any examples for this policy here. Examples outside this section will get overwritten. -->
|
|
<!-- Pol_MSS_AutoShareServer-Examples-End -->
|
|
|
|
<!-- Pol_MSS_AutoShareServer-End -->
|
|
|
|
<!-- Pol_MSS_AutoShareWks-Begin -->
|
|
## Pol_MSS_AutoShareWks
|
|
|
|
<!-- Pol_MSS_AutoShareWks-Applicability-Begin -->
|
|
| Scope | Editions | Applicable OS |
|
|
|:--|:--|:--|
|
|
| ✅ Device <br> ❌ User | ✅ Pro <br> ✅ Enterprise <br> ✅ Education <br> ✅ Windows SE <br> ✅ IoT Enterprise / IoT Enterprise LTSC | ✅ Windows 10, version 2004 with [KB5005101](https://support.microsoft.com/help/5005101) [10.0.19041.1202] and later <br> ✅ Windows 10, version 20H2 with [KB5005101](https://support.microsoft.com/help/5005101) [10.0.19042.1202] and later <br> ✅ Windows 10, version 21H1 with [KB5005101](https://support.microsoft.com/help/5005101) [10.0.19043.1202] and later <br> ✅ Windows 11, version 21H2 [10.0.22000] and later |
|
|
<!-- Pol_MSS_AutoShareWks-Applicability-End -->
|
|
|
|
<!-- Pol_MSS_AutoShareWks-OmaUri-Begin -->
|
|
```Device
|
|
./Device/Vendor/MSFT/Policy/Config/ADMX_MSS-legacy/Pol_MSS_AutoShareWks
|
|
```
|
|
<!-- Pol_MSS_AutoShareWks-OmaUri-End -->
|
|
|
|
<!-- Pol_MSS_AutoShareWks-Description-Begin -->
|
|
<!-- Description-Source-Not-Found -->
|
|
<!-- Pol_MSS_AutoShareWks-Description-End -->
|
|
|
|
<!-- Pol_MSS_AutoShareWks-Editable-Begin -->
|
|
<!-- Add any additional information about this policy here. Anything outside this section will get overwritten. -->
|
|
Enable administrative shares on workstations (recommended except for highly secure environments).
|
|
<!-- Pol_MSS_AutoShareWks-Editable-End -->
|
|
|
|
<!-- Pol_MSS_AutoShareWks-DFProperties-Begin -->
|
|
**Description framework properties**:
|
|
|
|
| Property name | Property value |
|
|
|:--|:--|
|
|
| Format | `chr` (string) |
|
|
| Access Type | Add, Delete, Get, Replace |
|
|
<!-- Pol_MSS_AutoShareWks-DFProperties-End -->
|
|
|
|
<!-- Pol_MSS_AutoShareWks-AdmxBacked-Begin -->
|
|
<!-- ADMX-Not-Found -->
|
|
[!INCLUDE [ADMX-backed policy note](includes/mdm-admx-policy-note.md)]
|
|
|
|
**ADMX mapping**:
|
|
|
|
| Name | Value |
|
|
|:--|:--|
|
|
| Name | Pol_MSS_AutoShareWks |
|
|
| ADMX File Name | MSS-legacy.admx |
|
|
<!-- Pol_MSS_AutoShareWks-AdmxBacked-End -->
|
|
|
|
<!-- Pol_MSS_AutoShareWks-Examples-Begin -->
|
|
<!-- Add any examples for this policy here. Examples outside this section will get overwritten. -->
|
|
<!-- Pol_MSS_AutoShareWks-Examples-End -->
|
|
|
|
<!-- Pol_MSS_AutoShareWks-End -->
|
|
|
|
<!-- Pol_MSS_DisableSavePassword-Begin -->
|
|
## Pol_MSS_DisableSavePassword
|
|
|
|
<!-- Pol_MSS_DisableSavePassword-Applicability-Begin -->
|
|
| Scope | Editions | Applicable OS |
|
|
|:--|:--|:--|
|
|
| ✅ Device <br> ❌ User | ✅ Pro <br> ✅ Enterprise <br> ✅ Education <br> ✅ Windows SE <br> ✅ IoT Enterprise / IoT Enterprise LTSC | ✅ Windows 10, version 2004 with [KB5005101](https://support.microsoft.com/help/5005101) [10.0.19041.1202] and later <br> ✅ Windows 10, version 20H2 with [KB5005101](https://support.microsoft.com/help/5005101) [10.0.19042.1202] and later <br> ✅ Windows 10, version 21H1 with [KB5005101](https://support.microsoft.com/help/5005101) [10.0.19043.1202] and later <br> ✅ Windows 11, version 21H2 [10.0.22000] and later |
|
|
<!-- Pol_MSS_DisableSavePassword-Applicability-End -->
|
|
|
|
<!-- Pol_MSS_DisableSavePassword-OmaUri-Begin -->
|
|
```Device
|
|
./Device/Vendor/MSFT/Policy/Config/ADMX_MSS-legacy/Pol_MSS_DisableSavePassword
|
|
```
|
|
<!-- Pol_MSS_DisableSavePassword-OmaUri-End -->
|
|
|
|
<!-- Pol_MSS_DisableSavePassword-Description-Begin -->
|
|
<!-- Description-Source-Not-Found -->
|
|
<!-- Pol_MSS_DisableSavePassword-Description-End -->
|
|
|
|
<!-- Pol_MSS_DisableSavePassword-Editable-Begin -->
|
|
<!-- Add any additional information about this policy here. Anything outside this section will get overwritten. -->
|
|
<!-- Pol_MSS_DisableSavePassword-Editable-End -->
|
|
|
|
<!-- Pol_MSS_DisableSavePassword-DFProperties-Begin -->
|
|
**Description framework properties**:
|
|
|
|
| Property name | Property value |
|
|
|:--|:--|
|
|
| Format | `chr` (string) |
|
|
| Access Type | Add, Delete, Get, Replace |
|
|
<!-- Pol_MSS_DisableSavePassword-DFProperties-End -->
|
|
|
|
<!-- Pol_MSS_DisableSavePassword-AdmxBacked-Begin -->
|
|
<!-- ADMX-Not-Found -->
|
|
[!INCLUDE [ADMX-backed policy note](includes/mdm-admx-policy-note.md)]
|
|
|
|
**ADMX mapping**:
|
|
|
|
| Name | Value |
|
|
|:--|:--|
|
|
| Name | Pol_MSS_DisableSavePassword |
|
|
| ADMX File Name | MSS-legacy.admx |
|
|
<!-- Pol_MSS_DisableSavePassword-AdmxBacked-End -->
|
|
|
|
<!-- Pol_MSS_DisableSavePassword-Examples-Begin -->
|
|
<!-- Add any examples for this policy here. Examples outside this section will get overwritten. -->
|
|
Prevent the dial-up password from being saved (recommended).
|
|
<!-- Pol_MSS_DisableSavePassword-Examples-End -->
|
|
|
|
<!-- Pol_MSS_DisableSavePassword-End -->
|
|
|
|
<!-- Pol_MSS_EnableDeadGWDetect-Begin -->
|
|
## Pol_MSS_EnableDeadGWDetect
|
|
|
|
<!-- Pol_MSS_EnableDeadGWDetect-Applicability-Begin -->
|
|
| Scope | Editions | Applicable OS |
|
|
|:--|:--|:--|
|
|
| ✅ Device <br> ❌ User | ✅ Pro <br> ✅ Enterprise <br> ✅ Education <br> ✅ Windows SE <br> ✅ IoT Enterprise / IoT Enterprise LTSC | ✅ Windows 10, version 2004 with [KB5005101](https://support.microsoft.com/help/5005101) [10.0.19041.1202] and later <br> ✅ Windows 10, version 20H2 with [KB5005101](https://support.microsoft.com/help/5005101) [10.0.19042.1202] and later <br> ✅ Windows 10, version 21H1 with [KB5005101](https://support.microsoft.com/help/5005101) [10.0.19043.1202] and later <br> ✅ Windows 11, version 21H2 [10.0.22000] and later |
|
|
<!-- Pol_MSS_EnableDeadGWDetect-Applicability-End -->
|
|
|
|
<!-- Pol_MSS_EnableDeadGWDetect-OmaUri-Begin -->
|
|
```Device
|
|
./Device/Vendor/MSFT/Policy/Config/ADMX_MSS-legacy/Pol_MSS_EnableDeadGWDetect
|
|
```
|
|
<!-- Pol_MSS_EnableDeadGWDetect-OmaUri-End -->
|
|
|
|
<!-- Pol_MSS_EnableDeadGWDetect-Description-Begin -->
|
|
<!-- Description-Source-Not-Found -->
|
|
<!-- Pol_MSS_EnableDeadGWDetect-Description-End -->
|
|
|
|
<!-- Pol_MSS_EnableDeadGWDetect-Editable-Begin -->
|
|
<!-- Add any additional information about this policy here. Anything outside this section will get overwritten. -->
|
|
Allow automatic detection of dead network gateways (could lead to DoS).
|
|
<!-- Pol_MSS_EnableDeadGWDetect-Editable-End -->
|
|
|
|
<!-- Pol_MSS_EnableDeadGWDetect-DFProperties-Begin -->
|
|
**Description framework properties**:
|
|
|
|
| Property name | Property value |
|
|
|:--|:--|
|
|
| Format | `chr` (string) |
|
|
| Access Type | Add, Delete, Get, Replace |
|
|
<!-- Pol_MSS_EnableDeadGWDetect-DFProperties-End -->
|
|
|
|
<!-- Pol_MSS_EnableDeadGWDetect-AdmxBacked-Begin -->
|
|
<!-- ADMX-Not-Found -->
|
|
[!INCLUDE [ADMX-backed policy note](includes/mdm-admx-policy-note.md)]
|
|
|
|
**ADMX mapping**:
|
|
|
|
| Name | Value |
|
|
|:--|:--|
|
|
| Name | Pol_MSS_EnableDeadGWDetect |
|
|
| ADMX File Name | MSS-legacy.admx |
|
|
<!-- Pol_MSS_EnableDeadGWDetect-AdmxBacked-End -->
|
|
|
|
<!-- Pol_MSS_EnableDeadGWDetect-Examples-Begin -->
|
|
<!-- Add any examples for this policy here. Examples outside this section will get overwritten. -->
|
|
<!-- Pol_MSS_EnableDeadGWDetect-Examples-End -->
|
|
|
|
<!-- Pol_MSS_EnableDeadGWDetect-End -->
|
|
|
|
<!-- Pol_MSS_HideFromBrowseList-Begin -->
|
|
## Pol_MSS_HideFromBrowseList
|
|
|
|
<!-- Pol_MSS_HideFromBrowseList-Applicability-Begin -->
|
|
| Scope | Editions | Applicable OS |
|
|
|:--|:--|:--|
|
|
| ✅ Device <br> ❌ User | ✅ Pro <br> ✅ Enterprise <br> ✅ Education <br> ✅ Windows SE <br> ✅ IoT Enterprise / IoT Enterprise LTSC | ✅ Windows 10, version 2004 with [KB5005101](https://support.microsoft.com/help/5005101) [10.0.19041.1202] and later <br> ✅ Windows 10, version 20H2 with [KB5005101](https://support.microsoft.com/help/5005101) [10.0.19042.1202] and later <br> ✅ Windows 10, version 21H1 with [KB5005101](https://support.microsoft.com/help/5005101) [10.0.19043.1202] and later <br> ✅ Windows 11, version 21H2 [10.0.22000] and later |
|
|
<!-- Pol_MSS_HideFromBrowseList-Applicability-End -->
|
|
|
|
<!-- Pol_MSS_HideFromBrowseList-OmaUri-Begin -->
|
|
```Device
|
|
./Device/Vendor/MSFT/Policy/Config/ADMX_MSS-legacy/Pol_MSS_HideFromBrowseList
|
|
```
|
|
<!-- Pol_MSS_HideFromBrowseList-OmaUri-End -->
|
|
|
|
<!-- Pol_MSS_HideFromBrowseList-Description-Begin -->
|
|
<!-- Description-Source-Not-Found -->
|
|
<!-- Pol_MSS_HideFromBrowseList-Description-End -->
|
|
|
|
<!-- Pol_MSS_HideFromBrowseList-Editable-Begin -->
|
|
<!-- Add any additional information about this policy here. Anything outside this section will get overwritten. -->
|
|
Hide Computer From the Browse List (not recommended except for highly secure environments).
|
|
<!-- Pol_MSS_HideFromBrowseList-Editable-End -->
|
|
|
|
<!-- Pol_MSS_HideFromBrowseList-DFProperties-Begin -->
|
|
**Description framework properties**:
|
|
|
|
| Property name | Property value |
|
|
|:--|:--|
|
|
| Format | `chr` (string) |
|
|
| Access Type | Add, Delete, Get, Replace |
|
|
<!-- Pol_MSS_HideFromBrowseList-DFProperties-End -->
|
|
|
|
<!-- Pol_MSS_HideFromBrowseList-AdmxBacked-Begin -->
|
|
<!-- ADMX-Not-Found -->
|
|
[!INCLUDE [ADMX-backed policy note](includes/mdm-admx-policy-note.md)]
|
|
|
|
**ADMX mapping**:
|
|
|
|
| Name | Value |
|
|
|:--|:--|
|
|
| Name | Pol_MSS_HideFromBrowseList |
|
|
| ADMX File Name | MSS-legacy.admx |
|
|
<!-- Pol_MSS_HideFromBrowseList-AdmxBacked-End -->
|
|
|
|
<!-- Pol_MSS_HideFromBrowseList-Examples-Begin -->
|
|
<!-- Add any examples for this policy here. Examples outside this section will get overwritten. -->
|
|
<!-- Pol_MSS_HideFromBrowseList-Examples-End -->
|
|
|
|
<!-- Pol_MSS_HideFromBrowseList-End -->
|
|
|
|
<!-- Pol_MSS_KeepAliveTime-Begin -->
|
|
## Pol_MSS_KeepAliveTime
|
|
|
|
<!-- Pol_MSS_KeepAliveTime-Applicability-Begin -->
|
|
| Scope | Editions | Applicable OS |
|
|
|:--|:--|:--|
|
|
| ✅ Device <br> ❌ User | ✅ Pro <br> ✅ Enterprise <br> ✅ Education <br> ✅ Windows SE <br> ✅ IoT Enterprise / IoT Enterprise LTSC | ✅ Windows 10, version 2004 with [KB5005101](https://support.microsoft.com/help/5005101) [10.0.19041.1202] and later <br> ✅ Windows 10, version 20H2 with [KB5005101](https://support.microsoft.com/help/5005101) [10.0.19042.1202] and later <br> ✅ Windows 10, version 21H1 with [KB5005101](https://support.microsoft.com/help/5005101) [10.0.19043.1202] and later <br> ✅ Windows 11, version 21H2 [10.0.22000] and later |
|
|
<!-- Pol_MSS_KeepAliveTime-Applicability-End -->
|
|
|
|
<!-- Pol_MSS_KeepAliveTime-OmaUri-Begin -->
|
|
```Device
|
|
./Device/Vendor/MSFT/Policy/Config/ADMX_MSS-legacy/Pol_MSS_KeepAliveTime
|
|
```
|
|
<!-- Pol_MSS_KeepAliveTime-OmaUri-End -->
|
|
|
|
<!-- Pol_MSS_KeepAliveTime-Description-Begin -->
|
|
<!-- Description-Source-Not-Found -->
|
|
<!-- Pol_MSS_KeepAliveTime-Description-End -->
|
|
|
|
<!-- Pol_MSS_KeepAliveTime-Editable-Begin -->
|
|
<!-- Add any additional information about this policy here. Anything outside this section will get overwritten. -->
|
|
Define how often keep-alive packets are sent in milliseconds.
|
|
<!-- Pol_MSS_KeepAliveTime-Editable-End -->
|
|
|
|
<!-- Pol_MSS_KeepAliveTime-DFProperties-Begin -->
|
|
**Description framework properties**:
|
|
|
|
| Property name | Property value |
|
|
|:--|:--|
|
|
| Format | `chr` (string) |
|
|
| Access Type | Add, Delete, Get, Replace |
|
|
<!-- Pol_MSS_KeepAliveTime-DFProperties-End -->
|
|
|
|
<!-- Pol_MSS_KeepAliveTime-AdmxBacked-Begin -->
|
|
<!-- ADMX-Not-Found -->
|
|
[!INCLUDE [ADMX-backed policy note](includes/mdm-admx-policy-note.md)]
|
|
|
|
**ADMX mapping**:
|
|
|
|
| Name | Value |
|
|
|:--|:--|
|
|
| Name | Pol_MSS_KeepAliveTime |
|
|
| ADMX File Name | MSS-legacy.admx |
|
|
<!-- Pol_MSS_KeepAliveTime-AdmxBacked-End -->
|
|
|
|
<!-- Pol_MSS_KeepAliveTime-Examples-Begin -->
|
|
<!-- Add any examples for this policy here. Examples outside this section will get overwritten. -->
|
|
<!-- Pol_MSS_KeepAliveTime-Examples-End -->
|
|
|
|
<!-- Pol_MSS_KeepAliveTime-End -->
|
|
|
|
<!-- Pol_MSS_NoDefaultExempt-Begin -->
|
|
## Pol_MSS_NoDefaultExempt
|
|
|
|
<!-- Pol_MSS_NoDefaultExempt-Applicability-Begin -->
|
|
| Scope | Editions | Applicable OS |
|
|
|:--|:--|:--|
|
|
| ✅ Device <br> ❌ User | ✅ Pro <br> ✅ Enterprise <br> ✅ Education <br> ✅ Windows SE <br> ✅ IoT Enterprise / IoT Enterprise LTSC | ✅ Windows 10, version 2004 with [KB5005101](https://support.microsoft.com/help/5005101) [10.0.19041.1202] and later <br> ✅ Windows 10, version 20H2 with [KB5005101](https://support.microsoft.com/help/5005101) [10.0.19042.1202] and later <br> ✅ Windows 10, version 21H1 with [KB5005101](https://support.microsoft.com/help/5005101) [10.0.19043.1202] and later <br> ✅ Windows 11, version 21H2 [10.0.22000] and later |
|
|
<!-- Pol_MSS_NoDefaultExempt-Applicability-End -->
|
|
|
|
<!-- Pol_MSS_NoDefaultExempt-OmaUri-Begin -->
|
|
```Device
|
|
./Device/Vendor/MSFT/Policy/Config/ADMX_MSS-legacy/Pol_MSS_NoDefaultExempt
|
|
```
|
|
<!-- Pol_MSS_NoDefaultExempt-OmaUri-End -->
|
|
|
|
<!-- Pol_MSS_NoDefaultExempt-Description-Begin -->
|
|
<!-- Description-Source-Not-Found -->
|
|
<!-- Pol_MSS_NoDefaultExempt-Description-End -->
|
|
|
|
<!-- Pol_MSS_NoDefaultExempt-Editable-Begin -->
|
|
<!-- Add any additional information about this policy here. Anything outside this section will get overwritten. -->
|
|
Configure IPSec exemptions for various types of network traffic.
|
|
<!-- Pol_MSS_NoDefaultExempt-Editable-End -->
|
|
|
|
<!-- Pol_MSS_NoDefaultExempt-DFProperties-Begin -->
|
|
**Description framework properties**:
|
|
|
|
| Property name | Property value |
|
|
|:--|:--|
|
|
| Format | `chr` (string) |
|
|
| Access Type | Add, Delete, Get, Replace |
|
|
<!-- Pol_MSS_NoDefaultExempt-DFProperties-End -->
|
|
|
|
<!-- Pol_MSS_NoDefaultExempt-AdmxBacked-Begin -->
|
|
<!-- ADMX-Not-Found -->
|
|
[!INCLUDE [ADMX-backed policy note](includes/mdm-admx-policy-note.md)]
|
|
|
|
**ADMX mapping**:
|
|
|
|
| Name | Value |
|
|
|:--|:--|
|
|
| Name | Pol_MSS_NoDefaultExempt |
|
|
| ADMX File Name | MSS-legacy.admx |
|
|
<!-- Pol_MSS_NoDefaultExempt-AdmxBacked-End -->
|
|
|
|
<!-- Pol_MSS_NoDefaultExempt-Examples-Begin -->
|
|
<!-- Add any examples for this policy here. Examples outside this section will get overwritten. -->
|
|
<!-- Pol_MSS_NoDefaultExempt-Examples-End -->
|
|
|
|
<!-- Pol_MSS_NoDefaultExempt-End -->
|
|
|
|
<!-- Pol_MSS_NtfsDisable8dot3NameCreation-Begin -->
|
|
## Pol_MSS_NtfsDisable8dot3NameCreation
|
|
|
|
<!-- Pol_MSS_NtfsDisable8dot3NameCreation-Applicability-Begin -->
|
|
| Scope | Editions | Applicable OS |
|
|
|:--|:--|:--|
|
|
| ✅ Device <br> ❌ User | ✅ Pro <br> ✅ Enterprise <br> ✅ Education <br> ✅ Windows SE <br> ✅ IoT Enterprise / IoT Enterprise LTSC | ✅ Windows 10, version 2004 with [KB5005101](https://support.microsoft.com/help/5005101) [10.0.19041.1202] and later <br> ✅ Windows 10, version 20H2 with [KB5005101](https://support.microsoft.com/help/5005101) [10.0.19042.1202] and later <br> ✅ Windows 10, version 21H1 with [KB5005101](https://support.microsoft.com/help/5005101) [10.0.19043.1202] and later <br> ✅ Windows 11, version 21H2 [10.0.22000] and later |
|
|
<!-- Pol_MSS_NtfsDisable8dot3NameCreation-Applicability-End -->
|
|
|
|
<!-- Pol_MSS_NtfsDisable8dot3NameCreation-OmaUri-Begin -->
|
|
```Device
|
|
./Device/Vendor/MSFT/Policy/Config/ADMX_MSS-legacy/Pol_MSS_NtfsDisable8dot3NameCreation
|
|
```
|
|
<!-- Pol_MSS_NtfsDisable8dot3NameCreation-OmaUri-End -->
|
|
|
|
<!-- Pol_MSS_NtfsDisable8dot3NameCreation-Description-Begin -->
|
|
<!-- Description-Source-Not-Found -->
|
|
<!-- Pol_MSS_NtfsDisable8dot3NameCreation-Description-End -->
|
|
|
|
<!-- Pol_MSS_NtfsDisable8dot3NameCreation-Editable-Begin -->
|
|
<!-- Add any additional information about this policy here. Anything outside this section will get overwritten. -->
|
|
Enable the computer to stop generating 8.3 style filenames.
|
|
<!-- Pol_MSS_NtfsDisable8dot3NameCreation-Editable-End -->
|
|
|
|
<!-- Pol_MSS_NtfsDisable8dot3NameCreation-DFProperties-Begin -->
|
|
**Description framework properties**:
|
|
|
|
| Property name | Property value |
|
|
|:--|:--|
|
|
| Format | `chr` (string) |
|
|
| Access Type | Add, Delete, Get, Replace |
|
|
<!-- Pol_MSS_NtfsDisable8dot3NameCreation-DFProperties-End -->
|
|
|
|
<!-- Pol_MSS_NtfsDisable8dot3NameCreation-AdmxBacked-Begin -->
|
|
<!-- ADMX-Not-Found -->
|
|
[!INCLUDE [ADMX-backed policy note](includes/mdm-admx-policy-note.md)]
|
|
|
|
**ADMX mapping**:
|
|
|
|
| Name | Value |
|
|
|:--|:--|
|
|
| Name | Pol_MSS_NtfsDisable8dot3NameCreation |
|
|
| ADMX File Name | MSS-legacy.admx |
|
|
<!-- Pol_MSS_NtfsDisable8dot3NameCreation-AdmxBacked-End -->
|
|
|
|
<!-- Pol_MSS_NtfsDisable8dot3NameCreation-Examples-Begin -->
|
|
<!-- Add any examples for this policy here. Examples outside this section will get overwritten. -->
|
|
<!-- Pol_MSS_NtfsDisable8dot3NameCreation-Examples-End -->
|
|
|
|
<!-- Pol_MSS_NtfsDisable8dot3NameCreation-End -->
|
|
|
|
<!-- Pol_MSS_PerformRouterDiscovery-Begin -->
|
|
## Pol_MSS_PerformRouterDiscovery
|
|
|
|
<!-- Pol_MSS_PerformRouterDiscovery-Applicability-Begin -->
|
|
| Scope | Editions | Applicable OS |
|
|
|:--|:--|:--|
|
|
| ✅ Device <br> ❌ User | ✅ Pro <br> ✅ Enterprise <br> ✅ Education <br> ✅ Windows SE <br> ✅ IoT Enterprise / IoT Enterprise LTSC | ✅ Windows 10, version 2004 with [KB5005101](https://support.microsoft.com/help/5005101) [10.0.19041.1202] and later <br> ✅ Windows 10, version 20H2 with [KB5005101](https://support.microsoft.com/help/5005101) [10.0.19042.1202] and later <br> ✅ Windows 10, version 21H1 with [KB5005101](https://support.microsoft.com/help/5005101) [10.0.19043.1202] and later <br> ✅ Windows 11, version 21H2 [10.0.22000] and later |
|
|
<!-- Pol_MSS_PerformRouterDiscovery-Applicability-End -->
|
|
|
|
<!-- Pol_MSS_PerformRouterDiscovery-OmaUri-Begin -->
|
|
```Device
|
|
./Device/Vendor/MSFT/Policy/Config/ADMX_MSS-legacy/Pol_MSS_PerformRouterDiscovery
|
|
```
|
|
<!-- Pol_MSS_PerformRouterDiscovery-OmaUri-End -->
|
|
|
|
<!-- Pol_MSS_PerformRouterDiscovery-Description-Begin -->
|
|
<!-- Description-Source-Not-Found -->
|
|
<!-- Pol_MSS_PerformRouterDiscovery-Description-End -->
|
|
|
|
<!-- Pol_MSS_PerformRouterDiscovery-Editable-Begin -->
|
|
<!-- Add any additional information about this policy here. Anything outside this section will get overwritten. -->
|
|
Allow IRDP to detect and configure Default Gateway addresses (could lead to DoS).
|
|
<!-- Pol_MSS_PerformRouterDiscovery-Editable-End -->
|
|
|
|
<!-- Pol_MSS_PerformRouterDiscovery-DFProperties-Begin -->
|
|
**Description framework properties**:
|
|
|
|
| Property name | Property value |
|
|
|:--|:--|
|
|
| Format | `chr` (string) |
|
|
| Access Type | Add, Delete, Get, Replace |
|
|
<!-- Pol_MSS_PerformRouterDiscovery-DFProperties-End -->
|
|
|
|
<!-- Pol_MSS_PerformRouterDiscovery-AdmxBacked-Begin -->
|
|
<!-- ADMX-Not-Found -->
|
|
[!INCLUDE [ADMX-backed policy note](includes/mdm-admx-policy-note.md)]
|
|
|
|
**ADMX mapping**:
|
|
|
|
| Name | Value |
|
|
|:--|:--|
|
|
| Name | Pol_MSS_PerformRouterDiscovery |
|
|
| ADMX File Name | MSS-legacy.admx |
|
|
<!-- Pol_MSS_PerformRouterDiscovery-AdmxBacked-End -->
|
|
|
|
<!-- Pol_MSS_PerformRouterDiscovery-Examples-Begin -->
|
|
<!-- Add any examples for this policy here. Examples outside this section will get overwritten. -->
|
|
<!-- Pol_MSS_PerformRouterDiscovery-Examples-End -->
|
|
|
|
<!-- Pol_MSS_PerformRouterDiscovery-End -->
|
|
|
|
<!-- Pol_MSS_SafeDllSearchMode-Begin -->
|
|
## Pol_MSS_SafeDllSearchMode
|
|
|
|
<!-- Pol_MSS_SafeDllSearchMode-Applicability-Begin -->
|
|
| Scope | Editions | Applicable OS |
|
|
|:--|:--|:--|
|
|
| ✅ Device <br> ❌ User | ✅ Pro <br> ✅ Enterprise <br> ✅ Education <br> ✅ Windows SE <br> ✅ IoT Enterprise / IoT Enterprise LTSC | ✅ Windows 10, version 2004 with [KB5005101](https://support.microsoft.com/help/5005101) [10.0.19041.1202] and later <br> ✅ Windows 10, version 20H2 with [KB5005101](https://support.microsoft.com/help/5005101) [10.0.19042.1202] and later <br> ✅ Windows 10, version 21H1 with [KB5005101](https://support.microsoft.com/help/5005101) [10.0.19043.1202] and later <br> ✅ Windows 11, version 21H2 [10.0.22000] and later |
|
|
<!-- Pol_MSS_SafeDllSearchMode-Applicability-End -->
|
|
|
|
<!-- Pol_MSS_SafeDllSearchMode-OmaUri-Begin -->
|
|
```Device
|
|
./Device/Vendor/MSFT/Policy/Config/ADMX_MSS-legacy/Pol_MSS_SafeDllSearchMode
|
|
```
|
|
<!-- Pol_MSS_SafeDllSearchMode-OmaUri-End -->
|
|
|
|
<!-- Pol_MSS_SafeDllSearchMode-Description-Begin -->
|
|
<!-- Description-Source-Not-Found -->
|
|
<!-- Pol_MSS_SafeDllSearchMode-Description-End -->
|
|
|
|
<!-- Pol_MSS_SafeDllSearchMode-Editable-Begin -->
|
|
<!-- Add any additional information about this policy here. Anything outside this section will get overwritten. -->
|
|
Enable Safe DLL search mode (recommended).
|
|
<!-- Pol_MSS_SafeDllSearchMode-Editable-End -->
|
|
|
|
<!-- Pol_MSS_SafeDllSearchMode-DFProperties-Begin -->
|
|
**Description framework properties**:
|
|
|
|
| Property name | Property value |
|
|
|:--|:--|
|
|
| Format | `chr` (string) |
|
|
| Access Type | Add, Delete, Get, Replace |
|
|
<!-- Pol_MSS_SafeDllSearchMode-DFProperties-End -->
|
|
|
|
<!-- Pol_MSS_SafeDllSearchMode-AdmxBacked-Begin -->
|
|
<!-- ADMX-Not-Found -->
|
|
[!INCLUDE [ADMX-backed policy note](includes/mdm-admx-policy-note.md)]
|
|
|
|
**ADMX mapping**:
|
|
|
|
| Name | Value |
|
|
|:--|:--|
|
|
| Name | Pol_MSS_SafeDllSearchMode |
|
|
| ADMX File Name | MSS-legacy.admx |
|
|
<!-- Pol_MSS_SafeDllSearchMode-AdmxBacked-End -->
|
|
|
|
<!-- Pol_MSS_SafeDllSearchMode-Examples-Begin -->
|
|
<!-- Add any examples for this policy here. Examples outside this section will get overwritten. -->
|
|
<!-- Pol_MSS_SafeDllSearchMode-Examples-End -->
|
|
|
|
<!-- Pol_MSS_SafeDllSearchMode-End -->
|
|
|
|
<!-- Pol_MSS_ScreenSaverGracePeriod-Begin -->
|
|
## Pol_MSS_ScreenSaverGracePeriod
|
|
|
|
<!-- Pol_MSS_ScreenSaverGracePeriod-Applicability-Begin -->
|
|
| Scope | Editions | Applicable OS |
|
|
|:--|:--|:--|
|
|
| ✅ Device <br> ❌ User | ✅ Pro <br> ✅ Enterprise <br> ✅ Education <br> ✅ Windows SE <br> ✅ IoT Enterprise / IoT Enterprise LTSC | ✅ Windows 10, version 2004 with [KB5005101](https://support.microsoft.com/help/5005101) [10.0.19041.1202] and later <br> ✅ Windows 10, version 20H2 with [KB5005101](https://support.microsoft.com/help/5005101) [10.0.19042.1202] and later <br> ✅ Windows 10, version 21H1 with [KB5005101](https://support.microsoft.com/help/5005101) [10.0.19043.1202] and later <br> ✅ Windows 11, version 21H2 [10.0.22000] and later |
|
|
<!-- Pol_MSS_ScreenSaverGracePeriod-Applicability-End -->
|
|
|
|
<!-- Pol_MSS_ScreenSaverGracePeriod-OmaUri-Begin -->
|
|
```Device
|
|
./Device/Vendor/MSFT/Policy/Config/ADMX_MSS-legacy/Pol_MSS_ScreenSaverGracePeriod
|
|
```
|
|
<!-- Pol_MSS_ScreenSaverGracePeriod-OmaUri-End -->
|
|
|
|
<!-- Pol_MSS_ScreenSaverGracePeriod-Description-Begin -->
|
|
<!-- Description-Source-Not-Found -->
|
|
<!-- Pol_MSS_ScreenSaverGracePeriod-Description-End -->
|
|
|
|
<!-- Pol_MSS_ScreenSaverGracePeriod-Editable-Begin -->
|
|
<!-- Add any additional information about this policy here. Anything outside this section will get overwritten. -->
|
|
he time in seconds before the screen saver grace period expires (0 recommended).
|
|
<!-- Pol_MSS_ScreenSaverGracePeriod-Editable-End -->
|
|
|
|
<!-- Pol_MSS_ScreenSaverGracePeriod-DFProperties-Begin -->
|
|
**Description framework properties**:
|
|
|
|
| Property name | Property value |
|
|
|:--|:--|
|
|
| Format | `chr` (string) |
|
|
| Access Type | Add, Delete, Get, Replace |
|
|
<!-- Pol_MSS_ScreenSaverGracePeriod-DFProperties-End -->
|
|
|
|
<!-- Pol_MSS_ScreenSaverGracePeriod-AdmxBacked-Begin -->
|
|
<!-- ADMX-Not-Found -->
|
|
[!INCLUDE [ADMX-backed policy note](includes/mdm-admx-policy-note.md)]
|
|
|
|
**ADMX mapping**:
|
|
|
|
| Name | Value |
|
|
|:--|:--|
|
|
| Name | Pol_MSS_ScreenSaverGracePeriod |
|
|
| ADMX File Name | MSS-legacy.admx |
|
|
<!-- Pol_MSS_ScreenSaverGracePeriod-AdmxBacked-End -->
|
|
|
|
<!-- Pol_MSS_ScreenSaverGracePeriod-Examples-Begin -->
|
|
<!-- Add any examples for this policy here. Examples outside this section will get overwritten. -->
|
|
<!-- Pol_MSS_ScreenSaverGracePeriod-Examples-End -->
|
|
|
|
<!-- Pol_MSS_ScreenSaverGracePeriod-End -->
|
|
|
|
<!-- Pol_MSS_SynAttackProtect-Begin -->
|
|
## Pol_MSS_SynAttackProtect
|
|
|
|
<!-- Pol_MSS_SynAttackProtect-Applicability-Begin -->
|
|
| Scope | Editions | Applicable OS |
|
|
|:--|:--|:--|
|
|
| ✅ Device <br> ❌ User | ✅ Pro <br> ✅ Enterprise <br> ✅ Education <br> ✅ Windows SE <br> ✅ IoT Enterprise / IoT Enterprise LTSC | ✅ Windows 10, version 2004 with [KB5005101](https://support.microsoft.com/help/5005101) [10.0.19041.1202] and later <br> ✅ Windows 10, version 20H2 with [KB5005101](https://support.microsoft.com/help/5005101) [10.0.19042.1202] and later <br> ✅ Windows 10, version 21H1 with [KB5005101](https://support.microsoft.com/help/5005101) [10.0.19043.1202] and later <br> ✅ Windows 11, version 21H2 [10.0.22000] and later |
|
|
<!-- Pol_MSS_SynAttackProtect-Applicability-End -->
|
|
|
|
<!-- Pol_MSS_SynAttackProtect-OmaUri-Begin -->
|
|
```Device
|
|
./Device/Vendor/MSFT/Policy/Config/ADMX_MSS-legacy/Pol_MSS_SynAttackProtect
|
|
```
|
|
<!-- Pol_MSS_SynAttackProtect-OmaUri-End -->
|
|
|
|
<!-- Pol_MSS_SynAttackProtect-Description-Begin -->
|
|
<!-- Description-Source-Not-Found -->
|
|
<!-- Pol_MSS_SynAttackProtect-Description-End -->
|
|
|
|
<!-- Pol_MSS_SynAttackProtect-Editable-Begin -->
|
|
<!-- Add any additional information about this policy here. Anything outside this section will get overwritten. -->
|
|
Syn attack protection level (protects against DoS).
|
|
<!-- Pol_MSS_SynAttackProtect-Editable-End -->
|
|
|
|
<!-- Pol_MSS_SynAttackProtect-DFProperties-Begin -->
|
|
**Description framework properties**:
|
|
|
|
| Property name | Property value |
|
|
|:--|:--|
|
|
| Format | `chr` (string) |
|
|
| Access Type | Add, Delete, Get, Replace |
|
|
<!-- Pol_MSS_SynAttackProtect-DFProperties-End -->
|
|
|
|
<!-- Pol_MSS_SynAttackProtect-AdmxBacked-Begin -->
|
|
<!-- ADMX-Not-Found -->
|
|
[!INCLUDE [ADMX-backed policy note](includes/mdm-admx-policy-note.md)]
|
|
|
|
**ADMX mapping**:
|
|
|
|
| Name | Value |
|
|
|:--|:--|
|
|
| Name | Pol_MSS_SynAttackProtect |
|
|
| ADMX File Name | MSS-legacy.admx |
|
|
<!-- Pol_MSS_SynAttackProtect-AdmxBacked-End -->
|
|
|
|
<!-- Pol_MSS_SynAttackProtect-Examples-Begin -->
|
|
<!-- Add any examples for this policy here. Examples outside this section will get overwritten. -->
|
|
<!-- Pol_MSS_SynAttackProtect-Examples-End -->
|
|
|
|
<!-- Pol_MSS_SynAttackProtect-End -->
|
|
|
|
<!-- Pol_MSS_TcpMaxConnectResponseRetransmissions-Begin -->
|
|
## Pol_MSS_TcpMaxConnectResponseRetransmissions
|
|
|
|
<!-- Pol_MSS_TcpMaxConnectResponseRetransmissions-Applicability-Begin -->
|
|
| Scope | Editions | Applicable OS |
|
|
|:--|:--|:--|
|
|
| ✅ Device <br> ❌ User | ✅ Pro <br> ✅ Enterprise <br> ✅ Education <br> ✅ Windows SE <br> ✅ IoT Enterprise / IoT Enterprise LTSC | ✅ Windows 10, version 2004 with [KB5005101](https://support.microsoft.com/help/5005101) [10.0.19041.1202] and later <br> ✅ Windows 10, version 20H2 with [KB5005101](https://support.microsoft.com/help/5005101) [10.0.19042.1202] and later <br> ✅ Windows 10, version 21H1 with [KB5005101](https://support.microsoft.com/help/5005101) [10.0.19043.1202] and later <br> ✅ Windows 11, version 21H2 [10.0.22000] and later |
|
|
<!-- Pol_MSS_TcpMaxConnectResponseRetransmissions-Applicability-End -->
|
|
|
|
<!-- Pol_MSS_TcpMaxConnectResponseRetransmissions-OmaUri-Begin -->
|
|
```Device
|
|
./Device/Vendor/MSFT/Policy/Config/ADMX_MSS-legacy/Pol_MSS_TcpMaxConnectResponseRetransmissions
|
|
```
|
|
<!-- Pol_MSS_TcpMaxConnectResponseRetransmissions-OmaUri-End -->
|
|
|
|
<!-- Pol_MSS_TcpMaxConnectResponseRetransmissions-Description-Begin -->
|
|
<!-- Description-Source-Not-Found -->
|
|
<!-- Pol_MSS_TcpMaxConnectResponseRetransmissions-Description-End -->
|
|
|
|
<!-- Pol_MSS_TcpMaxConnectResponseRetransmissions-Editable-Begin -->
|
|
<!-- Add any additional information about this policy here. Anything outside this section will get overwritten. -->
|
|
SYN-ACK retransmissions when a connection request is not acknowledged.
|
|
<!-- Pol_MSS_TcpMaxConnectResponseRetransmissions-Editable-End -->
|
|
|
|
<!-- Pol_MSS_TcpMaxConnectResponseRetransmissions-DFProperties-Begin -->
|
|
**Description framework properties**:
|
|
|
|
| Property name | Property value |
|
|
|:--|:--|
|
|
| Format | `chr` (string) |
|
|
| Access Type | Add, Delete, Get, Replace |
|
|
<!-- Pol_MSS_TcpMaxConnectResponseRetransmissions-DFProperties-End -->
|
|
|
|
<!-- Pol_MSS_TcpMaxConnectResponseRetransmissions-AdmxBacked-Begin -->
|
|
<!-- ADMX-Not-Found -->
|
|
[!INCLUDE [ADMX-backed policy note](includes/mdm-admx-policy-note.md)]
|
|
|
|
**ADMX mapping**:
|
|
|
|
| Name | Value |
|
|
|:--|:--|
|
|
| Name | Pol_MSS_TcpMaxConnectResponseRetransmissions |
|
|
| ADMX File Name | MSS-legacy.admx |
|
|
<!-- Pol_MSS_TcpMaxConnectResponseRetransmissions-AdmxBacked-End -->
|
|
|
|
<!-- Pol_MSS_TcpMaxConnectResponseRetransmissions-Examples-Begin -->
|
|
<!-- Add any examples for this policy here. Examples outside this section will get overwritten. -->
|
|
<!-- Pol_MSS_TcpMaxConnectResponseRetransmissions-Examples-End -->
|
|
|
|
<!-- Pol_MSS_TcpMaxConnectResponseRetransmissions-End -->
|
|
|
|
<!-- Pol_MSS_TcpMaxDataRetransmissions-Begin -->
|
|
## Pol_MSS_TcpMaxDataRetransmissions
|
|
|
|
<!-- Pol_MSS_TcpMaxDataRetransmissions-Applicability-Begin -->
|
|
| Scope | Editions | Applicable OS |
|
|
|:--|:--|:--|
|
|
| ✅ Device <br> ❌ User | ✅ Pro <br> ✅ Enterprise <br> ✅ Education <br> ✅ Windows SE <br> ✅ IoT Enterprise / IoT Enterprise LTSC | ✅ Windows 10, version 2004 with [KB5005101](https://support.microsoft.com/help/5005101) [10.0.19041.1202] and later <br> ✅ Windows 10, version 20H2 with [KB5005101](https://support.microsoft.com/help/5005101) [10.0.19042.1202] and later <br> ✅ Windows 10, version 21H1 with [KB5005101](https://support.microsoft.com/help/5005101) [10.0.19043.1202] and later <br> ✅ Windows 11, version 21H2 [10.0.22000] and later |
|
|
<!-- Pol_MSS_TcpMaxDataRetransmissions-Applicability-End -->
|
|
|
|
<!-- Pol_MSS_TcpMaxDataRetransmissions-OmaUri-Begin -->
|
|
```Device
|
|
./Device/Vendor/MSFT/Policy/Config/ADMX_MSS-legacy/Pol_MSS_TcpMaxDataRetransmissions
|
|
```
|
|
<!-- Pol_MSS_TcpMaxDataRetransmissions-OmaUri-End -->
|
|
|
|
<!-- Pol_MSS_TcpMaxDataRetransmissions-Description-Begin -->
|
|
<!-- Description-Source-Not-Found -->
|
|
<!-- Pol_MSS_TcpMaxDataRetransmissions-Description-End -->
|
|
|
|
<!-- Pol_MSS_TcpMaxDataRetransmissions-Editable-Begin -->
|
|
<!-- Add any additional information about this policy here. Anything outside this section will get overwritten. -->
|
|
Define how many times unacknowledged data is retransmitted (3 recommended, 5 is default).
|
|
<!-- Pol_MSS_TcpMaxDataRetransmissions-Editable-End -->
|
|
|
|
<!-- Pol_MSS_TcpMaxDataRetransmissions-DFProperties-Begin -->
|
|
**Description framework properties**:
|
|
|
|
| Property name | Property value |
|
|
|:--|:--|
|
|
| Format | `chr` (string) |
|
|
| Access Type | Add, Delete, Get, Replace |
|
|
<!-- Pol_MSS_TcpMaxDataRetransmissions-DFProperties-End -->
|
|
|
|
<!-- Pol_MSS_TcpMaxDataRetransmissions-AdmxBacked-Begin -->
|
|
<!-- ADMX-Not-Found -->
|
|
[!INCLUDE [ADMX-backed policy note](includes/mdm-admx-policy-note.md)]
|
|
|
|
**ADMX mapping**:
|
|
|
|
| Name | Value |
|
|
|:--|:--|
|
|
| Name | Pol_MSS_TcpMaxDataRetransmissions |
|
|
| ADMX File Name | MSS-legacy.admx |
|
|
<!-- Pol_MSS_TcpMaxDataRetransmissions-AdmxBacked-End -->
|
|
|
|
<!-- Pol_MSS_TcpMaxDataRetransmissions-Examples-Begin -->
|
|
<!-- Add any examples for this policy here. Examples outside this section will get overwritten. -->
|
|
<!-- Pol_MSS_TcpMaxDataRetransmissions-Examples-End -->
|
|
|
|
<!-- Pol_MSS_TcpMaxDataRetransmissions-End -->
|
|
|
|
<!-- Pol_MSS_TcpMaxDataRetransmissionsIPv6-Begin -->
|
|
## Pol_MSS_TcpMaxDataRetransmissionsIPv6
|
|
|
|
<!-- Pol_MSS_TcpMaxDataRetransmissionsIPv6-Applicability-Begin -->
|
|
| Scope | Editions | Applicable OS |
|
|
|:--|:--|:--|
|
|
| ✅ Device <br> ❌ User | ✅ Pro <br> ✅ Enterprise <br> ✅ Education <br> ✅ Windows SE <br> ✅ IoT Enterprise / IoT Enterprise LTSC | ✅ Windows 10, version 2004 with [KB5005101](https://support.microsoft.com/help/5005101) [10.0.19041.1202] and later <br> ✅ Windows 10, version 20H2 with [KB5005101](https://support.microsoft.com/help/5005101) [10.0.19042.1202] and later <br> ✅ Windows 10, version 21H1 with [KB5005101](https://support.microsoft.com/help/5005101) [10.0.19043.1202] and later <br> ✅ Windows 11, version 21H2 [10.0.22000] and later |
|
|
<!-- Pol_MSS_TcpMaxDataRetransmissionsIPv6-Applicability-End -->
|
|
|
|
<!-- Pol_MSS_TcpMaxDataRetransmissionsIPv6-OmaUri-Begin -->
|
|
```Device
|
|
./Device/Vendor/MSFT/Policy/Config/ADMX_MSS-legacy/Pol_MSS_TcpMaxDataRetransmissionsIPv6
|
|
```
|
|
<!-- Pol_MSS_TcpMaxDataRetransmissionsIPv6-OmaUri-End -->
|
|
|
|
<!-- Pol_MSS_TcpMaxDataRetransmissionsIPv6-Description-Begin -->
|
|
<!-- Description-Source-Not-Found -->
|
|
<!-- Pol_MSS_TcpMaxDataRetransmissionsIPv6-Description-End -->
|
|
|
|
<!-- Pol_MSS_TcpMaxDataRetransmissionsIPv6-Editable-Begin -->
|
|
<!-- Add any additional information about this policy here. Anything outside this section will get overwritten. -->
|
|
Define how many times unacknowledged data is retransmitted (3 recommended, 5 is default).
|
|
<!-- Pol_MSS_TcpMaxDataRetransmissionsIPv6-Editable-End -->
|
|
|
|
<!-- Pol_MSS_TcpMaxDataRetransmissionsIPv6-DFProperties-Begin -->
|
|
**Description framework properties**:
|
|
|
|
| Property name | Property value |
|
|
|:--|:--|
|
|
| Format | `chr` (string) |
|
|
| Access Type | Add, Delete, Get, Replace |
|
|
<!-- Pol_MSS_TcpMaxDataRetransmissionsIPv6-DFProperties-End -->
|
|
|
|
<!-- Pol_MSS_TcpMaxDataRetransmissionsIPv6-AdmxBacked-Begin -->
|
|
<!-- ADMX-Not-Found -->
|
|
[!INCLUDE [ADMX-backed policy note](includes/mdm-admx-policy-note.md)]
|
|
|
|
**ADMX mapping**:
|
|
|
|
| Name | Value |
|
|
|:--|:--|
|
|
| Name | Pol_MSS_TcpMaxDataRetransmissionsIPv6 |
|
|
| ADMX File Name | MSS-legacy.admx |
|
|
<!-- Pol_MSS_TcpMaxDataRetransmissionsIPv6-AdmxBacked-End -->
|
|
|
|
<!-- Pol_MSS_TcpMaxDataRetransmissionsIPv6-Examples-Begin -->
|
|
<!-- Add any examples for this policy here. Examples outside this section will get overwritten. -->
|
|
<!-- Pol_MSS_TcpMaxDataRetransmissionsIPv6-Examples-End -->
|
|
|
|
<!-- Pol_MSS_TcpMaxDataRetransmissionsIPv6-End -->
|
|
|
|
<!-- Pol_MSS_WarningLevel-Begin -->
|
|
## Pol_MSS_WarningLevel
|
|
|
|
<!-- Pol_MSS_WarningLevel-Applicability-Begin -->
|
|
| Scope | Editions | Applicable OS |
|
|
|:--|:--|:--|
|
|
| ✅ Device <br> ❌ User | ✅ Pro <br> ✅ Enterprise <br> ✅ Education <br> ✅ Windows SE <br> ✅ IoT Enterprise / IoT Enterprise LTSC | ✅ Windows 10, version 2004 with [KB5005101](https://support.microsoft.com/help/5005101) [10.0.19041.1202] and later <br> ✅ Windows 10, version 20H2 with [KB5005101](https://support.microsoft.com/help/5005101) [10.0.19042.1202] and later <br> ✅ Windows 10, version 21H1 with [KB5005101](https://support.microsoft.com/help/5005101) [10.0.19043.1202] and later <br> ✅ Windows 11, version 21H2 [10.0.22000] and later |
|
|
<!-- Pol_MSS_WarningLevel-Applicability-End -->
|
|
|
|
<!-- Pol_MSS_WarningLevel-OmaUri-Begin -->
|
|
```Device
|
|
./Device/Vendor/MSFT/Policy/Config/ADMX_MSS-legacy/Pol_MSS_WarningLevel
|
|
```
|
|
<!-- Pol_MSS_WarningLevel-OmaUri-End -->
|
|
|
|
<!-- Pol_MSS_WarningLevel-Description-Begin -->
|
|
<!-- Description-Source-Not-Found -->
|
|
<!-- Pol_MSS_WarningLevel-Description-End -->
|
|
|
|
<!-- Pol_MSS_WarningLevel-Editable-Begin -->
|
|
<!-- Add any additional information about this policy here. Anything outside this section will get overwritten. -->
|
|
Percentage threshold for the security event log at which the system will generate a warning.
|
|
<!-- Pol_MSS_WarningLevel-Editable-End -->
|
|
|
|
<!-- Pol_MSS_WarningLevel-DFProperties-Begin -->
|
|
**Description framework properties**:
|
|
|
|
| Property name | Property value |
|
|
|:--|:--|
|
|
| Format | `chr` (string) |
|
|
| Access Type | Add, Delete, Get, Replace |
|
|
<!-- Pol_MSS_WarningLevel-DFProperties-End -->
|
|
|
|
<!-- Pol_MSS_WarningLevel-AdmxBacked-Begin -->
|
|
<!-- ADMX-Not-Found -->
|
|
[!INCLUDE [ADMX-backed policy note](includes/mdm-admx-policy-note.md)]
|
|
|
|
**ADMX mapping**:
|
|
|
|
| Name | Value |
|
|
|:--|:--|
|
|
| Name | Pol_MSS_WarningLevel |
|
|
| ADMX File Name | MSS-legacy.admx |
|
|
<!-- Pol_MSS_WarningLevel-AdmxBacked-End -->
|
|
|
|
<!-- Pol_MSS_WarningLevel-Examples-Begin -->
|
|
<!-- Add any examples for this policy here. Examples outside this section will get overwritten. -->
|
|
<!-- Pol_MSS_WarningLevel-Examples-End -->
|
|
|
|
<!-- Pol_MSS_WarningLevel-End -->
|
|
|
|
<!-- ADMX_MSS-legacy-CspMoreInfo-Begin -->
|
|
<!-- Add any additional information about this CSP here. Anything outside this section will get overwritten. -->
|
|
<!-- ADMX_MSS-legacy-CspMoreInfo-End -->
|
|
|
|
<!-- ADMX_MSS-legacy-End -->
|
|
|
|
## Related articles
|
|
|
|
[Policy configuration service provider](policy-configuration-service-provider.md)
|