Regedit
Windows Registry Editor Version 5.00
; # Fake MDM-Enrollment - Key 1 of 2 - let a Win10 Machine "feel" MDM-Managed
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Enrollments\FFFFFFFF-FFFF-FFFF-FFFF-FFFFFFFFFFFF]
"EnrollmentState"=dword:00000001
"EnrollmentType"=dword:00000000
"IsFederated"=dword:00000000
; # Fake MDM-Enrollment - Key 2 of 2 - let a Win10 Machine "feel" MDM-Managed
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Provisioning\OMADM\Accounts\FFFFFFFF-FFFF-FFFF-FFFF-FFFFFFFFFFFF]
"Flags"=dword:00d6fb7f
"AcctUId"="0x000000000000000000000000000000000000000000000000000000000000000000000000"
"RoamingCount"=dword:00000000
"SslClientCertReference"="MY;User;0000000000000000000000000000000000000000"
"ProtoVer"="1.2"
[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Edge]
"AddressBarMicrosoftSearchInBingProviderEnabled"=dword:00000000
"AdsSettingForIntrusiveAdsSites"=dword:00000002
"ClearCachedImagesAndFilesOnExit"=dword:00000001
"ConfigureDoNotTrack"=dword:00000001
"DefaultSearchProviderEnabled"=dword:00000001
"DefaultSearchProviderName"="Google"
"DefaultSearchProviderSearchURL"="{google:baseURL}search?q={searchTerms}&{google:RLZ}{google:originalQueryForSuggestion}{google:assistedQueryStats}{google:searchFieldtrialParameter}{google:searchClient}{google:sourceId}ie={inputEncoding}"
"DefaultSearchProviderSuggestURL"="{google:baseURL}complete/search?output=chrome&q={searchTerms}"
"DefaultSearchProviderImageURL"="{google:baseURL}searchbyimage/upload"
"DefaultSearchProviderImageURLPostParams"="encoded_image={google:imageThumbnail},image_url={google:imageURL},sbisrc={google:imageSearchSource},original_width={google:imageOriginalWidth},original_height={google:imageOriginalHeight}"
"HomepageLocation"="https://www.google.com"
"NewTabPageLocation"="https://www.google.com"
"SmartScreenEnabled"=dword:00000001
"SmartScreenPuaEnabled"=dword:00000001
"HomepageIsNewTabPage"=dword:00000001
"RestoreOnStartup"=dword:00000005
"ShowHomeButton"=dword:00000001
"EdgeShoppingAssistantEnabled"=dword:00000000
"ShowRecommendationsEnabled"=dword:00000000
"ShowMicrosoftRewards"=dword:00000000
"ShowAcrobatSubscriptionButton"=dword:00000000
"ShowPDFDefaultRecommendationsEnabled"=dword:00000000
"SpotlightExperiencesAndRecommendationsEnabled"=dword:00000000
"PasswordManagerEnabled"=dword:00000000
"StartupBoostEnabled"=dword:00000000
"AutomaticHttpsDefault"=dword:00000002
"PromotionalTabsEnabled"=dword:00000000
"HideFirstRunExperience"=dword:00000001
"FavoritesBarEnabled"=dword:00000000
[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Edge\RestoreOnStartupURLs]
"1"="https://www.google.com"
[HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\Windows\WindowsCopilot]
"TurnOffWindowsCopilot"=dword:00000001
[HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\MicrosoftEdge\ServiceUI]
"AllowWebContentOnNewTabPage"=dword:00000000
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Search]
"SearchboxTaskbarMode"=dword:00000000
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Search]
"SearchboxTaskbarMode"=dword:00000000
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Feeds]
"ShellFeedsTaskbarViewMode"=dword:00000002
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced]
"ShowTaskViewButton"=dword:00000000
"ServerAdminUI"=dword:00000001
"TaskbarSmallIcons"=dword:00000001
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced]
"Start_Layout"=dword:00000001 ; More pinned items in the start menu
"Start_IrisRecommendations"=dword:00000000 ; Disable recomendations in the start menu
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\AutoplayHandlers]
"DisableAutoplay"=dword:00000001 ; Disable autoplay
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Themes\Personalize]
"AppsUseLightTheme"=dword:00000000 ; Enable Dark mode for apps
"SystemUsesLightTheme"=dword:00000000 ; Enable Dark mode for windows
"EnableTransparency"=dword:00000001 ; Enable transparency effect
"ColorPrevalance"=dword:00000000 ; Disable "Show Accent Color on Start and Taskbar"
[HKEY_CURRENT_USER\Control Panel\Desktop]
"AutoColorization"=dword:00000000 ; Do not change accent color based on background
[HKEY_CURRENT_USER\Software\Microsoft\Windows\DWM]
"ColorPrevalence"=dword:00000000 ; Disable "Show accent color in title bar and windows borders"
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Start]
"ShowRecentList"=dword:00000000 ; Disable Recently added apps in start menu
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced]
"Start_TrackDocs"=dword:00000000 ; Disable recomentadions in the start menu
;
; Disable Windows Spotlight and set the normal Windows Picture as the desktop background
;
[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\CloudContent]
"DisableWindowsSpotlightOnLockScreen"=dword:00000001 ; Disable Windows Spotlight on the lock screen
[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\CloudContent]
"DisableWindowsConsumerFeatures"=dword:00000001 ; Disable Windows Spotlight suggestions, tips, tricks, and more on the lock screen
[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\CloudContent]
"DisableWindowsSpotlightActiveUser"=dword:00000001 ; Disable Windows Spotlight on Settings
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System]
"Wallpaper"="C:\\Windows\\Web\\Wallpaper\\Windows\\img0.jpg" ; Set desktop background to a normal Windows picture
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System]
"WallpaperStyle"="2" ; Set wallpaper style to fill
;
; Power settings
;
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Power]
"HibernateEnabled"=dword:00000001 ; Enable hybernation
;
; Telemetry
;
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\AdvertisingInfo]
"Enabled"=dword:00000000
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Privacy]
"TailoredExperiencesWithDiagnosticDataEnabled"=dword:00000000
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Speech_OneCore\Settings\OnlineSpeechPrivacy]
"HasAccepted"=dword:00000000
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Input\TIPC]
"Enabled"=dword:00000000
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\InputPersonalization]
"RestrictImplicitInkCollection"=dword:00000001
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\InputPersonalization]
"RestrictImplicitTextCollection"=dword:00000001
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\InputPersonalization\TrainedDataStore]
"HarvestContacts"=dword:00000000
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Personalization\Settings]
"AcceptedPrivacyPolicy"=dword:00000000
[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\DataCollection]
"AllowTelemetry"=dword:00000000
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\dmwappushservice]
"Start"=dword:00000004
Sources
- https://learn.microsoft.com/en-us/windows/apps/develop/settings/settings-windows-11
- https://learn.microsoft.com/en-us/windows/apps/develop/settings/settings-common
- https://github.com/memstechtips/UnattendedWinstall
More
### Customization
* `HKEY_CURRENT_USER\Control Panel\Desktop\Wallpaper`: Sets the desktop wallpaper.
* `HKEY_CURRENT_USER\Control Panel\Desktop\WindowMetrics\MinAnimate`: Controls window minimize and maximize animations.
* `HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\NoRecentDocsHistory`: Disables the history of recently opened documents.
* `HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Themes\Personalize\AppsUseLightTheme`: Switch between light and dark theme.
* `HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Themes\Personalize\SystemUsesLightTheme`: Switch between light and dark theme for system.
### Optimization
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Session Manager\Memory Management\PrefetchParameters\EnablePrefetcher`: Controls prefetching.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Session Manager\Memory Management\PrefetchParameters\EnableSuperfetch`: Controls Superfetch.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Ndu\Start`: Disables the Network Data Usage monitoring service.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\Power\PowerThrottling`: Manage power throttling settings.
* `HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Serialize\StartupDelayInMSec`: Disables startup delay.
### Privacy
* `HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\AdvertisingInfo\Enabled`: Controls targeted ads.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\LocationAndSensors\DisableLocation`: Disables location services.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\System\DisableAutomaticRestartSignOn`: Disables automatic sign-on after updates.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\DataCollection\AllowTelemetry`: Controls telemetry data collection.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\WindowsUpdate\AU\NoAutoUpdate`: Disables automatic updates.
### Security
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\DeviceGuard\EnableVirtualizationBasedSecurity`: Enables virtualization-based security.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows Defender\DisableAntiSpyware`: Disables Windows Defender.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\System\EnableSmartScreen`: Enables or disables Windows SmartScreen.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\DomainProfile\EnableFirewall`: Enables or disables the domain profile firewall.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\StandardProfile\EnableFirewall`: Enables or disables the standard profile firewall.
### General System Settings
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\LanmanServer\Parameters\AutoShareWks`: Disables administrative shares.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa\LimitBlankPasswordUse`: Prevents local accounts with blank passwords from being used to log on to Windows.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\IPEnableRouter`: Enables IP routing.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\DisableTaskOffload`: Disables task offloading.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Session Manager\BootExecute`: Modifies boot-time processes.
### User Experience
* `HKEY_CURRENT_USER\Control Panel\Mouse\MouseHoverTime`: Sets the time for mouse hover.
* `HKEY_CURRENT_USER\Control Panel\Mouse\MouseSpeed`: Sets the mouse speed.
* `HKEY_CURRENT_USER\Control Panel\Mouse\MouseSensitivity`: Sets the mouse sensitivity.
* `HKEY_CURRENT_USER\Control Panel\Desktop\ForegroundLockTimeout`: Sets the delay for bringing foreground windows.
* `HKEY_CURRENT_USER\Control Panel\Desktop\MenuShowDelay`: Sets the delay for menu display.
### Network
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\MaxUserPort`: Sets the maximum user port.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\TcpTimedWaitDelay`: Sets the TCP time wait delay.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\ServiceProvider\DnsPriority`: Sets DNS priority.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\ServiceProvider\HostsPriority`: Sets hosts file priority.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\ServiceProvider\LocalPriority`: Sets local network priority.
### Application Behavior
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\AutoAdminLogon`: Enables automatic logon.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System\DisableTaskMgr`: Disables Task Manager.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System\DisableRegistryTools`: Disables registry editing tools.
* `HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\DisallowRun`: Restricts running specific applications.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System\ShutdownWithoutLogon`: Disables shutdown without logon.
### Performance
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\PriorityControl\Win32PrioritySeparation`: Sets foreground and background application priority.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Session Manager\Memory Management\LargeSystemCache`: Enables large system cache.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Session Manager\Memory Management\DisablePagingExecutive`: Keeps kernel and device drivers in memory.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Session Manager\Memory Management\ClearPageFileAtShutdown`: Clears page file at shutdown.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Session Manager\Memory Management\PagingFiles`: Configures paging file settings.
### Accessibility
* `HKEY_CURRENT_USER\Control Panel\Accessibility\StickyKeys\Flags`: Configures sticky keys.
* `HKEY_CURRENT_USER\Control Panel\Accessibility\ToggleKeys\Flags`: Configures toggle keys.
* `HKEY_CURRENT_USER\Control Panel\Accessibility\SoundSentry\SoundOnActivation`: Configures sound sentry.
### Windows Explorer
* `HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Hidden`: Shows or hides hidden files.
* `HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced\HideFileExt`: Shows or hides file extensions.
* `HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced\ShowSuperHidden`: Shows or hides protected operating system files.
* `HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced\LaunchTo`: Configures launch folder windows in a separate process.
* `HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced\EnableBalloonTips`: Enables or disables balloon tips.
### User Interface
* `HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\NoLowDiskSpaceChecks`: Disables low disk space checks.
* `HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\NoTrayItemsDisplay`: Hides items in the system tray.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System\NoDispCPL`: Disables display settings.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System\NoDispBackgroundPage`: Disables background settings.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System\NoDispScrSavPage`: Disables screensaver settings.
### Login and Authentication
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\DefaultUserName`: Sets default username for auto logon.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\DefaultPassword`: Sets default password for auto logon.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\DefaultDomainName`: Sets default domain name for auto logon.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\AutoAdminLogon`: Enables or disables auto logon.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\ForceAutoLogon`: Forces auto logon.
### Windows Update
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\WindowsUpdate\AU\AUOptions`: Configures automatic update options.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\WindowsUpdate\AU\ScheduledInstallDay`: Sets scheduled install day.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\WindowsUpdate\AU\ScheduledInstallTime`: Sets scheduled install time.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\WindowsUpdate\AU\NoAutoRebootWithLoggedOnUsers`: Disables automatic reboot with logged-on users.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\WindowsUpdate\AU\RebootRelaunchTimeout`: Sets reboot relaunch timeout.
### System Performance
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Session Manager\Memory Management\IoPageLockLimit`: Sets I/O page lock limit.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Session Manager\Memory Management\SystemPages`: Configures system pages.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Session Manager\Memory Management\PagedPoolSize`: Sets paged pool size.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Session Manager\Memory Management\NonPagedPoolSize`: Sets non-paged pool size.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Session Manager\Memory Management\LargeSystemCache`: Configures large system cache.
### Network Settings
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Tcp1323Opts`: Configures TCP options.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\GlobalMaxTcpWindowSize`: Sets global max TCP window size.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\SackOpts`: Configures selective acknowledgements.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\TcpWindowSize`: Sets TCP window size.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\DefaultTTL`: Sets default TTL.
### Security and Privacy
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\System\EnableSmartScreen`: Enables SmartScreen filter.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\System\EnableActivityFeed`: Disables activity feed.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\System\PublishUserActivities`: Disables publishing user activities.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\System\UploadUserActivities`: Disables uploading user activities.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\System\AllowCortana`: Enables or disables Cortana.
### Application Settings
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\VolumeCaches\Temporary Files\StateFlags0001`: Configures temporary files cleanup.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\VolumeCaches\System Restore\StateFlags0001`: Configures system restore cleanup.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\VolumeCaches\Downloaded Program Files\StateFlags0001`: Configures downloaded program files cleanup.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\VolumeCaches\Temporary Setup Files\StateFlags0001`: Configures temporary setup files cleanup.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\VolumeCaches\Thumbnail Cache\StateFlags0001`: Configures thumbnail cache cleanup.
### Task Manager and System Tools
* `HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\System\DisableTaskMgr`: Disables Task Manager.
* `HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\System\DisableRegistryTools`: Disables registry tools.
* `HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\System\NoControlPanel`: Disables Control Panel.
* `HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\System\NoRun`: Disables Run dialog.
* `HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\System\NoFind`: Disables search function.
### Group Policy
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\GroupPolicy\NoBackgroundPolicy`: Disables background refresh of Group Policy.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\GroupPolicy\NoGPOListChanges`: Disables notification of changes in Group Policy.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\GroupPolicy\DisableMdmEnrollment`: Disables MDM enrollment.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\GroupPolicy\EnableLocalStoreOverride`: Enables local store override.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\GroupPolicy\NoRSoPLogging`: Disables RSoP logging.
### Miscellaneous
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\USBSTOR\Start`: Disables USB storage.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System\ConsentPromptBehaviorAdmin`: Configures UAC prompt behavior for administrators.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System\ConsentPromptBehaviorUser`: Configures UAC prompt behavior for standard users.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System\EnableLUA`: Enables or disables User Account Control (UAC).
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\LanmanWorkstation\Parameters\RequireSecuritySignature`: Configures SMB security signature requirements.
### Power Management
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Power\HibernateEnabled`: Enables or disables hibernation.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Power\CsEnabled`: Enables or disables Connected Standby.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Power\PowerSettings\xxxxxxxx-xxxx-xxxx-xxxx-xxxxxxxxxxxx`: Configures specific power settings.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Power\User\PowerSchemes\xxxxxxxx-xxxx-xxxx-xxxx-xxxxxxxxxxxx`: Configures power schemes.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Power\PowerSettings\xxxxxxx-xxxx-xxxx-xxxx-xxxxxxxxxxxx\xxxxxxxx-xxxx-xxxx-xxxx-xxxxxxxxxxxx`: Configures detailed power settings.
### Shell and User Interface
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System\DisableLockWorkstation`: Disables the ability to lock the workstation.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System\DisableChangePassword`: Disables the ability to change the password.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System\DisableTaskMgr`: Disables Task Manager.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System\DisableRegistryTools`: Disables registry editing tools.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System\DisableShutdown`: Disables shutdown options.
### Windows Firewall
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\DomainProfile\EnableFirewall`: Enables or disables the firewall for the domain profile.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\StandardProfile\EnableFirewall`: Enables or disables the firewall for the standard profile.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\PublicProfile\EnableFirewall`: Enables or disables the firewall for the public profile.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\Logging\LogDroppedPackets`: Configures logging of dropped packets.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\Logging\LogSuccessfulConnections`: Configures logging of successful connections.
### Windows Defender
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows Defender\DisableAntiSpyware`: Disables Windows Defender.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows Defender\Real-Time Protection\DisableIOAVProtection`: Disables real-time protection.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows Defender\Real-Time Protection\DisableOnAccessProtection`: Disables on-access protection.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows Defender\Spynet\SpynetReporting`: Configures Spynet reporting.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows Defender\Spynet\SubmitSamplesConsent`: Configures sample submission consent.
### Windows Search
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\Windows Search\DisableWebSearch`: Disables web search.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\Windows Search\ConnectedSearchUseWeb`: Configures connected search using the web.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\Windows Search\PreventIndexingOutlook`: Prevents indexing of Outlook.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\Windows Search\AllowCortana`: Enables or disables Cortana.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\Windows Search\DisableIndexerBackoff`: Disables indexer backoff.
### Remote Desktop
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server\fDenyTSConnections`: Disables remote desktop connections.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server\WinStations\RDP-Tcp\PortNumber`: Configures the RDP port number.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server\WinStations\RDP-Tcp\SecurityLayer`: Configures the security layer for RDP.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server\WinStations\RDP-Tcp\fEncryptRPCTraffic`: Configures encryption of RPC traffic.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server\WinStations\RDP-Tcp\UserAuthentication`: Configures user authentication for RDP.
### Windows Update Advanced Settings
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\WindowsUpdate\AU\RebootRelaunchTimeoutEnabled`: Enables reboot relaunch timeout.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\WindowsUpdate\AU\RebootWarningTimeout`: Configures reboot warning timeout.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\WindowsUpdate\AU\RebootWarningTimeoutEnabled`: Enables reboot warning timeout.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\WindowsUpdate\AU\DetectionFrequency`: Configures update detection frequency.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\WindowsUpdate\AU\DetectionFrequencyEnabled`: Enables update detection frequency.
### Task Scheduler
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Schedule\Start`: Configures Task Scheduler start type.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\WDI\DiagnosticModules\ExecutionPolicy`: Configures execution policy for diagnostics.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\WDI\DiagnosticModules\MaintenancePolicy`: Configures maintenance policy for diagnostics.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\WDI\DiagnosticModules\MaxConcurrentTasks`: Configures maximum concurrent tasks.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\WDI\DiagnosticModules\TaskIdlePolicy`: Configures task idle policy.
### Windows Error Reporting
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\Windows Error Reporting\Disabled`: Disables error reporting.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\Windows Error Reporting\AutoApproveOSDumps`: Automatically approves OS dumps.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\Windows Error Reporting\AutoApproveApplicationDumps`: Automatically approves application dumps.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\Windows Error Reporting\NoReportArchive`: Disables report archiving.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\Windows Error Reporting\DisableLogging`: Disables error logging.
### Windows Installer
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\Installer\DisableMSI`: Disables Windows Installer.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\Installer\AlwaysInstallElevated`: Configures always install elevated.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\Installer\Logging`: Configures installer logging.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\Installer\SafeForScripting`: Configures installer safe for scripting.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\Installer\LimitSystemRestoreCheckpointing`: Limits system restore checkpointing.
### Windows Media Player
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsMediaPlayer\GroupPrivacyConsent`: Configures privacy consent.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsMediaPlayer\DisableAutoUpdate`: Disables automatic updates.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsMediaPlayer\BlockUserInputFromNetwork`: Blocks user input from network.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsMediaPlayer\PreventCodecDownload`: Prevents codec download.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsMediaPlayer\DisableLicenseManagement`: Disables license management.
### Disk Quotas
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Disk\DiskQuota\EnableQuota`: Enables disk quotas.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Disk\DiskQuota\QuotaEnforcement`: Configures quota enforcement.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Disk\DiskQuota\LogEvent`: Configures quota log events.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Disk\DiskQuota\DefaultLimit`: Configures default quota limit.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Disk\DiskQuota\DefaultWarningLimit`: Configures default warning limit.
### Performance Monitoring
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\WDI\DisableDiagnostics`: Disables diagnostics.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\WDI\DisableEvents`: Disables event logging.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\WDI\DisableWdiWebServices`: Disables WDI web services.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\WDI\DisablePerformanceTrack`: Disables performance tracking.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\WDI\DisableClientMonitoring`: Disables client monitoring.
### Windows Time Service
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\W32Time\Config\MaxPollInterval`: Configures max poll interval.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\W32Time\Config\MinPollInterval`: Configures min poll interval.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\W32Time\Config\SpecialPollInterval`: Configures special poll interval.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\W32Time\Parameters\NtpServer`: Configures NTP server.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\W32Time\TimeProviders\NtpClient\Enabled`: Enables NTP client.
### Windows Services
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\<ServiceName>\Start`: Configures the startup type of a service.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\<ServiceName>\ErrorControl`: Configures the error control level of a service.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\<ServiceName>\DelayedAutoStart`: Configures delayed auto-start for a service.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\<ServiceName>\Description`: Sets the description of a service.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\<ServiceName>\DependOnService`: Configures service dependencies.
### Windows Boot Configuration
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\`: Specifies programs to run at startup.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce\`: Specifies programs to run once at startup.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\RunServices\`: Specifies services to run at startup.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\RunServicesOnce\`: Specifies services to run once at startup.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run`: Specifies additional programs to run at startup.
### System Restore
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows NT\SystemRestore\DisableSR`: Disables System Restore.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows NT\SystemRestore\DisableConfig`: Disables System Restore configuration.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows NT\SystemRestore\DisableCreation`: Disables the creation of System Restore points.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows NT\SystemRestore\DisableMonitoring`: Disables monitoring of drives for System Restore.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore\DiskPercent`: Configures the percentage of disk space used for System Restore.
### Windows Error Reporting Advanced Settings
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\Consent\DefaultConsent`: Configures default consent level for error reporting.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\Debug\DisableKernelMiniDump`: Disables kernel mini dumps.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\Debug\DisableUserModeDump`: Disables user mode dumps.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\LocalDumps\DumpCount`: Configures the number of local dumps to keep.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\LocalDumps\DumpFolder`: Configures the folder for local dumps.
### Windows Security Center
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\DoNotOpenSecurityCenter`: Disables opening of the Security Center.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\AntiVirusOverride`: Configures override for antivirus monitoring.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\FirewallOverride`: Configures override for firewall monitoring.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\AutoUpdateSettings`: Configures settings for automatic updates.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\UpdatesDisableNotify`: Disables update notifications.
### Windows Defender Advanced Settings
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows Defender\Spynet\SpyNetReporting`: Configures SpyNet reporting settings.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows Defender\Spynet\SubmitSamplesConsent`: Configures sample submission consent for SpyNet.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows Defender\Real-Time Protection\DisableIOAVProtection`: Disables IOAV (Inbound and Outbound Antivirus) protection.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows Defender\Real-Time Protection\DisableOnAccessProtection`: Disables on-access protection.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows Defender\Real-Time Protection\DisableRealtimeMonitoring`: Disables real-time monitoring.
### Windows Remote Assistance
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Remote Assistance\fAllowToGetHelp`: Configures whether remote assistance is allowed.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Remote Assistance\Remote Desktop Help Assistant\RAUnsolicited`: Configures unsolicited remote assistance.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Remote Assistance\Remote Desktop Help Assistant\SessionTimeout`: Configures the session timeout for remote assistance.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Remote Assistance\Remote Desktop Help Assistant\EnableRA`: Enables remote assistance.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Remote Assistance\Remote Desktop Help Assistant\OfferRemoteAssistance`: Configures offer remote assistance settings.
### Windows Backup and Restore
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsBackup\DisableMonitoring`: Disables monitoring for backup and restore.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsBackup\DisableBackupSetProtection`: Disables protection for backup sets.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsBackup\DisableScheduledBackup`: Disables scheduled backups.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsBackup\BackupSetLimit`: Configures the limit for the number of backup sets.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsBackup\BackupInterval`: Configures the interval for backups.
### Windows Remote Desktop Advanced Settings
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server\Licensing Core\LicenseServers`: Configures license servers for remote desktop.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server\WinStations\RDP-Tcp\SecurityLayer`: Configures the security layer for RDP.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server\WinStations\RDP-Tcp\MinEncryptionLevel`: Configures the minimum encryption level for RDP.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server\WinStations\RDP-Tcp\fUseSmartCard`: Configures the use of smart cards for RDP.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server\Wds\rdpwd\Tds\tcp`: Configures TCP settings for RDP.
### Windows Update Delivery Optimization
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\DeliveryOptimization\Config\DODownloadMode`: Configures download mode for Delivery Optimization.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\DeliveryOptimization\Config\DOMaxCacheSize`: Configures the maximum cache size for Delivery Optimization.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\DeliveryOptimization\Config\DOMinBackgroundQos`: Configures the minimum background QoS for Delivery Optimization.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\DeliveryOptimization\Config\DOMinForegroundQos`: Configures the minimum foreground QoS for Delivery Optimization.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\DeliveryOptimization\Config\DOPercentageDownloadThrottle`: Configures the percentage download throttle for Delivery Optimization.
### Windows Time Service Advanced Settings
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\W32Time\Config\AnnounceFlags`: Configures announce flags for time synchronization.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\W32Time\Config\MaxNegPhaseCorrection`: Configures the maximum negative phase correction.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\W32Time\Config\MaxPosPhaseCorrection`: Configures the maximum positive phase correction.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\W32Time\Config\MaxAllowedPhaseOffset`: Configures the maximum allowed phase offset.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\W32Time\Parameters\Type`: Configures the time synchronization type.
### Windows Media Center
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Media Center\Settings\Parental Controls\FamilySafety\IsFamilySafetyEnabled`: Enables or disables Family Safety.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Media Center\Settings\Parental Controls\FamilySafety\FamilySafetyMode`: Configures Family Safety mode.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Media Center\Settings\Parental Controls\FamilySafety\CanUserModifySettings`: Configures whether users can modify Family Safety settings.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Media Center\Settings\Parental Controls\ContentRating\EnableContentRating`: Enables or disables content rating.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Media Center\Settings\Parental Controls\ContentRating\ContentRatingLevel`: Configures the content rating level.
### Windows Audio Settings
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\MMDevices\Audio\Render\{GUID}\Properties\Device_FriendlyName`: Configures the friendly name for audio devices.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\MMDevices\Audio\Render\{GUID}\Properties\Volume`: Configures the volume for audio devices.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\MMDevices\Audio\Render\{GUID}\Properties\Device_SpeakerConfig`: Configures speaker configuration for audio devices.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\MMDevices\Audio\Render\{GUID}\Properties\Device_PowerState`: Configures power state for audio devices.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\MMDevices\Audio\Render\{GUID}\Properties\Device_LoudnessEqualization`: Configures loudness equalization for audio devices.
### Windows Accessibility
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Accessibility\ATs\HighContrast\Flags`: Configures high contrast settings.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Accessibility\ATs\ScreenReader\Flags`: Configures screen reader settings.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Accessibility\ATs\Narrator\Flags`: Configures narrator settings.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Accessibility\ATs\Magnifier\Flags`: Configures magnifier settings.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Accessibility\ATs\Keyboard\Flags`: Configures keyboard accessibility settings.
### Windows Taskbar and Start Menu
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\TaskbarAnimations`: Configures taskbar animations.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\TaskbarGlomLevel`: Configures taskbar grouping level.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\TaskbarSmallIcons`: Configures the use of small icons on the taskbar.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Start_MinMFU`: Configures the minimum number of frequently used programs to display in the Start menu.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Start_TrackProgs`: Configures whether to track recently used programs in the Start menu.
### Windows Group Policy
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\Group Policy\EnableLocalPolicyOverride`: Configures the ability to override local group policies.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\Group Policy\DisableGpReapply`: Configures whether to reapply group policies.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\Group Policy\EnableGroupPolicyObjectsLogging`: Enables logging for group policy objects.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\Group Policy\DisableBackgroundProcessing`: Disables background processing of group policies.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\Group Policy\EnableLopConnection`: Configures the ability to connect to local operations.
### Windows Networking
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\EnableICMPRedirect`: Configures ICMP redirect.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\DisableTaskOffload`: Disables task offload.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\EnableDeadGWDetect`: Enables dead gateway detection.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Tcp1323Opts`: Configures TCP options.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\TcpMaxDataRetransmissions`: Configures maximum data retransmissions for TCP.
### Windows Network Connections
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\NlaSvc\Parameters\Internet\EnableActiveProbing`: Enables active probing for network location awareness.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\NlaSvc\Parameters\Internet\ActiveWebProbeHost`: Configures the host for active web probe.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\NlaSvc\Parameters\Internet\ActiveWebProbePath`: Configures the path for active web probe.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\NlaSvc\Parameters\Internet\PassivePollPeriod`: Configures the passive poll period for network location awareness.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\NlaSvc\Parameters\Internet\ActiveWebProbeTimeout`: Configures the timeout for active web probe.
### Windows Network Policy
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\Network Connections\NC_PersonalFirewallConfig`: Configures personal firewall settings.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\Network Connections\NC_AllowNetBridge_NLA`: Configures network bridging settings.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\Network Connections\NC_AllowLPT`: Configures parallel port settings for network connections.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\Network Connections\NC_AllowIeee1394`: Configures IEEE 1394 (FireWire) settings for network connections.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\Network Connections\NC_LanChangePolicy`: Configures LAN change policy for network connections.
### Windows Group Policy Advanced Settings
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\Group Policy\DisableGPORefreshOnError`: Disables group policy refresh on error.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\Group Policy\EnableAsyncForegroundProcessing`: Enables asynchronous foreground processing for group policies.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\Group Policy\EnableBackgroundRefresh`: Enables background refresh for group policies.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\Group Policy\EnableRegistryPolicyProcessing`: Enables registry policy processing for group policies.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\Group Policy\MaxNoGPOListChangesInterval`: Configures maximum interval for no group policy list changes.
### Windows Application Compatibility
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\AppCompat\DisableEngine`: Disables the application compatibility engine.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\AppCompat\DisablePcaUI`: Disables the Program Compatibility Assistant (PCA) user interface.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\AppCompat\DisablePca`: Disables the Program Compatibility Assistant (PCA).
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\AppCompat\DisableInventory`: Disables inventory collection for application compatibility.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\AppCompat\DisableHeuristics`: Disables heuristics for application compatibility.
### Windows User Profiles
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList\ProfilesDirectory`: Configures the directory for user profiles.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList\DefaultUserProfile`: Configures the default user profile.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList\DefaultProfile`: Configures the default profile.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList\ProfileImagePath`: Configures the profile image path.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList\AllUsersProfile`: Configures the all users profile.
### Windows Session Manager
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Session Manager\AutoChkTimeOut`: Configures the timeout for auto check disk.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Session Manager\BootExecute`: Configures boot execute commands.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Session Manager\CriticalSectionTimeout`: Configures the timeout for critical sections.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Session Manager\GlobalFlag`: Configures global flags for session manager.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Session Manager\SubSystems`: Configures subsystems for session manager.
### Windows USB Settings
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\USB\DisableSelectiveSuspend`: Disables selective suspend for USB devices.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\USB\ForceHCResetOnResume`: Configures force host controller reset on resume.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\USB\EnableIdleEndpointSupport`: Enables idle endpoint support for USB devices.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\USB\DisableOnSoftRemove`: Disables USB devices on soft remove.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\USB\DisableRemoteWake`: Disables remote wake for USB devices.
### Windows Power Management
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Power\CsEnabled`: Enables or disables Connected Standby.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Power\HibernateEnabled`: Enables or disables hibernation.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Power\HybridSleep`: Configures hybrid sleep settings.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Power\PowerButtonAction`: Configures action for the power button.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Power\LidSwitchAction`: Configures action for the lid switch.
### Windows Print Spooler
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Print\Printers\DefaultSpoolDirectory`: Configures the default spool directory for printers.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Print\EnforcePrintProcessorIsolation`: Configures print processor isolation.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Print\KeepPrintedJobs`: Configures whether to keep printed jobs.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Print\DisableHTTPPrinting`: Disables HTTP printing.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Print\AllowPrintToFile`: Configures the ability to print to file.
### Windows Task Scheduler Advanced Settings
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Schedule\Start`: Configures the start type for the task scheduler.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Schedule\TaskCache\Tasks`: Configures task cache settings.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Schedule\TaskCache\Tree`: Configures task cache tree settings.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Schedule\TaskHandlers`: Configures task handlers.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Schedule\Security`: Configures security settings for the task scheduler.
### Windows Time Synchronization
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\W32Time\TimeProviders\NtpClient\SpecialPollInterval`: Configures the special poll interval for NTP client.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\W32Time\TimeProviders\NtpClient\NtpServer`: Configures the NTP server for time synchronization.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\W32Time\TimeProviders\NtpClient\CrossSiteSyncFlags`: Configures cross-site synchronization flags for NTP client.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\W32Time\Parameters\Type`: Configures the synchronization type for Windows Time service.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\W32Time\Config\MaxPosPhaseCorrection`: Configures the maximum positive phase correction for time synchronization.
### Windows Authentication Settings
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa\DisableLoopbackCheck`: Disables loopback check for authentication.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa\LmCompatibilityLevel`: Configures LM compatibility level for authentication.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa\RestrictAnonymous`: Configures anonymous access restrictions.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa\LimitBlankPasswordUse`: Limits the use of blank passwords.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa\DisableDomainCreds`: Disables domain credentials.
### Windows Disk Management
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Disk\TimeOutValue`: Configures the timeout value for disk operations.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Disk\Enum`: Configures disk enumeration settings.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Disk\EnableIdlePowerManagement`: Enables idle power management for disks.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Disk\EnableWriteCaching`: Enables write caching for disks.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Disk\EnablePowerProtect`: Enables power protection for disks.
### Windows Storage Spaces
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Storage Spaces\AutoPoolEnabled`: Enables auto pooling for storage spaces.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Storage Spaces\AutoPoolRefreshRate`: Configures the refresh rate for auto pooling.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Storage Spaces\AutoRepairEnabled`: Enables auto repair for storage spaces.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Storage Spaces\AutoRepairThreshold`: Configures the threshold for auto repair.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Storage Spaces\MediaPoolGuid`: Configures the GUID for the media pool in storage spaces.
### Windows File Explorer
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Hidden`: Configures the display of hidden files and folders.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\ShowSuperHidden`: Configures the display of super hidden files.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\HideFileExt`: Configures the hiding of file extensions.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\DontPrettyPath`: Configures the display of pretty paths.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\SeparateProcess`: Configures the use of separate processes for File Explorer.
### Windows Notification Settings
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Notifications\Settings\NOC_GLOBAL_SETTING_ALLOW_TOASTS_ABOVE_LOCK`: Allows toast notifications above the lock screen.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Notifications\Settings\NOC_GLOBAL_SETTING_SUPPRESS_TOASTS`: Suppresses toast notifications.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Notifications\Settings\NOC_GLOBAL_SETTING_ALLOW_TOASTS`: Allows toast notifications.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Notifications\Settings\NOC_GLOBAL_SETTING_ALLOW_SYSTEM_TOASTS`: Allows system toast notifications.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Notifications\Settings\NOC_GLOBAL_SETTING_DO_NOT_DISTURB_MODE`: Configures Do Not Disturb mode.
### Windows Defender and Security
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows Defender\DisableAntiSpyware`: Disables Windows Defender.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows Defender\DisableRoutinelyTakingAction`: Disables routine actions taken by Windows Defender.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows Defender\DisableRealtimeMonitoring`: Disables real-time monitoring by Windows Defender.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows Defender\DisableEnhancedNotifications`: Disables enhanced notifications from Windows Defender.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows Defender\DisableScanOnStartup`: Disables startup scans by Windows Defender.
### Windows User Account Control (UAC)
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System\ConsentPromptBehaviorAdmin`: Configures UAC behavior for administrators.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System\ConsentPromptBehaviorUser`: Configures UAC behavior for standard users.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System\EnableLUA`: Enables or disables UAC.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System\PromptOnSecureDesktop`: Configures UAC prompt on the secure desktop.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System\FilterAdministratorToken`: Filters administrator token for UAC.
### Windows Remote Desktop
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server\fDenyTSConnections`: Configures Remote Desktop connections.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server\AllowTSConnections`: Allows Remote Desktop connections.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server\TSEnabled`: Enables Terminal Services.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server\WinStations\RDP-Tcp\SecurityLayer`: Configures the security layer for Remote Desktop.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server\WinStations\RDP-Tcp\UserAuthentication`: Configures user authentication for Remote Desktop.
### Windows Update
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\WindowsUpdate\AU\NoAutoUpdate`: Disables automatic updates.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\WindowsUpdate\AU\AUOptions`: Configures automatic update options.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\WindowsUpdate\AU\ScheduledInstallDay`: Configures the scheduled install day for updates.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\WindowsUpdate\AU\ScheduledInstallTime`: Configures the scheduled install time for updates.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\WindowsUpdate\AU\NoAutoRebootWithLoggedOnUsers`: Prevents auto-reboot with logged on users.
### Windows Firewall
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\EnableFirewall`: Enables or disables the firewall for the standard profile.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\DoNotAllowExceptions`: Configures whether to allow exceptions for the standard profile.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\DisableNotifications`: Disables notifications for the standard profile.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\DefaultInboundAction`: Configures the default inbound action for the standard profile.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\DefaultOutboundAction`: Configures the default outbound action for the standard profile.
### Windows Event Log
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\EventLog\Application\AutoBackupLogFiles`: Configures auto backup for application event log files.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\EventLog\Application\MaxSize`: Configures the maximum size for application event log files.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\EventLog\Security\Retention`: Configures the retention policy for security event log files.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\EventLog\Security\MaxSize`: Configures the maximum size for security event log files.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\EventLog\System\AutoBackupLogFiles`: Configures auto backup for system event log files.
### Windows Performance Settings
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\PerfLib\DisablePerformanceCounters`: Disables performance counters.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\<ProcessName>\CpuPriorityClass`: Configures CPU priority for specific processes.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Session Manager\Memory Management\LargeSystemCache`: Configures large system cache.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Session Manager\Memory Management\DisablePagingExecutive`: Disables paging of the executive.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Session Manager\Memory Management\IoPageLockLimit`: Configures the I/O page lock limit.
### Windows Logon and Authentication
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\AutoAdminLogon`: Configures automatic logon.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\DefaultUserName`: Configures the default user name for logon.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\DefaultPassword`: Configures the default password for logon.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\ForceAutoLogon`: Forces automatic logon.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\PasswordExpiryWarning`: Configures the password expiry warning.
### Windows Shell
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders\Common Startup`: Configures the common startup folder.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders\Common AppData`: Configures the common application data folder.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders\Common Programs`: Configures the common programs folder.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders\Common DesktopDirectory`: Configures the common desktop directory.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders\Common Documents`: Configures the common documents folder.
### Windows Services
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\LanmanServer\Parameters\AutoDisconnect`: Configures auto-disconnect for server service.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\LanmanWorkstation\Parameters\EnableSecuritySignature`: Configures security signature for workstation service.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\LanmanWorkstation\Parameters\RequireSecuritySignature`: Requires security signature for workstation service.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\ArpCacheLife`: Configures ARP cache life.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\ArpCacheMinReferencedLife`: Configures minimum referenced life for ARP cache.
### Windows Power Management Advanced Settings
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Power\PowerSettings\xxxxxxx\xxxxxxx\ACSettingIndex`: Configures AC power settings.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Power\PowerSettings\xxxxxxx\xxxxxxx\DCSettingIndex`: Configures DC power settings.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Power\PowerSettings\xxxxxxx\xxxxxxx\ValueMin`: Configures minimum value for power settings.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Power\PowerSettings\xxxxxxx\xxxxxxx\ValueMax`: Configures maximum value for power settings.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Power\PowerSettings\xxxxxxx\xxxxxxx\Attributes`: Configures attributes for power settings.
### Windows Cortana and Search
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\Windows Search\AllowCortana`: Configures the allowance of Cortana.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\Windows Search\ConnectedSearchUseWeb`: Configures web search connectivity.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\Windows Search\DisableWebSearch`: Disables web search.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\Windows Search\AllowCloudSearch`: Configures cloud search.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\Windows Search\AllowSearchToUseLocation`: Configures location usage for search.
### Windows Privacy Settings
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\System\AllowExperimentation`: Configures experimentation settings.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\System\AllowTelemetry`: Configures telemetry settings.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\System\AllowWindowsConsumerFeatures`: Configures Windows consumer features.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\System\DisableWindowsConsumerFeatures`: Disables Windows consumer features.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\System\DataCollection`: Configures data collection.
### Windows Backup and Restore
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsBackup\BackupTargets`: Configures backup targets.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsBackup\DisableMonitoring`: Disables backup monitoring.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsBackup\DisableScheduleBackup`: Disables scheduled backups.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsBackup\DisableReminders`: Disables backup reminders.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsBackup\BackupFiles`: Configures backup files.
### Windows Software Deployment
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\Installer\AlwaysInstallElevated`: Configures elevated installations.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\Installer\DisablePatch`: Disables patching.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\Installer\DisableLUAPatching`: Disables LUA patching.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\Installer\Logging`: Configures logging for installations.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\Installer\LimitSystemRestoreCheckpointing`: Limits system restore checkpointing during installations.
### Windows Taskbar and Start Menu
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\Explorer\HideSCAVolume`: Configures hiding of the volume control in the system tray.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\Explorer\HideSCANetwork`: Configures hiding of the network icon in the system tray.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\Explorer\HideSCAPower`: Configures hiding of the power icon in the system tray.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\Explorer\NoSimpleStartMenu`: Configures the simple start menu.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\Explorer\DisableLogoff`: Disables the logoff option in the start menu.
### Windows Error Reporting
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\Disabled`: Disables Windows Error Reporting.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\ForceQueue`: Forces queued error reporting.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\NoQueueReporting`: Disables queued error reporting.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\DoReport`: Configures reporting settings.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\LoggingDisabled`: Disables logging for error reporting.
### Windows Application Management
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\NoDrives`: Configures hidden drives.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\NoViewOnDrive`: Configures viewing settings for drives.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\NoRun`: Disables the Run dialog.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\NoDesktop`: Configures desktop settings.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\NoFolderOptions`: Disables folder options.
### Windows Bluetooth Settings
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\BTHPORT\Parameters\EnableLE`: Enables Bluetooth Low Energy.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\BTHPORT\Parameters\DisableLEPrivacyMode`: Disables Bluetooth LE privacy mode.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\BTHPORT\Parameters\PageTimeout`: Configures Bluetooth page timeout.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\BTHPORT\Parameters\DiscoverabilityTimeout`: Configures Bluetooth discoverability timeout.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\BTHPORT\Parameters\EnableExtendedInquiryResponse`: Enables extended inquiry response for Bluetooth.
### Windows Network Settings
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\NetBT\Parameters\NodeType`: Configures the NetBIOS node type.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\NetBT\Parameters\EnableDNS`: Enables DNS for NetBIOS.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\NetBT\Parameters\EnableLMHOSTS`: Enables LMHOSTS lookup.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\NetBT\Parameters\ScopeID`: Configures the NetBIOS scope ID.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\NetBT\Parameters\CacheTimeout`: Configures the cache timeout for NetBIOS.
### Windows Task Scheduler
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks`: Configures tasks in the Task Scheduler.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree`: Configures task folders in the Task Scheduler.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon`: Configures logon tasks in the Task Scheduler.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Maintenance`: Configures maintenance tasks in the Task Scheduler.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{TaskID}\Path`: Configures the path of a specific task.
### Windows Group Policy
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\Group Policy\NoBackgroundPolicy`: Disables background policy refresh.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\Group Policy\DisableBKSPolicyRefresh`: Disables background policy refresh during startup.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\Group Policy\NoGPOListChanges`: Disables changes to the GPO list.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\Group Policy\NoSlowLink`: Configures slow link detection.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\Group Policy\NoBackgroundPolicyForce`: Prevents forced background policy updates.
### Windows Networking
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\EnableDeadGWDetect`: Enables dead gateway detection.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\KeepAliveTime`: Configures TCP keep-alive time.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\TcpMaxDataRetransmissions`: Configures the maximum number of TCP data retransmissions.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\EnablePMTUBHDetect`: Enables PMTU black hole detection.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\DisableTaskOffload`: Disables task offloading.
### Windows Time Service
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\W32Time\Config\AnnounceFlags`: Configures announce flags for the Windows Time service.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\W32Time\Config\MaxPosPhaseCorrection`: Configures maximum positive phase correction.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\W32Time\Config\MaxNegPhaseCorrection`: Configures maximum negative phase correction.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\W32Time\Parameters\Type`: Configures the type of time synchronization.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\W32Time\Parameters\NtpServer`: Configures the NTP server for time synchronization.
### Windows Error Reporting (Advanced)
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\AutoApproveOSDumps`: Configures automatic approval of OS dumps.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\AutoApproveThrottledDumps`: Configures automatic approval of throttled dumps.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\NoFreeReports`: Disables free reports.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\ForceQueueMode`: Configures forced queue mode.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\AutoSend`: Configures automatic sending of error reports.
### Windows Update (Advanced)
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\WindowsUpdate\AU\AUPriority`: Configures the priority of automatic updates.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\WindowsUpdate\AU\DetectionFrequency`: Configures the frequency of update detection.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\WindowsUpdate\AU\RebootWarningTimeout`: Configures the reboot warning timeout.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\WindowsUpdate\AU\RescheduleWaitTime`: Configures the reschedule wait time for updates.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\WindowsUpdate\AU\UseWUServer`: Configures the use of a WSUS server for updates.
### Windows Compatibility
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\AppCompatFlags\Layers`: Configures compatibility layers for applications.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\AppCompatFlags\Custom`: Configures custom compatibility settings.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\AppCompatFlags\InstalledSDB`: Configures installed SDB files.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\AppCompatFlags\InstalledDLLs`: Configures installed DLLs for compatibility.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\AppCompatFlags\Drives`: Configures drives for compatibility.
### Windows Hyper-V
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Virtualization\GuestAgentHeartbeatTimeout`: Configures the heartbeat timeout for the guest agent.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Virtualization\MaxVmbusChannelCount`: Configures the maximum VMBus channel count.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Virtualization\GuestMemoryReservations`: Configures guest memory reservations.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Virtualization\ExportPath`: Configures the export path for virtual machines.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Virtualization\SnapshotPath`: Configures the snapshot path for virtual machines.
### Windows DNS Client
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Dnscache\Parameters\DnsCacheTimeout`: Configures DNS cache timeout.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Dnscache\Parameters\MaxCacheTtl`: Configures the maximum TTL for DNS cache.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Dnscache\Parameters\MaxNegativeCacheTtl`: Configures the maximum negative TTL for DNS cache.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Dnscache\Parameters\NegativeCacheTime`: Configures negative cache time for DNS.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Dnscache\Parameters\CacheHashTableBucketSize`: Configures the hash table bucket size for DNS cache.
### Windows Cryptographic Settings
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Cryptography\Configuration\DisableMD5`: Disables MD5 hashing algorithm.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Cryptography\Configuration\DisableSHA1`: Disables SHA-1 hashing algorithm.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Cryptography\Configuration\DisableRC4`: Disables RC4 encryption algorithm.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Cryptography\Configuration\EnableECC`: Enables Elliptic Curve Cryptography (ECC).
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Cryptography\Configuration\EnableFIPS`: Enables FIPS compliant algorithms.
### Windows BitLocker
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\FVE\FDVDenyWriteAccess`: Configures write access for fixed drives.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\FVE\RDVDenyWriteAccess`: Configures write access for removable drives.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\FVE\UseAdvancedStartup`: Configures advanced startup options for BitLocker.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\FVE\UseTPM`: Configures the use of TPM with BitLocker.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\FVE\OSManageDRA`: Configures Data Recovery Agent management for operating system drives.
### Windows Accessibility
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Accessibility\ATSTimeout`: Configures the timeout for assistive technologies.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Accessibility\BlindAccessTimeout`: Configures the timeout for blind access technologies.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Accessibility\KeyboardResponse`: Configures keyboard response settings.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Accessibility\MouseKeys`: Configures mouse keys settings.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Accessibility\ToggleKeys`: Configures toggle keys settings.
### Windows Remote Assistance
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows NT\Terminal Services\RA\AllowUnsolicited`: Configures the allowance of unsolicited remote assistance.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows NT\Terminal Services\RA\AllowUnsolicitedFullControl`: Configures the allowance of unsolicited remote assistance with full control.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows NT\Terminal Services\RA\MaxTicketExpiry`: Configures the maximum ticket expiry for remote assistance.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows NT\Terminal Services\RA\AllowBuddy`: Configures the allowance of remote assistance buddy requests.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows NT\Terminal Services\RA\RAUnsolicitedTimeout`: Configures the timeout for unsolicited remote assistance.
### Windows Performance Settings
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Session Manager\Memory Management\ClearPageFileAtShutdown`: Configures clearing the page file at shutdown.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Session Manager\Memory Management\DisablePagingExecutive`: Configures whether kernel-mode drivers and system code can be paged to disk.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Session Manager\Memory Management\LargeSystemCache`: Configures the large system cache.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Session Manager\Memory Management\SecondLevelDataCache`: Configures the second-level data cache.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Session Manager\Memory Management\SessionViewSize`: Configures the session view size.
### Windows File Explorer
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL`: Configures showing all hidden files and folders.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\SuperHidden`: Configures showing super hidden files.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\HideFileExt`: Configures hiding file extensions.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\HideIcons`: Configures hiding desktop icons.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\DontPrettyPath`: Configures the display of the full path in the title bar.
### Windows File System
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\FileSystem\NtfsDisableLastAccessUpdate`: Configures disabling the last access update for NTFS volumes.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\FileSystem\NtfsDisable8dot3NameCreation`: Configures disabling 8.3 name creation on NTFS volumes.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\FileSystem\NtfsEncryptPagingFile`: Configures encrypting the paging file.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\FileSystem\NtfsMemoryUsage`: Configures the memory usage for NTFS.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\FileSystem\NtfsQuotaEnabled`: Configures enabling disk quotas on NTFS volumes.
### Windows Power Settings
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Power\HibernateEnabled`: Configures enabling or disabling hibernation.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Power\ShutdownDisabled`: Configures disabling shutdown.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Power\PromptPasswordOnResume`: Configures prompting for a password on resume from sleep or hibernation.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Power\IdleResiliency`: Configures idle resiliency settings.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Power\PowerThrottling`: Configures power throttling settings.
### Windows User Profiles
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList\DefaultUserProfile`: Configures the default user profile.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList\AllUsersProfile`: Configures the all users profile.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList\ProfilesDirectory`: Configures the profiles directory.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList\Public`: Configures the public profile.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList\ProgramData`: Configures the program data profile.
### Windows Logon Settings
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\AutoAdminLogon`: Configures automatic logon.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\DefaultUserName`: Configures the default username for automatic logon.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\DefaultPassword`: Configures the default password for automatic logon.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\ForceAutoLogon`: Configures forcing automatic logon.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\PasswordExpiryWarning`: Configures the password expiry warning.
### Windows Search
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows Search\Gathering Manager\DisableBackoff`: Configures disabling backoff for the search indexer.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows Search\Gathering Manager\EnableInstantIndexing`: Configures enabling instant indexing.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows Search\Gathering Manager\EnableEmailIndexing`: Configures enabling email indexing.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows Search\Gathering Manager\EnableFileIndexing`: Configures enabling file indexing.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows Search\Gathering Manager\DisableIndexingEncryptedItems`: Configures disabling indexing of encrypted items.
### Windows Event Log
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\EventLog\Application\MaxSize`: Configures the maximum size of the application event log.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\EventLog\Security\MaxSize`: Configures the maximum size of the security event log.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\EventLog\System\MaxSize`: Configures the maximum size of the system event log.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\EventLog\Application\Retention`: Configures the retention policy for the application event log.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\EventLog\Security\Retention`: Configures the retention policy for the security event log.
### Windows Audio Settings
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\MMDevices\Audio\Render\{DeviceID}\DeviceState`: Configures the state of audio devices.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\MMDevices\Audio\Render\{DeviceID}\EndpointFormFactor`: Configures the endpoint form factor for audio devices.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\MMDevices\Audio\Render\{DeviceID}\PreferExclusiveMode`: Configures exclusive mode preferences for audio devices.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\MMDevices\Audio\Render\{DeviceID}\DisableAutomaticEndpointSwitching`: Configures disabling automatic endpoint switching for audio devices.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\MMDevices\Audio\Render\{DeviceID}\Volume`: Configures the volume level for audio devices.
### Windows Security Center
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\EnableNotifications`: Configures enabling notifications from the Security Center.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\EnableFirewallMonitoring`: Configures enabling firewall monitoring.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\EnableAntivirusMonitoring`: Configures enabling antivirus monitoring.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\EnableSpywareMonitoring`: Configures enabling spyware monitoring.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\EnableUacMonitoring`: Configures enabling UAC monitoring.
### Windows USB Settings
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\USBSTOR\Start`: Configures the start type of the USB storage driver.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\USB\DisableSelectiveSuspend`: Configures disabling selective suspend for USB devices.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\USB\IdleTimeout`: Configures the idle timeout for USB devices.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\USB\EnableLegacySupport`: Configures enabling legacy support for USB devices.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\USB\DisableFastSuspendResume`: Configures disabling fast suspend and resume for USB devices.
### Windows Desktop Settings
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\NoActiveDesktopChanges`: Configures preventing changes to Active Desktop.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\NoSaveSettings`: Configures preventing saving changes to desktop settings.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\ForceActiveDesktopOn`: Configures forcing Active Desktop to be enabled.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\ClassicShell`: Configures enabling Classic Start Menu.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\NoThemesTab`: Configures hiding the Themes tab in Display Properties.
### Windows Remote Desktop
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server\fDenyTSConnections`: Configures enabling or disabling remote desktop connections.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server\WinStations\RDP-Tcp\PortNumber`: Configures the port number for RDP.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server\WinStations\RDP-Tcp\SecurityLayer`: Configures the security layer for RDP.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server\WinStations\RDP-Tcp\MinEncryptionLevel`: Configures the minimum encryption level for RDP.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server\WinStations\RDP-Tcp\UserAuthentication`: Configures user authentication for RDP.
### Windows Printer Settings
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Print\Printers`: Configures printer settings and properties.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Print\Providers`: Configures print providers.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Print\Monitors`: Configures print monitors.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Print\Environments`: Configures print environments.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Print\Forms`: Configures print forms.
### Windows Backup and Restore
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\Backup\DisableBackup`: Configures disabling backup features.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\Backup\DisableRestore`: Configures disabling restore features.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\Backup\DisableFileHistory`: Configures disabling File History.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\Backup\DisableSystemImage`: Configures disabling system image backup.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\Backup\DisableSystemRestore`: Configures disabling System Restore.
### Windows Boot Configuration
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\BootVerificationProgram`: Configures the boot verification program.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Option`: Configures safe boot options.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\BootLog`: Configures enabling or disabling boot logging.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SystemStartOptions`: Configures system start options.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Session Manager\BootExecute`: Configures commands executed at boot.
### Windows Keyboard and Input Settings
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\i8042prt\Parameters\LayerDriver JPN`: Configures the keyboard driver layer for Japanese keyboards.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\i8042prt\Parameters\LayerDriver KOR`: Configures the keyboard driver layer for Korean keyboards.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\i8042prt\Parameters\LayerDriver US`: Configures the keyboard driver layer for US keyboards.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\i8042prt\Parameters\PollStatusIterations`: Configures the number of iterations to poll for status.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\i8042prt\Parameters\PollStatusTime`: Configures the time to poll for status.
### Windows Disk Management
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Disk\Enum`: Configures disk enumeration.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Disk\Parameters`: Configures disk parameters.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Disk\StartOverride`: Configures disk start override.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Partmgr\Parameters`: Configures partition manager parameters.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\VolSnap\Parameters`: Configures volume shadow copy parameters.
### Windows Bluetooth Settings
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\BTHPORT\Parameters\DisableDiscovery`: Configures disabling Bluetooth discovery.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\BTHPORT\Parameters\DisableNameResolution`: Configures disabling Bluetooth name resolution.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\BTHPORT\Parameters\DisablePairing`: Configures disabling Bluetooth pairing.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\BTHPORT\Parameters\DisableServer`: Configures disabling Bluetooth server mode.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\BTHPORT\Parameters\EnableAudio`: Configures enabling Bluetooth audio.
### Windows Shell Settings
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\NoDrives`: Configures hiding drives in File Explorer.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\NoViewOnDrive`: Configures preventing viewing of specified drives.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\NoControlPanel`: Configures hiding Control Panel.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\NoSetFolders`: Configures hiding specific folders in File Explorer.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\NoSetTaskbar`: Configures preventing changes to the Taskbar.
### Windows Security Options
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SecurityProviders\SCHANNEL\Protocols\SSL 3.0\Client\Enabled`: Configures enabling SSL 3.0 for clients.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SecurityProviders\SCHANNEL\Protocols\TLS 1.0\Client\Enabled`: Configures enabling TLS 1.0 for clients.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SecurityProviders\SCHANNEL\Protocols\TLS 1.1\Client\Enabled`: Configures enabling TLS 1.1 for clients.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SecurityProviders\SCHANNEL\Protocols\TLS 1.2\Client\Enabled`: Configures enabling TLS 1.2 for clients.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SecurityProviders\SCHANNEL\Protocols\TLS 1.3\Client\Enabled`: Configures enabling TLS 1.3 for clients.
### Windows Error Reporting
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\DontShowUI`: Configures preventing the display of error reporting UI.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\NoReportThrottling`: Configures disabling report throttling.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\NoHeapCollection`: Configures disabling heap collection for error reports.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\MaxQueueCount`: Configures the maximum number of reports in the queue.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\NoSecondLevelCollection`: Configures disabling second-level collection.
### Windows DNS Settings
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\DNSQueryTimeouts`: Configures DNS query timeouts.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\DNSCacheTimeout`: Configures DNS cache timeout.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\DNSMaxCacheTtl`: Configures the maximum TTL for DNS cache.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\DNSNegativeCacheTime`: Configures negative cache time for DNS.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\DNSCacheHashTableSize`: Configures the hash table size for DNS cache.
### Windows Network Adapter Settings
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{InterfaceID}\MTU`: Configures the MTU size for network interfaces.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{InterfaceID}\TcpWindowSize`: Configures the TCP window size for network interfaces.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{InterfaceID}\TcpAckFrequency`: Configures the TCP acknowledgment frequency for network interfaces.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{InterfaceID}\EnableDHCP`: Configures enabling or disabling DHCP for network interfaces.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{InterfaceID}\IPAddress`: Configures the IP address for network interfaces.
### Windows Group Policy
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\System\AllowTelemetry`: Configures the level of telemetry data sent to Microsoft.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\System\DisableCMD`: Configures disabling the Command Prompt.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\System\DisableTaskMgr`: Configures disabling the Task Manager.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\System\EnableLUA`: Configures enabling or disabling User Account Control (UAC).
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\System\AllowCrossDeviceClipboard`: Configures enabling the cross-device clipboard.
### Windows Task Scheduler
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree`: Configures tasks in the Task Scheduler.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks`: Configures individual tasks in the Task Scheduler.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Boot`: Configures tasks that run at boot.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon`: Configures tasks that run at logon.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Idle`: Configures tasks that run when the system is idle.
### Windows Updates
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\WindowsUpdate\AU\NoAutoUpdate`: Configures disabling automatic updates.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\WindowsUpdate\AU\AUOptions`: Configures the automatic update options.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\WindowsUpdate\AU\ScheduledInstallDay`: Configures the day of the week for scheduled updates.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\WindowsUpdate\AU\ScheduledInstallTime`: Configures the time of day for scheduled updates.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\WindowsUpdate\AU\UseWUServer`: Configures using a specific WSUS server for updates.
### Windows Firewall
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\EnableFirewall`: Configures enabling or disabling the firewall for domain profiles.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\EnableFirewall`: Configures enabling or disabling the firewall for standard profiles.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile\EnableFirewall`: Configures enabling or disabling the firewall for public profiles.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\DoNotAllowExceptions`: Configures disallowing firewall exceptions for domain profiles.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\DoNotAllowExceptions`: Configures disallowing firewall exceptions for standard profiles.
### Windows Device Installation
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\DeviceInstall\Restrictions\AllowUserDeviceInstall`: Configures allowing or disallowing user device installations.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\DeviceInstall\Restrictions\AllowUserDeviceUninstall`: Configures allowing or disallowing user device uninstallations.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\DeviceInstall\Restrictions\DenyDeviceIDs`: Configures denying specific device IDs from being installed.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\DeviceInstall\Restrictions\DenyDeviceClasses`: Configures denying specific device classes from being installed.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\DeviceInstall\Restrictions\DenyHardwareIDs`: Configures denying specific hardware IDs from being installed.
### Windows Internet Explorer
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Internet Explorer\Main\DisableFirstRunCustomize`: Configures disabling the first run customization for Internet Explorer.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Internet Explorer\Main\EnableAutoComplete`: Configures enabling or disabling AutoComplete in Internet Explorer.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Internet Explorer\Main\NoSearchBox`: Configures hiding the search box in Internet Explorer.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Internet Explorer\Main\NoTabGroups`: Configures disabling tab groups in Internet Explorer.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Internet Explorer\Main\ShowStatusBar`: Configures showing the status bar in Internet Explorer.
### Windows Windows Defender
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows Defender\DisableAntiSpyware`: Configures disabling Windows Defender.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows Defender\DisableRoutinelyTakingAction`: Configures disabling routine actions taken by Windows Defender.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows Defender\DisableScanOnRealtimeEnable`: Configures disabling scanning when real-time protection is enabled.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows Defender\DisableSpecialRunningMode`: Configures disabling special running modes for Windows Defender.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows Defender\DisableAutoUpdate`: Configures disabling automatic updates for Windows Defender.
### Windows Network Sharing
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\Network Connections\NC_ShowSharedAccessUI`: Configures showing the shared access UI.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\Network Connections\NC_AllowNetBridge_NLA`: Configures allowing network bridge NLA.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\Network Connections\NC_AllowInternetIntranetBridgePrompt`: Configures allowing internet/intranet bridge prompts.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\Network Connections\NC_ShowSharedAccessWarning`: Configures showing shared access warnings.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\Network Connections\NC_StdNetworkLocationMode`: Configures the standard network location mode.
### Windows Proxy Settings
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\ProxySettingsPerUser`: Configures proxy settings per user.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\ProxyServer`: Configures the proxy server.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\ProxyEnable`: Configures enabling or disabling the proxy server.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\ProxyOverride`: Configures proxy override settings.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\ProxyExceptions`: Configures proxy exception settings.
### Windows Power Management
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Power\PowerSettings\{GUID}\ACSettingIndex`: Configures power settings for AC power.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Power\PowerSettings\{GUID}\DCSettingIndex`: Configures power settings for DC power.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Power\PowerSettings\{GUID}\Attributes`: Configures power setting attributes.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Power\PowerSettings\{GUID}\PossibleSetting`: Configures possible power settings.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Power\PowerSettings\{GUID}\DefaultPowerScheme`: Configures the default power scheme.
### Windows Services
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\{ServiceName}\Start`: Configures the start type of services.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\{ServiceName}\Type`: Configures the type of services.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\{ServiceName}\ErrorControl`: Configures the error control for services.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\{ServiceName}\Description`: Configures the description of services.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\{ServiceName}\DelayedAutostart`: Configures delayed auto start for services.
### Windows User Configuration
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\AutoAdminLogon`: Configures automatic logon.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\DefaultDomainName`: Configures the default domain name for logon.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\DefaultUserName`: Configures the default user name for logon.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\DefaultPassword`: Configures the default password for logon.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\DontDisplayLastUserName`: Configures not displaying the last logged-on user name.
### Windows Security Center
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\EnableNotifications`: Configures enabling security center notifications.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\AntiVirusOverride`: Configures overriding antivirus notifications.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\FirewallOverride`: Configures overriding firewall notifications.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\UpdatesDisableNotify`: Configures disabling update notifications.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\UacDisableNotify`: Configures disabling User Account Control notifications.
### Windows Telemetry
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\DataCollection\AllowTelemetry`: Configures the level of telemetry data sent to Microsoft.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\DataCollection\LimitDiagnosticLogCollection`: Configures limiting the diagnostic log collection.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\DataCollection\DisableTelemetry`: Configures disabling telemetry data collection.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\DataCollection\MaxTelemetryAllowed`: Configures the maximum allowed telemetry level.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\DataCollection\AllowCommercialDataPipeline`: Configures allowing the commercial data pipeline.
### Windows Application Compatibility
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\AppCompatFlags\Layers`: Configures application compatibility layers.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\AppCompatFlags\Custom`: Configures custom application compatibility settings.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\AppCompatFlags\InstalledSDB`: Configures installed SDB files for compatibility.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\AppCompatFlags\Compatibility Administrator`: Configures settings for the Compatibility Administrator.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\AppCompatFlags\Persisted`: Configures persisted compatibility settings.
### Windows File Explorer
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Hidden`: Configures showing or hiding hidden files and folders.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\HideFileExt`: Configures hiding file extensions for known file types.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\ShowSuperHidden`: Configures showing or hiding protected operating system files.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\SeparateProcess`: Configures launching folder windows in a separate process.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\WebViewBarricade`: Configures enabling or disabling web view barricades.
### Windows Taskbar
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\TaskbarAnimations`: Configures enabling or disabling taskbar animations.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\TaskbarSizeMove`: Configures enabling or disabling taskbar resizing and moving.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\TaskbarGlomming`: Configures taskbar grouping.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\TaskbarNoNotification`: Configures hiding taskbar notifications.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\TaskbarNoThumbnail`: Configures disabling taskbar thumbnails.
### Windows PowerShell
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\PowerShell\ScriptBlockLogging`: Configures script block logging in PowerShell.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\PowerShell\Transcription`: Configures transcription logging in PowerShell.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\PowerShell\ModuleLogging`: Configures module logging in PowerShell.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\PowerShell\ScriptExecutionPolicy`: Configures the script execution policy in PowerShell.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\PowerShell\UpdatableHelpSystem`: Configures the updatable help system in PowerShell.
### Windows System Restore
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore\DisableSR`: Configures disabling system restore.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore\DisableConfig`: Configures disabling system restore configuration.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore\DisableMonitoring`: Configures disabling system restore monitoring.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore\RPSessionInterval`: Configures the system restore session interval.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore\RPLifeInterval`: Configures the system restore life interval.
### Windows Scheduled Tasks
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\TaskScheduler5.0\DisableScheduledTask`: Configures disabling scheduled tasks.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\TaskScheduler5.0\DisableProperties`: Configures disabling task properties.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\TaskScheduler5.0\AllowStartOnDemand`: Configures allowing tasks to start on demand.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\TaskScheduler5.0\DisableTaskDeletion`: Configures disabling task deletion.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\TaskScheduler5.0\DisableTaskCreation`: Configures disabling task creation.
### Windows Internet Settings
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Internet Explorer\Control Panel\Connection Settings`: Configures the connection settings control panel.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Internet Explorer\Control Panel\SecurityPage`: Configures the security page control panel.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Internet Explorer\Control Panel\PrivacyPage`: Configures the privacy page control panel.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Internet Explorer\Control Panel\ContentPage`: Configures the content page control panel.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Internet Explorer\Control Panel\ProgramsPage`: Configures the programs page control panel.
### Windows System Performance
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\System\DisablePagingExecutive`: Configures disabling the paging executive.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\System\LargeSystemCache`: Configures enabling or disabling the large system cache.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\System\IoPageLockLimit`: Configures the I/O page lock limit.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\System\DisablePrefetcher`: Configures disabling the prefetcher.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\System\DisableSuperfetch`: Configures disabling Superfetch.
### Windows Display Settings
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\GraphicsDrivers\DCI\Timeout`: Configures the timeout for display control interface.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\GraphicsDrivers\TimeoutDetectionRecovery`: Configures timeout detection and recovery settings for graphics drivers.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\GraphicsDrivers\UseNewKeyValue`: Configures the use of new key value in graphics drivers.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\GraphicsDrivers\MemoryManagement`: Configures memory management settings for graphics drivers.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\GraphicsDrivers\DevicePerf`: Configures device performance settings for graphics drivers.
### Windows Time Zone
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\W32Time\Parameters\NtpServer`: Configures the NTP server for time synchronization.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\W32Time\Parameters\Type`: Configures the type of time synchronization.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\W32Time\Parameters\Period`: Configures the time synchronization period.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\W32Time\Parameters\ReliableTimeSource`: Configures reliable time source settings.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\W32Time\Parameters\ResolvePeerBackoffMinutes`: Configures resolving peer backoff minutes.
### Windows Recovery Console
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Setup\RecoveryConsole\SecurityLevel`: Configures the security level for the Recovery Console.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Setup\RecoveryConsole\SetCommand`: Configures the set command for the Recovery Console.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Setup\RecoveryConsole\Installed`: Configures the installation status of the Recovery Console.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Setup\RecoveryConsole\DisplayName`: Configures the display name of the Recovery Console.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Setup\RecoveryConsole\CustomPrefix`: Configures the custom prefix for the Recovery Console.
### Windows Shell
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\NoViewContextMenu`: Configures disabling context menus in the Explorer.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\NoFind`: Configures disabling the Find feature in the Explorer.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\NoRun`: Configures disabling the Run command.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\NoDrives`: Configures hiding specific drives in Explorer.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\NoDesktop`: Configures hiding desktop items.
### Windows Remote Desktop
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server\fDenyTSConnections`: Configures allowing or denying Remote Desktop connections.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server\WinStations\RDP-Tcp\PortNumber`: Configures the port number for Remote Desktop connections.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server\WinStations\RDP-Tcp\SecurityLayer`: Configures the security layer for Remote Desktop connections.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server\WinStations\RDP-Tcp\UserAuthentication`: Configures user authentication for Remote Desktop connections.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server\WinStations\RDP-Tcp\LanAdapter`: Configures the LAN adapter for Remote Desktop connections.
### Windows Performance Monitoring
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\DisablePerformanceCounters`: Configures disabling performance counters.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\Config`: Configures performance library settings.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\ExtCounterTestLevel`: Configures the external counter test level.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\Last Counter`: Configures the last counter value.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\Last Help`: Configures the last help value.
### Windows Network
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Network\LanManWorkstation\EnableSecuritySignature`: Configures enabling the security signature.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Network\LanManWorkstation\RequireSecuritySignature`: Configures requiring the security signature.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Network\LanManWorkstation\EnablePlainTextPassword`: Configures allowing plain text passwords.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Network\LanManWorkstation\DisableDomainNameResolution`: Configures disabling domain name resolution.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Network\LanManWorkstation\MaxCmds`: Configures the maximum number of commands.
### Windows DNS Client
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Dnscache\Parameters\MaxCacheTTL`: Configures the maximum cache time-to-live.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Dnscache\Parameters\MaxNegativeCacheTTL`: Configures the maximum negative cache time-to-live.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Dnscache\Parameters\NegativeCacheTime`: Configures the negative cache time.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Dnscache\Parameters\NetFailureCacheTime`: Configures the network failure cache time.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Dnscache\Parameters\QueryIpMatching`: Configures query IP matching.
### Windows Wireless Configuration
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\WiredL2\DisableWiredAutoConfig`: Configures disabling wired auto-configuration.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\WiredL2\AllowAnonymousConnections`: Configures allowing anonymous connections.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\WiredL2\Disable8021X`: Configures disabling 802.1X authentication.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\WiredL2\DisableUserAuth`: Configures disabling user authentication.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\WiredL2\SingleSignOn`: Configures enabling single sign-on.
### Windows Network Connectivity Status Indicator (NCSI)
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\NlaSvc\Parameters\Internet\EnableActiveProbing`: Configures enabling active probing.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\NlaSvc\Parameters\Internet\ActiveWebProbeHost`: Configures the active web probe host.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\NlaSvc\Parameters\Internet\ActiveWebProbePath`: Configures the active web probe path.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\NlaSvc\Parameters\Internet\ActiveWebProbeContent`: Configures the active web probe content.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\NlaSvc\Parameters\Internet\PassivePollPeriod`: Configures the passive poll period.
### Windows Reliability
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Reliability\TimeBetweenReports`: Configures the time between reliability reports.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Reliability\UploadDisabled`: Configures disabling reliability uploads.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Reliability\NoSample`: Configures disabling reliability sampling.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Reliability\ReportArchiveSize`: Configures the reliability report archive size.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Reliability\ReportQueueSize`: Configures the reliability report queue size.
### Windows Mobile Hotspot
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\MobileHotspot\AllowMobileHotspot`: Configures allowing mobile hotspot.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\MobileHotspot\MaxClients`: Configures the maximum number of clients for mobile hotspot.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\MobileHotspot\Timeout`: Configures the mobile hotspot timeout.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\MobileHotspot\SSID`: Configures the SSID for mobile hotspot.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\MobileHotspot\Password`: Configures the password for mobile hotspot.
### Windows Windows Ink Workspace
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsInkWorkspace\AllowWindowsInkWorkspace`: Configures allowing Windows Ink Workspace.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsInkWorkspace\AllowSuggestedAppsInWindowsInkWorkspace`: Configures allowing suggested apps in Windows Ink Workspace.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsInkWorkspace\AllowWindowsInkWorkspaceShortcutKeys`: Configures allowing shortcut keys in Windows Ink Workspace.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsInkWorkspace\AllowPenWorkspaceExperience`: Configures allowing the pen workspace experience.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsInkWorkspace\AllowWindowsInkWorkspaceOnLockScreen`: Configures allowing Windows Ink Workspace on the lock screen.
### Windows Search
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\Windows Search\PreventIndexingCertainPaths`: Configures preventing indexing of certain paths.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\Windows Search\PreventIndexingNetworkShares`: Configures preventing indexing of network shares.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\Windows Search\PreventIndexingRemovableDrives`: Configures preventing indexing of removable drives.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\Windows Search\AllowIndexingEncryptedStoresOrItems`: Configures allowing indexing of encrypted stores or items.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\Windows Search\DisableIndexing`: Configures disabling indexing.
### Windows Storage
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\DiskQuota\EnableDiskQuota`: Configures enabling disk quotas.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\DiskQuota\DefaultLimit`: Configures the default disk quota limit.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\DiskQuota\LogEventOnQuotaLimit`: Configures logging events when quota limit is reached.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\DiskQuota\EnableWarningLevel`: Configures enabling the quota warning level.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\DiskQuota\EnforceQuotaLimit`: Configures enforcing the disk quota limit.
### Windows System Restore
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows NT\SystemRestore\DisableSR`: Configures disabling system restore.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows NT\SystemRestore\DisableConfig`: Configures disabling system restore configuration.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows NT\SystemRestore\DisableMonitoring`: Configures disabling system restore monitoring.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows NT\SystemRestore\RPSessionInterval`: Configures the system restore session interval.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows NT\SystemRestore\RPLifeInterval`: Configures the system restore life interval.
### Windows User Profile
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList\ProfilesDirectory`: Configures the profiles directory.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList\DefaultUserProfile`: Configures the default user profile.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList\AllUsersProfile`: Configures the all users profile.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList\CentralProfile`: Configures the central profile location.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList\ProfileLoadTimeThreshold`: Configures the profile load time threshold.
### Windows Windows Defender
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows Defender\DisableAntiSpyware`: Configures disabling Windows Defender.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows Defender\DisableRoutinelyTakingAction`: Configures disabling routinely taking action on detected threats.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows Defender\PUAProtection`: Configures potentially unwanted application protection.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows Defender\AllowBehaviorMonitoring`: Configures allowing behavior monitoring.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows Defender\AllowOnAccessProtection`: Configures allowing on-access protection.
### Windows BitLocker
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\FVE\FDV\FDVAllowed`: Configures allowing BitLocker on fixed data drives.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\FVE\RDV\RDVAllowed`: Configures allowing BitLocker on removable data drives.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\FVE\OS\OSAllowed`: Configures allowing BitLocker on operating system drives.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\FVE\RequireStartupPIN`: Configures requiring a startup PIN for BitLocker.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\FVE\PreventMemoryOverwrite`: Configures preventing memory overwrite for BitLocker.
### Windows Application Compatibility
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Compatibility\AppCompatCache`: Configures application compatibility cache settings.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Compatibility\AppCompatFlags`: Configures application compatibility flags.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Compatibility\AppCompatMode`: Configures application compatibility mode.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Compatibility\AppCompatSettings`: Configures application compatibility settings.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Compatibility\AppCompatTimeout`: Configures application compatibility timeout settings.
### Windows Power Management
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Power\HibernateEnabled`: Configures enabling or disabling hibernation.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Power\HybridSleep`: Configures enabling or disabling hybrid sleep.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Power\ShutdownDisabled`: Configures disabling shutdown options.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Power\ButtonSwap`: Configures swapping power buttons' functions.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Power\CsEnabled`: Configures enabling or disabling Connected Standby.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Power\LidOpenWake`: Configures waking the computer when the lid is opened.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Power\PromptPasswordOnResume`: Configures prompting for a password on resume from sleep or hibernation.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Power\SystemAwayMode`: Configures enabling or disabling away mode.
### Windows Security Options
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System\DisableTaskMgr`: Configures disabling Task Manager.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System\DisableCMD`: Configures disabling Command Prompt.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System\EnableLUA`: Configures enabling or disabling User Account Control (UAC).
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System\FilterAdministratorToken`: Configures filtering the administrator token.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System\NoDispAppearancePage`: Configures hiding the Display Appearance tab.
### Windows Update
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\WindowsUpdate\AU\NoAutoUpdate`: Configures disabling automatic updates.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\WindowsUpdate\AU\AUOptions`: Configures automatic update options.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\WindowsUpdate\AU\ScheduledInstallDay`: Configures the scheduled install day for updates.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\WindowsUpdate\AU\ScheduledInstallTime`: Configures the scheduled install time for updates.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\WindowsUpdate\AU\NoAutoRebootWithLoggedOnUsers`: Configures preventing automatic reboot with logged-on users.
### Windows Event Log
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\EventLog\Application\CustomSD`: Configures the custom security descriptor for the application event log.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\EventLog\Security\CustomSD`: Configures the custom security descriptor for the security event log.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\EventLog\System\CustomSD`: Configures the custom security descriptor for the system event log.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\EventLog\Application\MaxSize`: Configures the maximum size for the application event log.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\EventLog\Security\MaxSize`: Configures the maximum size for the security event log.
### Windows Group Policy
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\System\GroupPolicyRefreshTime`: Configures the group policy refresh interval.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\System\GroupPolicyMinRefreshInterval`: Configures the minimum group policy refresh interval.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\System\GroupPolicyCache`: Configures caching of group policy settings.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\System\DisableGroupPolicy`: Configures disabling group policy application.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\System\EnableGroupPolicyLogging`: Configures enabling logging of group policy processing.
### Windows Task Scheduler
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{TaskID}\Path`: Configures the path to the task.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{TaskName}`: Configures task properties.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{TaskID}\Triggers`: Configures task triggers.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{TaskID}\Conditions`: Configures task conditions.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{TaskID}\Settings`: Configures task settings.
### Windows Remote Management (WinRM)
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\WinRM\Client\AllowBasic`: Configures allowing basic authentication.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\WinRM\Client\TrustedHosts`: Configures the list of trusted hosts.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\WinRM\Service\AllowUnencrypted`: Configures allowing unencrypted communication.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\WinRM\Service\AllowAutoConfig`: Configures allowing automatic configuration.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\WinRM\Service\IPv4Filter`: Configures the IPv4 filter for WinRM.
### Windows Windows Firewall
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\DomainProfile\EnableFirewall`: Configures enabling the firewall for domain profiles.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\StandardProfile\EnableFirewall`: Configures enabling the firewall for standard profiles.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\PublicProfile\EnableFirewall`: Configures enabling the firewall for public profiles.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\DomainProfile\AllowLocalPolicyMerge`: Configures allowing local policy merge for domain profiles.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\StandardProfile\AllowLocalPolicyMerge`: Configures allowing local policy merge for standard profiles.
### Windows Internet Explorer
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Internet Explorer\Main\DisableFirstRunCustomize`: Configures disabling the first run customize experience.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Internet Explorer\Main\DisableWelcomePage`: Configures disabling the welcome page.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Internet Explorer\Main\HomePage`: Configures setting the home page.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Internet Explorer\Main\NoProtectedModeBanner`: Configures disabling the protected mode banner.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Internet Explorer\Main\Default_Page_URL`: Configures setting the default page URL.
### Windows Windows Explorer
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\NoControlPanel`: Configures disabling access to the Control Panel.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\NoClose`: Configures disabling the close button on Explorer windows.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\NoWindowsUpdate`: Configures disabling access to Windows Update.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\NoNetworkConnections`: Configures disabling access to Network Connections.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\NoFolderOptions`: Configures disabling Folder Options in Explorer.
### Windows Remote Assistance
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows NT\Terminal Services\fAllowToGetHelp`: Configures allowing Remote Assistance.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows NT\Terminal Services\RemoteAssistance\SolicitedRemoteAssistance`: Configures settings for solicited remote assistance.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows NT\Terminal Services\RemoteAssistance\OfferRemoteAssistance`: Configures settings for offered remote assistance.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows NT\Terminal Services\RemoteAssistance\RAUnsolicit`: Configures settings for unsolicited remote assistance.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows NT\Terminal Services\RemoteAssistance\AllowFullControl`: Configures allowing full control during remote assistance.
### Windows System Restore
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore\DisableSR`: Configures disabling System Restore.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore\RestoreStatus`: Configures settings for restore status.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore\RPLifeInterval`: Configures the System Restore life interval.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore\RPSessionInterval`: Configures the System Restore session interval.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore\DiskPercent`: Configures the disk usage percentage for System Restore.
### Windows TPM (Trusted Platform Module)
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\TPM\UseTPM`: Configures the usage of TPM.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\TPM\AllowClear`: Configures allowing TPM to be cleared.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\TPM\TurnOnTPM`: Configures turning on TPM.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\TPM\EnableAutoProvisioning`: Configures enabling automatic provisioning of TPM.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\TPM\KeyAttestation`: Configures TPM key attestation settings.
### Windows Explorer Advanced Customizations
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\HideIcons`: Configures hiding desktop icons.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\ShowCompColor`: Configures showing compressed files in a different color.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\ShowSuperHidden`: Configures showing super hidden files (system files).
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\TaskbarAnimations`: Configures enabling/disabling taskbar animations.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\ListviewAlphaSelect`: Configures enabling/disabling list view alpha selection.
### Windows Error Reporting
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\Disabled`: Configures disabling error reporting.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\ForceQueue`: Configures forcing all reports to be queued (not sent immediately).
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\LoggingDisabled`: Configures disabling error logging.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\DontSendAdditionalData`: Configures not sending additional data with error reports.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Windows Error Reporting\AutoApproveOSDumps`: Configures automatic approval of OS crash dumps.
### Windows Network Settings
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\TcpMaxDataRetransmissions`: Configures the maximum number of times TCP retransmits data before dropping the connection.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\EnablePMTUDiscovery`: Configures enabling/disabling Path MTU Discovery.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\DeadGWDetectDefault`: Configures enabling/disabling Dead Gateway Detection.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Tcp1323Opts`: Configures enabling/disabling RFC 1323 options (Window Scaling and Timestamp options).
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\SackOpts`: Configures enabling/disabling Selective Acknowledgements (SACK).
### Windows Task Scheduler Advanced Settings
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\MaintenanceSettings\IdleDeadline`: Configures the idle deadline for maintenance tasks.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\MaintenanceSettings\IdleWait`: Configures the idle wait time for maintenance tasks.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{TaskID}\RetryOnFailure`: Configures retry settings for failed tasks.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{TaskID}\DeleteExpiredTaskAfter`: Configures the period after which expired tasks are deleted.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{TaskID}\Priority`: Configures the priority of the scheduled task.
### Windows Memory Management
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Session Manager\Memory Management\ClearPageFileAtShutdown`: Configures clearing the page file at shutdown.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Session Manager\Memory Management\DisablePagingExecutive`: Configures disabling paging of the executive files.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Session Manager\Memory Management\LargeSystemCache`: Configures enabling a large system cache.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Session Manager\Memory Management\SecondLevelDataCache`: Configures the size of the second level data cache.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Session Manager\Memory Management\PrefetchParameters\EnablePrefetcher`: Configures enabling/disabling the prefetcher.
### Windows Performance Monitoring
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\CollectTimeout`: Configures the timeout for collecting performance data.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\Disable Performance Counters`: Configures disabling performance counters.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\Last Counter`: Configures the index of the last performance counter used.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\Last Help`: Configures the index of the last performance counter help used.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\ExtCounterTestLevel`: Configures the level of testing for extended performance counters.
### Windows User Shell Folders
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders\Common Administrative Tools`: Configures the location of common administrative tools.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders\Common AppData`: Configures the location of common application data.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders\Common Desktop`: Configures the location of the common desktop.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders\Common Documents`: Configures the location of common documents.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders\Common Start Menu`: Configures the location of the common start menu.
### Windows Diagnostics
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\ScriptedDiagnosticsProvider\Enable`: Configures enabling or disabling scripted diagnostics.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\ScriptedDiagnosticsProvider\Execute`: Configures executing diagnostics scripts.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\ScriptedDiagnosticsProvider\AllowDiagnostics`: Configures allowing diagnostics to run.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\ScriptedDiagnosticsProvider\PreventDiagnostics`: Configures preventing diagnostics from running.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\ScriptedDiagnosticsProvider\DiagnosticsTimeout`: Configures the timeout for diagnostics scripts.
### Windows Cortana and Search
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\Windows Search\AllowCortana`: Configures allowing or disabling Cortana.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\Windows Search\AllowSearchToUseLocation`: Configures allowing search to use location.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\Windows Search\ConnectedSearchUseWeb`: Configures enabling or disabling web search.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\Windows Search\DisableWebSuggestions`: Configures disabling web suggestions in search.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\Windows Search\SafeSearchMode`: Configures the safe search mode for web searches.
### Windows Device Installation
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\DeviceInstall\Restrictions\AllowUserDeviceInstallation`: Configures allowing or restricting user device installations.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\DeviceInstall\Restrictions\AllowDeviceIDs`: Configures allowing specific device IDs for installation.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\DeviceInstall\Restrictions\DenyDeviceIDs`: Configures denying specific device IDs for installation.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\DeviceInstall\Restrictions\DenyDeviceClasses`: Configures denying specific device classes for installation.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\DeviceInstall\Restrictions\AllowDeviceClasses`: Configures allowing specific device classes for installation.
### Windows Backup and Restore
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\Backup\DisableBackup`: Configures disabling Windows Backup.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\Backup\DisableRestore`: Configures disabling Windows Restore.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\Backup\AutomaticBackup`: Configures enabling or disabling automatic backups.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\Backup\BackupFrequency`: Configures the frequency of automatic backups.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\Backup\BackupLocation`: Configures the location for storing backups.
### Windows Windows Ink Workspace
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsInkWorkspace\AllowWindowsInkWorkspace`: Configures enabling or disabling Windows Ink Workspace.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsInkWorkspace\AllowPenWorkspace`: Configures enabling or disabling the pen workspace.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsInkWorkspace\AllowAppSuggestions`: Configures allowing app suggestions in the workspace.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsInkWorkspace\AllowSnip`: Configures enabling or disabling screen snip in the workspace.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsInkWorkspace\AllowWritingPanel`: Configures enabling or disabling the writing panel.
### Windows Boot Configuration
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Session Manager\BootExecute`: Configures commands to be executed during boot.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Session Manager\Memory Management\PrefetchParameters\EnableBootTrace`: Configures enabling/disabling boot tracing.
### Windows Cryptography
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Cryptography\Configuration\SSL\00010002`: Configures SSL protocol settings.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Defaults\Provider Types\Type 001`: Configures default cryptographic provider types.
### Windows Device Configuration
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\DeviceInstall\Parameters\DeviceInstallTimeout`: Configures the timeout for device installations.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\DeviceInstall\Parameters\ClassInstallTimeout`: Configures the timeout for class installations.
### Windows Device Interface
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\DeviceClasses`: Configures device class settings.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\DeviceInterface`: Configures device interface settings.
### Windows Kernel
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Session Manager\Kernel\DisablePagingExecutive`: Configures disabling paging of the kernel.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Session Manager\Kernel\LargeSystemCache`: Configures enabling a large system cache.
### Windows Logon
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\AutoAdminLogon`: Configures automatic logon settings.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\DefaultUserName`: Configures the default username for logon.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\DefaultPassword`: Configures the default password for logon.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\DisableCAD`: Configures disabling Ctrl+Alt+Del requirement for logon.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\LegalNoticeCaption`: Configures the caption for the legal notice.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\LegalNoticeText`: Configures the text for the legal notice.
### Windows Remote Desktop
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server\fDenyTSConnections`: Configures enabling/disabling remote desktop connections.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server\WinStations\RDP-Tcp\SecurityLayer`: Configures the security layer for RDP connections.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server\WinStations\RDP-Tcp\UserAuthentication`: Configures user authentication for RDP connections.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server\WinStations\RDP-Tcp\PortNumber`: Configures the port number for RDP connections.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server\TSEnabled`: Configures enabling Terminal Services.
### Windows Networking
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Netlogon\Parameters\DisablePasswordChange`: Configures disabling automatic machine account password change.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Netlogon\Parameters\RequireStrongKey`: Configures requiring a strong key for Netlogon.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\LanmanServer\Parameters\AutoDisconnect`: Configures the autodisconnect timeout for network sessions.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\LanmanWorkstation\Parameters\DisableBandwidthThrottling`: Configures disabling bandwidth throttling.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\LanmanWorkstation\Parameters\EnableSecuritySignature`: Configures enabling security signatures.
### Windows Performance
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Session Manager\Memory Management\ClearPageFileAtShutdown`: Configures clearing the page file at shutdown.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Session Manager\Memory Management\PagingFiles`: Configures the paging file settings.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Session Manager\Memory Management\SystemPages`: Configures the number of system pages.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Session Manager\Memory Management\IoPageLockLimit`: Configures the I/O page lock limit.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Session Manager\Executive\AdditionalCriticalWorkerThreads`: Configures additional critical worker threads.
### Windows PowerShell
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PowerShell\1\ShellIds\Microsoft.PowerShell`: Configures PowerShell shell settings.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PowerShell\1\PowerShellEngine`: Configures PowerShell engine settings.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\PowerShell\ScriptBlockLogging`: Configures enabling/disabling PowerShell script block logging.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\PowerShell\Transcription`: Configures enabling/disabling PowerShell transcription.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\PowerShell\ModuleLogging`: Configures enabling/disabling PowerShell module logging.
### Windows System
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Session Manager\SubSystems\Optional`: Configures optional subsystems.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Session Manager\SubSystems\Posix`: Configures POSIX subsystem.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Session Manager\SubSystems\Os2`: Configures OS/2 subsystem.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa\DisableDomainCreds`: Configures disabling domain credentials.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa\RestrictAnonymous`: Configures restricting anonymous access.
### Windows Telemetry
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\DataCollection\AllowTelemetry`: Configures allowing or restricting telemetry data collection.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\DataCollection\MaxTelemetryAllowed`: Configures the maximum allowed telemetry level.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\DataCollection\AllowTelemetry`: Configures telemetry settings for the current version of Windows.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\DataCollection\MaxTelemetryAllowed`: Configures the maximum telemetry settings for the current version.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\DataCollection\CommercialId`: Configures the commercial ID for telemetry.
### Windows Windows Media Player
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\MediaPlayer\Preferences\HME\DisableAutoScan`: Configures disabling automatic media scanning.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\MediaPlayer\Preferences\HME\EnableErrorReporting`: Configures enabling error reporting.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\MediaPlayer\Preferences\HME\UseHTTPStreaming`: Configures using HTTP for media streaming.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\MediaPlayer\Preferences\HME\EnablePromptOnPlayerLaunch`: Configures prompting on player launch.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\MediaPlayer\Preferences\HME\UseIndexingService`: Configures using the indexing service for media.
### Windows Windows Defender
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows Defender\DisableAntiSpyware`: Configures disabling Windows Defender AntiSpyware.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows Defender\DisableRoutinelyTakingAction`: Configures disabling routine actions by Windows Defender.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows Defender\DisableRealtimeMonitoring`: Configures disabling real-time monitoring.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows Defender\Spynet\SpynetReporting`: Configures Windows Defender Spynet reporting.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows Defender\MpEngine\MpEnablePus`: Configures enabling Potentially Unwanted Software detection.
### Windows Windows Time
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\W32Time\TimeProviders\NtpClient\SpecialPollInterval`: Configures the special poll interval for the NTP client.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\W32Time\Config\MaxNegPhaseCorrection`: Configures the maximum negative phase correction for time synchronization.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\W32Time\Config\MaxPosPhaseCorrection`: Configures the maximum positive phase correction for time synchronization.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\W32Time\Config\FrequencyCorrectRate`: Configures the frequency correction rate.
* `HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\W32Time\Parameters\Type`: Configures the time synchronization type.
### Windows User Profiles
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList\ProfilesDirectory`: Configures the location of user profiles.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList\Default`: Configures the default profile location.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList\AllUsersProfile`: Configures the location of the All Users profile.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList\LocalServiceProfile`: Configures the location of the Local Service profile.
* `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList\NetworkServiceProfile`: Configures the location of the Network Service profile.
Chrome Resgistry
Enable Manifest V2 Extensions. Will work until June 2025.
HKEY_LOCAL_MACHINE\Software\Policies\Google\Chrome\ExtensionManifestV2Availability: 2 (REG_DWORD) to enable Manifest V2 extensions.
- https://developer.chrome.com/docs/extensions/develop/migrate/mv2-deprecation-timeline
- https://chromeenterprise.google/policies/?hl=es-419#ExtensionManifestV2Availability