7.2 Viewing GPO Setting Information

The GPO Settings Report is an important and useful tool. The GPO Settings Report gives you these abilities:

  • Maintains copies of the configured settings for each GPO in your organization as an HTML file.

  • Fully documents the GPO as part of a GPO change and release process. This helps you assure compliance with internal policies and regulatory requirements.

7.2.1 Viewing the GPO Settings Report

You can view the GPO Settings Report for a GPO in the GP Repository or in Active Directory.


  • GPA may take a few moments to generate the GPO Settings Report for the first time.

  • If you installed the GPA Console on a computer that supports managing ADMX files, before you generate the GPO Settings report for the first time for a GPO in the GP Repository, synchronize the ADMX and ADML files from the central store. If you do not synchronize the files, the GPO Settings report cannot display the administrative template policies. For more information about synchronizing the files, see Section 5.11.3, Synchronizing or Exporting ADMX Files from the Central Store.

  • If you make changes to ADMX files, close and re-open the GPA Console before viewing the GPO Settings Report.

  • When using multiple domain controllers (DCs), if you generate a settings report, the GPO Console creates a container in the primary domain controller (PDC) to create the GPO Settings Report. The other DCs on the domain are not contacted when this report is generated.

To view the GPO Settings Report:

  1. In the left pane, expand GP Repository or GP Explorer.

  2. Expand the appropriate domain hierarchy to the GPO for which you want to generate the report.

  3. In the right pane, click the Settings tab.

7.2.2 GPO Settings Report Layout

The GPO Settings Report contains the same sections as GPMC reports. The GPO Settings Report is divided into the following main sections:


This section contains information about the GPO itself, such as the GPO owner, its GUID, the GP Repository version, GPO source, and its status. The Details section also contains information about the change history of the GPO, including when it was created, when it was last modified, and how many revisions have been made to the settings contained in the GPO. This field is only available for GPOs in the GP Repository.


This section contains the following information:

  • The name of the Active Directory objects (containers) to which the GPO is linked

  • The GPO‑specific properties of the container (Enforced and Link Status)

  • The path to the Active Directory containers to which the GPO is linked

Security Filtering

This section contains a list of the users, groups, and computers to which the GPO applies.

WMI Filtering

This section contains the name and description of the WMI filter associated with the GPO.


This section contains the following summary information:

  • A list of security groups and users who have security permissions for the GPO

  • The security permissions set on each user or group, such as Read, Edit settings, Delete, and Modify security

GPO Settings

This section provides several subsections that summarize the GPO settings. The subsections vary depending on if the GPA Console is installed on a computer supporting ADMX files or Group Policy Preferences.