Unable to disable Microsoft Store in domain environmentGroup Policy installation failed error 1274GPO Computer Settings not updating. Default Domain policy and all User Settings work fineUnable to update user policy via VPNLocal Group Policy not updating. RSOP and GPResult show stale dataSBS 2011 Group policy won't update/apply properlyGPO: Run PowerShell logon script after explorer.exe has been loadedgpo implementation windows server 2012r2Group Policies Not Applied At Startup with SSD PCPrinter Group Policy not showing up on updated Windows computers?Is pointing DNS to Domain Controller required for GPOs to work?

What fields between the rationals and the reals allow a good notion of 2D distance?

How can I, as DM, avoid the Conga Line of Death occurring when implementing some form of flanking rule?

What is the highest possible scrabble score for placing a single tile

Why is it that I can sometimes guess the next note?

How do I tell my boss that I'm quitting soon, especially given that a colleague just left this week

When were female captains banned from Starfleet?

Which was the first story featuring espers?

Does Doodling or Improvising on the Piano Have Any Benefits?

Why do Radio Buttons not fill the entire outer circle?

Does an advisor owe his/her student anything? Will an advisor keep a PhD student only out of pity?

Multiplicative persistence

US tourist/student visa

Which Article Helped Get Rid of Technobabble in RPGs?

Make a Bowl of Alphabet Soup

PTIJ: Why is Haman obsessed with Bose?

How can I write humor as character trait?

What is Cash Advance APR?

I found an audio circuit and I built it just fine, but I find it a bit too quiet. How do I amplify the output so that it is a bit louder?

What is the English pronunciation of "pain au chocolat"?

What to do when eye contact makes your coworker uncomfortable?

Why is the "ls" command showing permissions of files in a FAT32 partition?

Can I cause damage to electrical appliances by unplugging them when they are turned on?

The IT department bottlenecks progress, how should I handle this?

Why should universal income be universal?



Unable to disable Microsoft Store in domain environment


Group Policy installation failed error 1274GPO Computer Settings not updating. Default Domain policy and all User Settings work fineUnable to update user policy via VPNLocal Group Policy not updating. RSOP and GPResult show stale dataSBS 2011 Group policy won't update/apply properlyGPO: Run PowerShell logon script after explorer.exe has been loadedgpo implementation windows server 2012r2Group Policies Not Applied At Startup with SSD PCPrinter Group Policy not showing up on updated Windows computers?Is pointing DNS to Domain Controller required for GPOs to work?













6















In AD, I create a new OU and moved my username into that OU so I can do testing with my own domain user account.



I then created a new GPO and enabled the following:



Computer Configuration > Policies > Administrative Templates > Windows Components > Store > Turn off the Store application = Enabled


I went to my local computer, connected it to the domain, logged in using my domain login details, Loaded CMD as administrator and typed



gpupdate



It displayed the following output:



C:Windows>gpupdate
Updating policy...

Computer Policy update has completed successfully.

The following warnings were encountered during computer policy processing:

The Group Policy Client Side Extension Software Installation was unable to apply one or more settings because the changes must be processed before system startup or user logon. The system will wait for Group Policy processing to finish completely before the next startup or logon for this user, and this may result in slow startup and boot performance.
User Policy update has completed successfully.

For more detailed information, review the event log or run GPRESULT /H GPReport.html from the command line to access information about Group Policy results.


C:Windows>


I tried loading Microsoft Store, but it still loads.



I then tried the following command:



gpupdate /force



The following output was displayed:



C:Windows>gpupdate /force
Updating policy...

Computer Policy update has completed successfully.

The following warnings were encountered during computer policy processing:

The Group Policy Client Side Extension Software Installation was unable to apply one or more settings because the changes must be processed before system startup or user logon. The system will wait for Group Policy processing to finish completely before the next startup or logon for this user, and this may result in slow startup and boot performance.
User Policy update has completed successfully.

For more detailed information, review the event log or run GPRESULT /H GPReport.html from the command line to access information about Group Policy results.

Certain Computer policies are enabled that can only run during startup.

OK to restart? (Y/N)Y
Restarting the computer...
..

C:Windows>


After the computer has restarted, it still loads Microsoft Store.



I have checked GPReport.html, and I can't see any mention of the GPO to disable the Microsoft Store.



Any ideas why this is not working?




Environment details:



Client computer on domain:



  • Windows 10 Enterprise (Desktop client computers connected to the
    domain)

On domain servers:



  • Exchange 2013

  • Active Directory 6.3.9xx









share|improve this question















migrated from superuser.com yesterday


This question came from our site for computer enthusiasts and power users.






















    6















    In AD, I create a new OU and moved my username into that OU so I can do testing with my own domain user account.



    I then created a new GPO and enabled the following:



    Computer Configuration > Policies > Administrative Templates > Windows Components > Store > Turn off the Store application = Enabled


    I went to my local computer, connected it to the domain, logged in using my domain login details, Loaded CMD as administrator and typed



    gpupdate



    It displayed the following output:



    C:Windows>gpupdate
    Updating policy...

    Computer Policy update has completed successfully.

    The following warnings were encountered during computer policy processing:

    The Group Policy Client Side Extension Software Installation was unable to apply one or more settings because the changes must be processed before system startup or user logon. The system will wait for Group Policy processing to finish completely before the next startup or logon for this user, and this may result in slow startup and boot performance.
    User Policy update has completed successfully.

    For more detailed information, review the event log or run GPRESULT /H GPReport.html from the command line to access information about Group Policy results.


    C:Windows>


    I tried loading Microsoft Store, but it still loads.



    I then tried the following command:



    gpupdate /force



    The following output was displayed:



    C:Windows>gpupdate /force
    Updating policy...

    Computer Policy update has completed successfully.

    The following warnings were encountered during computer policy processing:

    The Group Policy Client Side Extension Software Installation was unable to apply one or more settings because the changes must be processed before system startup or user logon. The system will wait for Group Policy processing to finish completely before the next startup or logon for this user, and this may result in slow startup and boot performance.
    User Policy update has completed successfully.

    For more detailed information, review the event log or run GPRESULT /H GPReport.html from the command line to access information about Group Policy results.

    Certain Computer policies are enabled that can only run during startup.

    OK to restart? (Y/N)Y
    Restarting the computer...
    ..

    C:Windows>


    After the computer has restarted, it still loads Microsoft Store.



    I have checked GPReport.html, and I can't see any mention of the GPO to disable the Microsoft Store.



    Any ideas why this is not working?




    Environment details:



    Client computer on domain:



    • Windows 10 Enterprise (Desktop client computers connected to the
      domain)

    On domain servers:



    • Exchange 2013

    • Active Directory 6.3.9xx









    share|improve this question















    migrated from superuser.com yesterday


    This question came from our site for computer enthusiasts and power users.




















      6












      6








      6


      1






      In AD, I create a new OU and moved my username into that OU so I can do testing with my own domain user account.



      I then created a new GPO and enabled the following:



      Computer Configuration > Policies > Administrative Templates > Windows Components > Store > Turn off the Store application = Enabled


      I went to my local computer, connected it to the domain, logged in using my domain login details, Loaded CMD as administrator and typed



      gpupdate



      It displayed the following output:



      C:Windows>gpupdate
      Updating policy...

      Computer Policy update has completed successfully.

      The following warnings were encountered during computer policy processing:

      The Group Policy Client Side Extension Software Installation was unable to apply one or more settings because the changes must be processed before system startup or user logon. The system will wait for Group Policy processing to finish completely before the next startup or logon for this user, and this may result in slow startup and boot performance.
      User Policy update has completed successfully.

      For more detailed information, review the event log or run GPRESULT /H GPReport.html from the command line to access information about Group Policy results.


      C:Windows>


      I tried loading Microsoft Store, but it still loads.



      I then tried the following command:



      gpupdate /force



      The following output was displayed:



      C:Windows>gpupdate /force
      Updating policy...

      Computer Policy update has completed successfully.

      The following warnings were encountered during computer policy processing:

      The Group Policy Client Side Extension Software Installation was unable to apply one or more settings because the changes must be processed before system startup or user logon. The system will wait for Group Policy processing to finish completely before the next startup or logon for this user, and this may result in slow startup and boot performance.
      User Policy update has completed successfully.

      For more detailed information, review the event log or run GPRESULT /H GPReport.html from the command line to access information about Group Policy results.

      Certain Computer policies are enabled that can only run during startup.

      OK to restart? (Y/N)Y
      Restarting the computer...
      ..

      C:Windows>


      After the computer has restarted, it still loads Microsoft Store.



      I have checked GPReport.html, and I can't see any mention of the GPO to disable the Microsoft Store.



      Any ideas why this is not working?




      Environment details:



      Client computer on domain:



      • Windows 10 Enterprise (Desktop client computers connected to the
        domain)

      On domain servers:



      • Exchange 2013

      • Active Directory 6.3.9xx









      share|improve this question
















      In AD, I create a new OU and moved my username into that OU so I can do testing with my own domain user account.



      I then created a new GPO and enabled the following:



      Computer Configuration > Policies > Administrative Templates > Windows Components > Store > Turn off the Store application = Enabled


      I went to my local computer, connected it to the domain, logged in using my domain login details, Loaded CMD as administrator and typed



      gpupdate



      It displayed the following output:



      C:Windows>gpupdate
      Updating policy...

      Computer Policy update has completed successfully.

      The following warnings were encountered during computer policy processing:

      The Group Policy Client Side Extension Software Installation was unable to apply one or more settings because the changes must be processed before system startup or user logon. The system will wait for Group Policy processing to finish completely before the next startup or logon for this user, and this may result in slow startup and boot performance.
      User Policy update has completed successfully.

      For more detailed information, review the event log or run GPRESULT /H GPReport.html from the command line to access information about Group Policy results.


      C:Windows>


      I tried loading Microsoft Store, but it still loads.



      I then tried the following command:



      gpupdate /force



      The following output was displayed:



      C:Windows>gpupdate /force
      Updating policy...

      Computer Policy update has completed successfully.

      The following warnings were encountered during computer policy processing:

      The Group Policy Client Side Extension Software Installation was unable to apply one or more settings because the changes must be processed before system startup or user logon. The system will wait for Group Policy processing to finish completely before the next startup or logon for this user, and this may result in slow startup and boot performance.
      User Policy update has completed successfully.

      For more detailed information, review the event log or run GPRESULT /H GPReport.html from the command line to access information about Group Policy results.

      Certain Computer policies are enabled that can only run during startup.

      OK to restart? (Y/N)Y
      Restarting the computer...
      ..

      C:Windows>


      After the computer has restarted, it still loads Microsoft Store.



      I have checked GPReport.html, and I can't see any mention of the GPO to disable the Microsoft Store.



      Any ideas why this is not working?




      Environment details:



      Client computer on domain:



      • Windows 10 Enterprise (Desktop client computers connected to the
        domain)

      On domain servers:



      • Exchange 2013

      • Active Directory 6.3.9xx






      active-directory group-policy windows-10






      share|improve this question















      share|improve this question













      share|improve this question




      share|improve this question








      edited yesterday









      Sembee

      2,7621411




      2,7621411










      asked yesterday









      oshirowanenoshirowanen

      192112




      192112




      migrated from superuser.com yesterday


      This question came from our site for computer enthusiasts and power users.









      migrated from superuser.com yesterday


      This question came from our site for computer enthusiasts and power users.






















          2 Answers
          2






          active

          oldest

          votes


















          9















          In AD, I create a new OU and moved my username into that OU so I can
          do testing with my own domain user account.




          You can't link a Computer Setting GPO to a User account, you must link it to a Computer Account.




          I have checked GPReport.html, and I can't see any mention of the GPO
          to disable the Microsoft Store.




          As a result, GPResult don't show the GPO linked, it's normal.



          Make sure the GPO is enforced to the correct OU where the computer account is to have the settings applied.



          For me it's a simple error from there. Why ? because if it would be a security group error or a WMI filter, the GPO would be listed inside GPResult, but with an access denied error.






          share|improve this answer




















          • 1





            They applied a Computer policy to an OU with their User account.

            – Greg Askew
            yesterday






          • 1





            @GregAskew oh, yeah, just re-read, it's even wrote in the first line, will edit

            – yagmoth555
            yesterday


















          6














          I'm not sure why it is not working but my AD environment consists of Win 10 Pro machines and I wanted to accomplish the same thing. I ended up having to utilize software
          restriction policies.



          Computer Config>Windows Settings>Software Restriction Policies>Additional Rules


          then add the following:



          %programfiles%WindowsAppsMicrosoft.WindowsStore*

          With the security level set to Disallowed



          Pic of the GPO settings blocking Store, XBOX, Skype, Windows Mail



          And the end result:



          What the End User will see when they click the Store App



          Hope this helps :)






          share|improve this answer










          New contributor




          D3FR4G is a new contributor to this site. Take care in asking for clarification, commenting, and answering.
          Check out our Code of Conduct.



















            Your Answer








            StackExchange.ready(function()
            var channelOptions =
            tags: "".split(" "),
            id: "2"
            ;
            initTagRenderer("".split(" "), "".split(" "), channelOptions);

            StackExchange.using("externalEditor", function()
            // Have to fire editor after snippets, if snippets enabled
            if (StackExchange.settings.snippets.snippetsEnabled)
            StackExchange.using("snippets", function()
            createEditor();
            );

            else
            createEditor();

            );

            function createEditor()
            StackExchange.prepareEditor(
            heartbeatType: 'answer',
            autoActivateHeartbeat: false,
            convertImagesToLinks: true,
            noModals: true,
            showLowRepImageUploadWarning: true,
            reputationToPostImages: 10,
            bindNavPrevention: true,
            postfix: "",
            imageUploader:
            brandingHtml: "Powered by u003ca class="icon-imgur-white" href="https://imgur.com/"u003eu003c/au003e",
            contentPolicyHtml: "User contributions licensed under u003ca href="https://creativecommons.org/licenses/by-sa/3.0/"u003ecc by-sa 3.0 with attribution requiredu003c/au003e u003ca href="https://stackoverflow.com/legal/content-policy"u003e(content policy)u003c/au003e",
            allowUrls: true
            ,
            onDemand: true,
            discardSelector: ".discard-answer"
            ,immediatelyShowMarkdownHelp:true
            );



            );













            draft saved

            draft discarded


















            StackExchange.ready(
            function ()
            StackExchange.openid.initPostLogin('.new-post-login', 'https%3a%2f%2fserverfault.com%2fquestions%2f959149%2funable-to-disable-microsoft-store-in-domain-environment%23new-answer', 'question_page');

            );

            Post as a guest















            Required, but never shown

























            2 Answers
            2






            active

            oldest

            votes








            2 Answers
            2






            active

            oldest

            votes









            active

            oldest

            votes






            active

            oldest

            votes









            9















            In AD, I create a new OU and moved my username into that OU so I can
            do testing with my own domain user account.




            You can't link a Computer Setting GPO to a User account, you must link it to a Computer Account.




            I have checked GPReport.html, and I can't see any mention of the GPO
            to disable the Microsoft Store.




            As a result, GPResult don't show the GPO linked, it's normal.



            Make sure the GPO is enforced to the correct OU where the computer account is to have the settings applied.



            For me it's a simple error from there. Why ? because if it would be a security group error or a WMI filter, the GPO would be listed inside GPResult, but with an access denied error.






            share|improve this answer




















            • 1





              They applied a Computer policy to an OU with their User account.

              – Greg Askew
              yesterday






            • 1





              @GregAskew oh, yeah, just re-read, it's even wrote in the first line, will edit

              – yagmoth555
              yesterday















            9















            In AD, I create a new OU and moved my username into that OU so I can
            do testing with my own domain user account.




            You can't link a Computer Setting GPO to a User account, you must link it to a Computer Account.




            I have checked GPReport.html, and I can't see any mention of the GPO
            to disable the Microsoft Store.




            As a result, GPResult don't show the GPO linked, it's normal.



            Make sure the GPO is enforced to the correct OU where the computer account is to have the settings applied.



            For me it's a simple error from there. Why ? because if it would be a security group error or a WMI filter, the GPO would be listed inside GPResult, but with an access denied error.






            share|improve this answer




















            • 1





              They applied a Computer policy to an OU with their User account.

              – Greg Askew
              yesterday






            • 1





              @GregAskew oh, yeah, just re-read, it's even wrote in the first line, will edit

              – yagmoth555
              yesterday













            9












            9








            9








            In AD, I create a new OU and moved my username into that OU so I can
            do testing with my own domain user account.




            You can't link a Computer Setting GPO to a User account, you must link it to a Computer Account.




            I have checked GPReport.html, and I can't see any mention of the GPO
            to disable the Microsoft Store.




            As a result, GPResult don't show the GPO linked, it's normal.



            Make sure the GPO is enforced to the correct OU where the computer account is to have the settings applied.



            For me it's a simple error from there. Why ? because if it would be a security group error or a WMI filter, the GPO would be listed inside GPResult, but with an access denied error.






            share|improve this answer
















            In AD, I create a new OU and moved my username into that OU so I can
            do testing with my own domain user account.




            You can't link a Computer Setting GPO to a User account, you must link it to a Computer Account.




            I have checked GPReport.html, and I can't see any mention of the GPO
            to disable the Microsoft Store.




            As a result, GPResult don't show the GPO linked, it's normal.



            Make sure the GPO is enforced to the correct OU where the computer account is to have the settings applied.



            For me it's a simple error from there. Why ? because if it would be a security group error or a WMI filter, the GPO would be listed inside GPResult, but with an access denied error.







            share|improve this answer














            share|improve this answer



            share|improve this answer








            edited yesterday

























            answered yesterday









            yagmoth555yagmoth555

            12.2k31842




            12.2k31842







            • 1





              They applied a Computer policy to an OU with their User account.

              – Greg Askew
              yesterday






            • 1





              @GregAskew oh, yeah, just re-read, it's even wrote in the first line, will edit

              – yagmoth555
              yesterday












            • 1





              They applied a Computer policy to an OU with their User account.

              – Greg Askew
              yesterday






            • 1





              @GregAskew oh, yeah, just re-read, it's even wrote in the first line, will edit

              – yagmoth555
              yesterday







            1




            1





            They applied a Computer policy to an OU with their User account.

            – Greg Askew
            yesterday





            They applied a Computer policy to an OU with their User account.

            – Greg Askew
            yesterday




            1




            1





            @GregAskew oh, yeah, just re-read, it's even wrote in the first line, will edit

            – yagmoth555
            yesterday





            @GregAskew oh, yeah, just re-read, it's even wrote in the first line, will edit

            – yagmoth555
            yesterday













            6














            I'm not sure why it is not working but my AD environment consists of Win 10 Pro machines and I wanted to accomplish the same thing. I ended up having to utilize software
            restriction policies.



            Computer Config>Windows Settings>Software Restriction Policies>Additional Rules


            then add the following:



            %programfiles%WindowsAppsMicrosoft.WindowsStore*

            With the security level set to Disallowed



            Pic of the GPO settings blocking Store, XBOX, Skype, Windows Mail



            And the end result:



            What the End User will see when they click the Store App



            Hope this helps :)






            share|improve this answer










            New contributor




            D3FR4G is a new contributor to this site. Take care in asking for clarification, commenting, and answering.
            Check out our Code of Conduct.
























              6














              I'm not sure why it is not working but my AD environment consists of Win 10 Pro machines and I wanted to accomplish the same thing. I ended up having to utilize software
              restriction policies.



              Computer Config>Windows Settings>Software Restriction Policies>Additional Rules


              then add the following:



              %programfiles%WindowsAppsMicrosoft.WindowsStore*

              With the security level set to Disallowed



              Pic of the GPO settings blocking Store, XBOX, Skype, Windows Mail



              And the end result:



              What the End User will see when they click the Store App



              Hope this helps :)






              share|improve this answer










              New contributor




              D3FR4G is a new contributor to this site. Take care in asking for clarification, commenting, and answering.
              Check out our Code of Conduct.






















                6












                6








                6







                I'm not sure why it is not working but my AD environment consists of Win 10 Pro machines and I wanted to accomplish the same thing. I ended up having to utilize software
                restriction policies.



                Computer Config>Windows Settings>Software Restriction Policies>Additional Rules


                then add the following:



                %programfiles%WindowsAppsMicrosoft.WindowsStore*

                With the security level set to Disallowed



                Pic of the GPO settings blocking Store, XBOX, Skype, Windows Mail



                And the end result:



                What the End User will see when they click the Store App



                Hope this helps :)






                share|improve this answer










                New contributor




                D3FR4G is a new contributor to this site. Take care in asking for clarification, commenting, and answering.
                Check out our Code of Conduct.










                I'm not sure why it is not working but my AD environment consists of Win 10 Pro machines and I wanted to accomplish the same thing. I ended up having to utilize software
                restriction policies.



                Computer Config>Windows Settings>Software Restriction Policies>Additional Rules


                then add the following:



                %programfiles%WindowsAppsMicrosoft.WindowsStore*

                With the security level set to Disallowed



                Pic of the GPO settings blocking Store, XBOX, Skype, Windows Mail



                And the end result:



                What the End User will see when they click the Store App



                Hope this helps :)







                share|improve this answer










                New contributor




                D3FR4G is a new contributor to this site. Take care in asking for clarification, commenting, and answering.
                Check out our Code of Conduct.









                share|improve this answer



                share|improve this answer








                edited yesterday





















                New contributor




                D3FR4G is a new contributor to this site. Take care in asking for clarification, commenting, and answering.
                Check out our Code of Conduct.









                answered yesterday









                D3FR4GD3FR4G

                612




                612




                New contributor




                D3FR4G is a new contributor to this site. Take care in asking for clarification, commenting, and answering.
                Check out our Code of Conduct.





                New contributor





                D3FR4G is a new contributor to this site. Take care in asking for clarification, commenting, and answering.
                Check out our Code of Conduct.






                D3FR4G is a new contributor to this site. Take care in asking for clarification, commenting, and answering.
                Check out our Code of Conduct.



























                    draft saved

                    draft discarded
















































                    Thanks for contributing an answer to Server Fault!


                    • Please be sure to answer the question. Provide details and share your research!

                    But avoid


                    • Asking for help, clarification, or responding to other answers.

                    • Making statements based on opinion; back them up with references or personal experience.

                    To learn more, see our tips on writing great answers.




                    draft saved


                    draft discarded














                    StackExchange.ready(
                    function ()
                    StackExchange.openid.initPostLogin('.new-post-login', 'https%3a%2f%2fserverfault.com%2fquestions%2f959149%2funable-to-disable-microsoft-store-in-domain-environment%23new-answer', 'question_page');

                    );

                    Post as a guest















                    Required, but never shown





















































                    Required, but never shown














                    Required, but never shown












                    Required, but never shown







                    Required, but never shown

































                    Required, but never shown














                    Required, but never shown












                    Required, but never shown







                    Required, but never shown







                    Popular posts from this blog

                    getting Checkpoint VPN SSL Network Extender working in the command lineHow to connect to CheckPoint VPN on Ubuntu 18.04LTS?Will the Linux ( red-hat ) Open VPNC Client connect to checkpoint or nortel VPN gateways?VPN client for linux machine + support checkpoint gatewayVPN SSL Network Extender in FirefoxLinux Checkpoint SNX tool configuration issuesCheck Point - Connect under Linux - snx + OTPSNX VPN Ububuntu 18.XXUsing Checkpoint VPN SSL Network Extender CLI with certificateVPN with network manager (nm-applet) is not workingWill the Linux ( red-hat ) Open VPNC Client connect to checkpoint or nortel VPN gateways?VPN client for linux machine + support checkpoint gatewayImport VPN config files to NetworkManager from command lineTrouble connecting to VPN using network-manager, while command line worksStart a VPN connection with PPTP protocol on command linestarting a docker service daemon breaks the vpn networkCan't connect to vpn with Network-managerVPN SSL Network Extender in FirefoxUsing Checkpoint VPN SSL Network Extender CLI with certificate

                    Cannot Extend partition with GParted The 2019 Stack Overflow Developer Survey Results Are In Announcing the arrival of Valued Associate #679: Cesar Manara Planned maintenance scheduled April 17/18, 2019 at 00:00UTC (8:00pm US/Eastern) 2019 Community Moderator Election ResultsCan't increase partition size with GParted?GParted doesn't recognize the unallocated space after my current partitionWhat is the best way to add unallocated space located before to Ubuntu 12.04 partition with GParted live?I can't figure out how to extend my Arch home partition into free spaceGparted Linux Mint 18.1 issueTrying to extend but swap partition is showing as Unknown in Gparted, shows proper from fdiskRearrange partitions in gparted to extend a partitionUnable to extend partition even though unallocated space is next to it using GPartedAllocate free space to root partitiongparted: how to merge unallocated space with a partition

                    Marilyn Monroe Ny fiainany manokana | Jereo koa | Meny fitetezanafanitarana azy.