FSProtect
  • Introduction
    • FSProtect - Active Directory Security Assessment
    • Glossary
    • Architecture
    • Requirements
    • Installation
    • Update
  • Scans
    • New Scan
    • Scans
    • Policies
  • Dashboard
  • Trend Insights
  • Issues
  • Impacts
  • Attack Surface
    • Forests
    • Domains
    • Computers
    • Users
    • Groups
    • GPOs
    • OUs
    • MSAs
    • GMSAs
    • Local Users
    • Local Groups
    • Certificate Authorities
    • Certificate Templates
    • CA Certificates
  • GPO Audit
    • GPO Comparison
    • RSoP Comparison
    • Custom Baselines
  • Integrations
    • CyberArk
    • Mail
    • Jira
  • Search & Reports
    • Domain
    • Computer
    • User
    • Group
    • GPO
    • OU
    • ManagedServiceAccount
    • GroupManagedServiceAccount
    • LocalUser
    • LocalGroup
    • CertificateAuthority
    • CertificateTemplate
    • CACertificate
    • SPN
    • SmbShare
  • Health Check
  • Visualize
  • Settings
    • User Settings
    • LDAP Authentication Settings
    • Roles and Permissions
    • Token Expiration Settings
  • Share Audit
    • Summary
    • Secrets
    • Settings
Powered by GitBook
On this page
  • RSoP on Computers
  • RSoP on Users
  • RSoP on Organizational Units
  • RSoP Details

Was this helpful?

  1. GPO Audit

RSoP Comparison

PreviousGPO ComparisonNextCustom Baselines

Last updated 8 months ago

Was this helpful?

Generally, multiple Group Policy Objects apply the same settings with different values.

It can be difficult to determine the final value of policy settings by analyzing link order, precedence, inheritance, and other factors.

The RSoP comparison feature helps users identify the ultimately applied settings by analyzing the Resultant Set of Policies (RSoP) based on link order, precedence, inheritance, and more.

Finally, users can compare and analyze their resultant set of policies against the baselines.

The RSoP Comparison module displays the Computers, Users, and OUs (Organizational Units) that have at least one incompatible setting.

RSoP on Computers

The Computers table shows the Name, OS, IP Address, Privileged, Admin and Conflict Count information about each computer.

Each row redirects to the RSoP detail page for the respective entity.

RSoP on Users

The Users table shows the Enabled, Locked, Service User, Privileged, Admin and Conflict Count information about each user.

RSoP on Organizational Units

The OUs (Organizational Units) table shows the Member Count, Linked GPO Count, and Conflict Count information about each OU.

RSoP Details

The table contains relevant information about the uncompatible and compatible settings after the RSoP comparison.

Status: Comparison result for the RSoP setting.

Type: Type of the setting.

Policy Group or Registry Key: Group policy configuration path of the setting.

Setting: Name of the settings.

GPO Value: Value of the setting configured by the GPO.

Mandatory Value: Value of the setting defined by the baseline.

Source GPO: The GPO that applies the setting.

Conflict Count: The number of detected incompatible settings applied by more than one Group Policy Object. (See for definitions of the other columns.)

Conflict Count: The number of detected incompatible settings applied by more than one Group Policy Object. (See for definitions of the other columns.)

Conflict Count: The number of detected incompatible settings applied by more than one Group Policy Object. (See for definitions of the other columns.)

Glossary
Glossary
Glossary
RSoP on Computers
RSoP on Users
RSoP on Organizational Units
RSoP of Computer Object