<?xml version="1.0" encoding="utf-8" standalone="yes"?>
<assembly xmlns="urn:schemas-microsoft-com:asm.v3" manifestVersion="1.0" copyright="Copyright (c) Microsoft Corporation. All Rights Reserved.">
  <assemblyIdentity name="Microsoft-Windows-DeviceManagement-DMPolicyManagerPrecheck" version="10.0.26100.8521" processorArchitecture="amd64" language="neutral" buildType="release" publicKeyToken="31bf3856ad364e35" versionScope="nonSxS" />
  <file name="policymanagerprecheck.dll" destinationPath="$(runtime.system32)\" sourceName="policymanagerprecheck.dll" importPath="$(build.nttree)\" sourcePath=".\">
    <securityDescriptor name="WRP_FILE_DEFAULT_SDDL" />
    <asmv2:hash xmlns:asmv2="urn:schemas-microsoft-com:asm.v2" xmlns:dsig="http://www.w3.org/2000/09/xmldsig#">
      <dsig:Transforms>
        <dsig:Transform Algorithm="urn:schemas-microsoft-com:HashTransforms.Identity" />
      </dsig:Transforms>
      <dsig:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha256" />
      <dsig:DigestValue>R0N85Wujxo4l1gw764t1owCDLVWmW/S6sL37QtDJUIQ=</dsig:DigestValue>
    </asmv2:hash>
  </file>
  <registryKeys>
    <registryKey keyName="HKEY_LOCAL_MACHINE\Software\Microsoft\PolicyManager\default\Browser\AllowBrowser">
      <registryValue name="DoNotAllow" valueType="REG_DWORD" value="0x00000001" />
    </registryKey>
    <registryKey keyName="HKEY_LOCAL_MACHINE\Software\Microsoft\PolicyManager\default\Search\SafeSearchPermissions">
      <registryValue name="DoNotAllow" valueType="REG_DWORD" value="0x00000001" />
    </registryKey>
    <registryKey keyName="HKEY_LOCAL_MACHINE\Software\Microsoft\PolicyManager\default\Security\AllowManualRootCertificateInstallation">
      <registryValue name="DoNotAllow" valueType="REG_DWORD" value="0x00000001" />
      <overridable name="DoNotAllow" scope="Microsoft" type="REG_DWORD" />
    </registryKey>
    <registryKey keyName="HKEY_LOCAL_MACHINE\Software\Microsoft\PolicyManager\default\Security\AntiTheftMode">
      <registryValue name="DoNotAllow" valueType="REG_DWORD" value="0x00000001" />
    </registryKey>
    <registryKey keyName="HKEY_LOCAL_MACHINE\Software\Microsoft\PolicyManager\default\Experience\AllowTaskSwitcher">
      <registryValue name="DoNotAllow" valueType="REG_DWORD" value="0x00000001" />
    </registryKey>
    <registryKey keyName="HKEY_LOCAL_MACHINE\Software\Microsoft\PolicyManager\default\Experience\AllowVoiceRecording">
      <registryValue name="DoNotAllow" valueType="REG_DWORD" value="0x00000001" />
    </registryKey>
    <registryKey keyName="HKEY_LOCAL_MACHINE\Software\Microsoft\PolicyManager\default\Experience\AllowCopyPaste">
      <registryValue name="DoNotAllow" valueType="REG_DWORD" value="0x00000001" />
    </registryKey>
    <registryKey keyName="HKEY_LOCAL_MACHINE\Software\Microsoft\PolicyManager\default\DeviceLock\AllowIdleReturnWithoutPassword">
      <registryValue name="DoNotAllow" valueType="REG_DWORD" value="0x00000001" />
      <overridable name="DoNotAllow" scope="Microsoft" type="REG_DWORD" />
    </registryKey>
    <registryKey keyName="HKEY_LOCAL_MACHINE\Software\Microsoft\PolicyManager\default\DeviceLock\MaxInactivityTimeDeviceLockWithExternalDisplay">
      <registryValue name="DoNotAllow" valueType="REG_DWORD" value="0x00000001" />
    </registryKey>
    <registryKey keyName="HKEY_LOCAL_MACHINE\Software\Microsoft\PolicyManager\default\BitLocker\RequireStorageCardEncryption">
      <registryValue name="DoNotAllow" valueType="REG_DWORD" value="0x00000001" />
    </registryKey>
    <registryKey keyName="HKEY_LOCAL_MACHINE\Software\Microsoft\PolicyManager\default\Connectivity\AllowNFC">
      <registryValue name="DoNotAllow" valueType="REG_DWORD" value="0x00000001" />
    </registryKey>
    <registryKey keyName="HKEY_LOCAL_MACHINE\Software\Microsoft\PolicyManager\default\Connectivity\AllowUSBConnection">
      <registryValue name="DoNotAllow" valueType="REG_DWORD" value="0x00000001" />
      <overridable name="DoNotAllow" scope="Microsoft" type="REG_DWORD" />
    </registryKey>
    <registryKey keyName="HKEY_LOCAL_MACHINE\Software\Microsoft\PolicyManager\default\ApplicationManagement\AllowStore">
      <registryValue name="DoNotAllow" valueType="REG_DWORD" value="0x00000001" />
    </registryKey>
    <registryKey keyName="HKEY_LOCAL_MACHINE\Software\Microsoft\PolicyManager\default\ApplicationManagement\ApplicationRestrictions">
      <registryValue name="DoNotAllow" valueType="REG_DWORD" value="0x00000001" />
    </registryKey>
    <registryKey keyName="HKEY_LOCAL_MACHINE\Software\Microsoft\PolicyManager\default\AboveLock\AllowActionCenterNotifications">
      <registryValue name="DoNotAllow" valueType="REG_DWORD" value="0x00000001" />
    </registryKey>
    <registryKey keyName="HKEY_LOCAL_MACHINE\Software\Microsoft\PolicyManager\default\Browser\FirstRunURL">
      <registryValue name="DoNotAllow" valueType="REG_DWORD" value="0x00000001" />
    </registryKey>
    <registryKey keyName="HKEY_LOCAL_MACHINE\Software\Microsoft\PolicyManager\default\Messaging\AllowMMS">
      <registryValue name="DoNotAllow" valueType="REG_DWORD" value="0x00000001" />
    </registryKey>
    <registryKey keyName="HKEY_LOCAL_MACHINE\Software\Microsoft\PolicyManager\default\Messaging\AllowRCS">
      <registryValue name="DoNotAllow" valueType="REG_DWORD" value="0x00000001" />
    </registryKey>
    <registryKey keyName="HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\TimeLanguageSettings\AllowSet24HourClock">
      <registryValue name="DoNotAllow" valueType="REG_DWORD" value="0x00000001" />
    </registryKey>
    <registryKey keyName="HKEY_LOCAL_MACHINE\Software\Microsoft\PolicyManager\default\Privacy\EnableActivityFeed">
      <overridable name="Value" scope="Microsoft" type="REG_DWORD" />
    </registryKey>
    <registryKey keyName="HKEY_LOCAL_MACHINE\Software\Microsoft\PolicyManager\default\Privacy\PublishUserActivities">
      <overridable name="Value" scope="Microsoft" type="REG_DWORD" />
    </registryKey>
    <registryKey keyName="HKEY_LOCAL_MACHINE\Software\Microsoft\PolicyManager\default\Privacy\UploadUserActivities">
      <overridable name="Value" scope="Microsoft" type="REG_DWORD" />
    </registryKey>
  </registryKeys>
  <trustInfo>
    <security>
      <accessControl>
        <securityDescriptorDefinitions>
          <securityDescriptorDefinition name="WRP_REGKEY_DEFAULT_SDDL" sddl="O:S-1-5-80-956008885-3418522649-1831038044-1853292631-2271478464G:S-1-5-80-956008885-3418522649-1831038044-1853292631-2271478464D:P(A;CI;GA;;;S-1-5-80-956008885-3418522649-1831038044-1853292631-2271478464)(A;CI;GR;;;SY)(A;CI;GR;;;BA)(A;CI;GR;;;BU)(A;CI;GR;;;S-1-15-2-1)(A;CI;GR;;;S-1-15-3-1024-1065365936-1281604716-3511738428-1654721687-432734479-3232135806-4053264122-3456934681)" operationHint="replace" />
          <securityDescriptorDefinition name="WRP_FILE_DEFAULT_SDDL" sddl="O:S-1-5-80-956008885-3418522649-1831038044-1853292631-2271478464G:S-1-5-80-956008885-3418522649-1831038044-1853292631-2271478464D:P(A;;FA;;;S-1-5-80-956008885-3418522649-1831038044-1853292631-2271478464)(A;;GRGX;;;BA)(A;;GRGX;;;SY)(A;;GRGX;;;BU)(A;;GRGX;;;S-1-15-2-1)(A;;GRGX;;;S-1-15-2-2)S:(AU;FASA;0x000D0116;;;WD)" operationHint="replace" description="Default SDDL for Windows Resource Protected file" />
        </securityDescriptorDefinitions>
      </accessControl>
    </security>
  </trustInfo>
</assembly>