<?xml version="1.0" encoding="utf-8" standalone="yes"?>
<assembly xmlns="urn:schemas-microsoft-com:asm.v3" manifestVersion="1.0" copyright="Copyright (c) Microsoft Corporation. All Rights Reserved." xmlns:xsd="http://www.w3.org/2001/XMLSchema">
  <assemblyIdentity name="Microsoft-Windows-Security-Security Configuration Engine Client" version="10.0.26100.8521" processorArchitecture="wow64" language="neutral" buildType="release" publicKeyToken="31bf3856ad364e35" versionScope="nonSxS" />
  <file name="scecli.dll" destinationPath="$(runtime.system32)\" sourceName="scecli.dll" importPath="$(build.nttree)\" sourcePath=".\">
    <signatureInfo>
      <signatureDescriptor PETrust="true" pageHash="true" />
    </signatureInfo>
    <securityDescriptor name="WRP_FILE_DEFAULT_SDDL" />
    <asmv2:hash xmlns:asmv2="urn:schemas-microsoft-com:asm.v2" xmlns:dsig="http://www.w3.org/2000/09/xmldsig#">
      <dsig:Transforms>
        <dsig:Transform Algorithm="urn:schemas-microsoft-com:HashTransforms.Identity" />
      </dsig:Transforms>
      <dsig:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha256" />
      <dsig:DigestValue>kFDfAKR9B+eg6lZCz84kJ0kMOJguS6Nj48szYbefN8c=</dsig:DigestValue>
    </asmv2:hash>
  </file>
  <directories>
    <directory destinationPath="$(runtime.windows)\security\templates" />
    <directory destinationPath="$(runtime.windows)\security\database" />
    <directory destinationPath="$(runtime.windows)\security\logs" />
  </directories>
  <registryKeys>
    <registryKey keyName="HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{827D319E-6EAC-11D2-A4EA-00C04F79F83A}">
      <registryValue name="" valueType="REG_SZ" value="Security" />
      <registryValue name="DisplayName" valueType="REG_EXPAND_SZ" value="@scecli.dll,-7650" />
      <registryValue name="ProcessGroupPolicy" valueType="REG_SZ" value="SceProcessSecurityPolicyGPO" />
      <registryValue name="GenerateGroupPolicy" valueType="REG_SZ" value="SceGenerateGroupPolicy" />
      <registryValue name="ExtensionRsopPlanningDebugLevel" valueType="REG_DWORD" value="0x00000001" />
      <registryValue name="ProcessGroupPolicyEx" valueType="REG_SZ" value="SceProcessSecurityPolicyGPOEx" />
      <registryValue name="ExtensionDebugLevel" valueType="REG_DWORD" value="0x00000000" />
      <registryValue name="DllName" valueType="REG_EXPAND_SZ" value="scecli.dll" />
      <registryValue name="NoUserPolicy" valueType="REG_DWORD" value="0x00000001" />
      <registryValue name="NoGPOListChanges" valueType="REG_DWORD" value="0x00000001" />
      <registryValue name="EnableAsynchronousProcessing" valueType="REG_DWORD" value="0x00000001" />
      <securityDescriptor name="SCE_REG_DEFAULT_SDDL" />
    </registryKey>
    <registryKey keyName="HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SeCEdit">
      <registryValue name="SetupCompDebugLevel" valueType="REG_DWORD" value="0x00000001" />
      <registryValue name="DefaultTemplate" valueType="REG_SZ" value="$(runtime.inf)\secrecs.inf" />
      <securityDescriptor name="SCE_REG_DEFAULT_SDDL" />
    </registryKey>
    <registryKey keyName="HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SeCEdit\Reg Values">
      <securityDescriptor name="SCE_REG_DEFAULT_SDDL" />
    </registryKey>
    <registryKey keyName="HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SeCEdit\Reg Values\MACHINE/Software/Microsoft/Windows NT/CurrentVersion/Setup/RecoveryConsole/SecurityLevel">
      <registryValue name="ValueType" valueType="REG_DWORD" value="0x00000004" />
      <registryValue name="DisplayType" valueType="REG_DWORD" value="0x00000000" />
      <registryValue name="DisplayName" valueType="REG_SZ" value="@wsecedit.dll,-59076" />
      <securityDescriptor name="SCE_REG_DEFAULT_SDDL" />
    </registryKey>
    <registryKey keyName="HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SeCEdit\Reg Values\MACHINE/Software/Microsoft/Windows NT/CurrentVersion/Setup/RecoveryConsole/SetCommand">
      <registryValue name="ValueType" valueType="REG_DWORD" value="0x00000004" />
      <registryValue name="DisplayType" valueType="REG_DWORD" value="0x00000000" />
      <registryValue name="DisplayName" valueType="REG_SZ" value="@wsecedit.dll,-59077" />
      <securityDescriptor name="SCE_REG_DEFAULT_SDDL" />
    </registryKey>
    <registryKey keyName="HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SeCEdit\Reg Values\MACHINE/Software/Microsoft/Windows NT/CurrentVersion/Winlogon/AllocateCDRoms">
      <registryValue name="ValueType" valueType="REG_DWORD" value="0x00000001" />
      <registryValue name="DisplayType" valueType="REG_DWORD" value="0x00000000" />
      <registryValue name="DisplayName" valueType="REG_SZ" value="@wsecedit.dll,-59098" />
      <securityDescriptor name="SCE_REG_DEFAULT_SDDL" />
    </registryKey>
    <registryKey keyName="HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SeCEdit\Reg Values\MACHINE/Software/Microsoft/Windows NT/CurrentVersion/Winlogon/AllocateDASD">
      <registryValue name="ValueType" valueType="REG_DWORD" value="0x00000001" />
      <registryValue name="DisplayType" valueType="REG_DWORD" value="0x00000003" />
      <registryValue name="DisplayName" valueType="REG_SZ" value="@wsecedit.dll,-59099" />
      <registryValue name="DisplayChoices" valueType="REG_MULTI_SZ" value="&quot;0|@wsecedit.dll,-59100&quot;,&quot;1|@wsecedit.dll,-59101&quot;,&quot;2|@wsecedit.dll,-59102&quot;" />
      <securityDescriptor name="SCE_REG_DEFAULT_SDDL" />
    </registryKey>
    <registryKey keyName="HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SeCEdit\Reg Values\MACHINE/Software/Microsoft/Windows NT/CurrentVersion/Winlogon/AllocateFloppies">
      <registryValue name="ValueType" valueType="REG_DWORD" value="0x00000001" />
      <registryValue name="DisplayType" valueType="REG_DWORD" value="0x00000000" />
      <registryValue name="DisplayName" valueType="REG_SZ" value="@wsecedit.dll,-59103" />
      <securityDescriptor name="SCE_REG_DEFAULT_SDDL" />
    </registryKey>
    <registryKey keyName="HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SeCEdit\Reg Values\MACHINE/Software/Microsoft/Windows NT/CurrentVersion/Winlogon/CachedLogonsCount">
      <registryValue name="ValueType" valueType="REG_DWORD" value="0x00000001" />
      <registryValue name="DisplayType" valueType="REG_DWORD" value="0x00000001" />
      <registryValue name="DisplayName" valueType="REG_SZ" value="@wsecedit.dll,-59030" />
      <registryValue name="DisplayUnit" valueType="REG_SZ" value="@wsecedit.dll,-59092" />
      <securityDescriptor name="SCE_REG_DEFAULT_SDDL" />
    </registryKey>
    <registryKey keyName="HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SeCEdit\Reg Values\MACHINE/Software/Microsoft/Windows NT/CurrentVersion/Winlogon/ForceUnlockLogon">
      <registryValue name="ValueType" valueType="REG_DWORD" value="0x00000004" />
      <registryValue name="DisplayType" valueType="REG_DWORD" value="0x00000000" />
      <registryValue name="DisplayName" valueType="REG_SZ" value="@wsecedit.dll,-59032" />
      <securityDescriptor name="SCE_REG_DEFAULT_SDDL" />
    </registryKey>
    <registryKey keyName="HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SeCEdit\Reg Values\MACHINE/Software/Microsoft/Windows NT/CurrentVersion/Winlogon/PasswordExpiryWarning">
      <registryValue name="ValueType" valueType="REG_DWORD" value="0x00000004" />
      <registryValue name="DisplayType" valueType="REG_DWORD" value="0x00000001" />
      <registryValue name="DisplayName" valueType="REG_SZ" value="@wsecedit.dll,-59031" />
      <registryValue name="DisplayUnit" valueType="REG_SZ" value="@wsecedit.dll,-59093" />
      <securityDescriptor name="SCE_REG_DEFAULT_SDDL" />
    </registryKey>
    <registryKey keyName="HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SeCEdit\Reg Values\MACHINE/Software/Microsoft/Windows NT/CurrentVersion/Winlogon/ScRemoveOption">
      <registryValue name="ValueType" valueType="REG_DWORD" value="0x00000001" />
      <registryValue name="DisplayType" valueType="REG_DWORD" value="0x00000003" />
      <registryValue name="DisplayName" valueType="REG_SZ" value="@wsecedit.dll,-59034" />
      <registryValue name="DisplayChoices" valueType="REG_MULTI_SZ" value="&quot;0|@wsecedit.dll,-59035&quot;,&quot;1|@wsecedit.dll,-59036&quot;,&quot;2|@wsecedit.dll,-59037&quot;,&quot;3|@wsecedit.dll,-59038&quot;" />
      <securityDescriptor name="SCE_REG_DEFAULT_SDDL" />
    </registryKey>
    <registryKey keyName="HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SeCEdit\Reg Values\MACHINE/Software/Microsoft/Windows/CurrentVersion/Policies/System/ConsentPromptBehaviorAdmin">
      <registryValue name="ValueType" valueType="REG_DWORD" value="0x00000004" />
      <registryValue name="DisplayType" valueType="REG_DWORD" value="0x00000003" />
      <registryValue name="DisplayName" valueType="REG_SZ" value="@scecli.dll,-8200" />
      <registryValue name="DisplayChoices" valueType="REG_MULTI_SZ" value="&quot;0|@scecli.dll,-8253&quot;,&quot;1|@scecli.dll,-8251&quot;,&quot;2|@scecli.dll,-8252&quot;,&quot;3|@scecli.dll,-8255&quot;,&quot;4|@scecli.dll,-8256&quot;,&quot;5|@scecli.dll,-8257&quot;" />
      <securityDescriptor name="SCE_REG_DEFAULT_SDDL" />
    </registryKey>
    <registryKey keyName="HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SeCEdit\Reg Values\MACHINE/Software/Microsoft/Windows/CurrentVersion/Policies/System/ConsentPromptBehaviorEnhancedAdmin">
      <registryValue name="ValueType" valueType="REG_DWORD" value="0x00000004" />
      <registryValue name="DisplayType" valueType="REG_DWORD" value="0x00000003" />
      <registryValue name="DisplayName" valueType="REG_SZ" value="@scecli.dll,-8272" />
      <registryValue name="DisplayChoices" valueType="REG_MULTI_SZ" value="&quot;1|@scecli.dll,-8251&quot;,&quot;2|@scecli.dll,-8252&quot;" />
      <securityDescriptor name="SCE_REG_DEFAULT_SDDL" />
    </registryKey>
    <registryKey keyName="HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SeCEdit\Reg Values\MACHINE/Software/Microsoft/Windows/CurrentVersion/Policies/System/ConsentPromptBehaviorUser">
      <registryValue name="ValueType" valueType="REG_DWORD" value="0x00000004" />
      <registryValue name="DisplayType" valueType="REG_DWORD" value="0x00000003" />
      <registryValue name="DisplayName" valueType="REG_SZ" value="@scecli.dll,-8201" />
      <registryValue name="DisplayChoices" valueType="REG_MULTI_SZ" value="&quot;0|@scecli.dll,-8254&quot;,&quot;1|@scecli.dll,-8251&quot;,&quot;3|@scecli.dll,-8255&quot;" />
      <securityDescriptor name="SCE_REG_DEFAULT_SDDL" />
    </registryKey>
    <registryKey keyName="HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SeCEdit\Reg Values\MACHINE/Software/Microsoft/Windows/CurrentVersion/Policies/System/NoConnectedUser">
      <registryValue name="ValueType" valueType="REG_DWORD" value="0x00000004" />
      <registryValue name="DisplayType" valueType="REG_DWORD" value="0x00000003" />
      <registryValue name="DisplayName" valueType="REG_SZ" value="@wsecedit.dll,-59150" />
      <registryValue name="DisplayChoices" valueType="REG_MULTI_SZ" value="&quot;0|@wsecedit.dll,-59151&quot;,&quot;1|@wsecedit.dll,-59152&quot;,&quot;3|@wsecedit.dll,-59153&quot;" />
      <securityDescriptor name="SCE_REG_DEFAULT_SDDL" />
    </registryKey>
    <registryKey keyName="HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SeCEdit\Reg Values\MACHINE/Software/Microsoft/Windows/CurrentVersion/Policies/System/DisableCAD">
      <registryValue name="ValueType" valueType="REG_DWORD" value="0x00000004" />
      <registryValue name="DisplayType" valueType="REG_DWORD" value="0x00000000" />
      <registryValue name="DisplayName" valueType="REG_SZ" value="@wsecedit.dll,-59022" />
      <securityDescriptor name="SCE_REG_DEFAULT_SDDL" />
    </registryKey>
    <registryKey keyName="HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SeCEdit\Reg Values\MACHINE/Software/Microsoft/Windows/CurrentVersion/Policies/System/DontDisplayLastUserName">
      <registryValue name="ValueType" valueType="REG_DWORD" value="0x00000004" />
      <registryValue name="DisplayType" valueType="REG_DWORD" value="0x00000000" />
      <registryValue name="DisplayName" valueType="REG_SZ" value="@wsecedit.dll,-59023" />
      <securityDescriptor name="SCE_REG_DEFAULT_SDDL" />
    </registryKey>
    <registryKey keyName="HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SeCEdit\Reg Values\MACHINE/Software/Microsoft/Windows/CurrentVersion/Policies/System/DontDisplayUserName">
      <registryValue name="ValueType" valueType="REG_DWORD" value="0x00000004" />
      <registryValue name="DisplayType" valueType="REG_DWORD" value="0x00000000" />
      <registryValue name="DisplayName" valueType="REG_SZ" value="@wsecedit.dll,-59158" />
      <securityDescriptor name="SCE_REG_DEFAULT_SDDL" />
    </registryKey>
    <registryKey keyName="HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SeCEdit\Reg Values\MACHINE/Software/Microsoft/Windows/CurrentVersion/Policies/System/EnableInstallerDetection">
      <registryValue name="ValueType" valueType="REG_DWORD" value="0x00000004" />
      <registryValue name="DisplayType" valueType="REG_DWORD" value="0x00000000" />
      <registryValue name="DisplayName" valueType="REG_SZ" value="@scecli.dll,-8202" />
      <securityDescriptor name="SCE_REG_DEFAULT_SDDL" />
    </registryKey>
    <registryKey keyName="HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SeCEdit\Reg Values\MACHINE/Software/Microsoft/Windows/CurrentVersion/Policies/System/EnableLUA">
      <registryValue name="ValueType" valueType="REG_DWORD" value="0x00000004" />
      <registryValue name="DisplayType" valueType="REG_DWORD" value="0x00000000" />
      <registryValue name="DisplayName" valueType="REG_SZ" value="@scecli.dll,-8203" />
      <securityDescriptor name="SCE_REG_DEFAULT_SDDL" />
    </registryKey>
    <registryKey keyName="HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SeCEdit\Reg Values\MACHINE/Software/Microsoft/Windows/CurrentVersion/Policies/System/EnableFullTokenForRemoteAuth">
      <registryValue name="ValueType" valueType="REG_DWORD" value="0x00000004" />
      <registryValue name="DisplayType" valueType="REG_DWORD" value="0x00000000" />
      <registryValue name="DisplayName" valueType="REG_SZ" value="@scecli.dll,-8288" />
      <securityDescriptor name="SCE_REG_DEFAULT_SDDL" />
    </registryKey>
    <registryKey keyName="HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SeCEdit\Reg Values\MACHINE/Software/Microsoft/Windows/CurrentVersion/Policies/System/EnableSecureUIAPaths">
      <registryValue name="ValueType" valueType="REG_DWORD" value="0x00000004" />
      <registryValue name="DisplayType" valueType="REG_DWORD" value="0x00000000" />
      <registryValue name="DisplayName" valueType="REG_SZ" value="@scecli.dll,-8208" />
      <securityDescriptor name="SCE_REG_DEFAULT_SDDL" />
    </registryKey>
    <registryKey keyName="HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SeCEdit\Reg Values\MACHINE/Software/Microsoft/Windows/CurrentVersion/Policies/System/EnableUIADesktopToggle">
      <registryValue name="ValueType" valueType="REG_DWORD" value="0x00000004" />
      <registryValue name="DisplayType" valueType="REG_DWORD" value="0x00000000" />
      <registryValue name="DisplayName" valueType="REG_SZ" value="@scecli.dll,-8225" />
      <securityDescriptor name="SCE_REG_DEFAULT_SDDL" />
    </registryKey>
    <registryKey keyName="HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SeCEdit\Reg Values\MACHINE/Software/Microsoft/Windows/CurrentVersion/Policies/System/EnableVirtualization">
      <registryValue name="ValueType" valueType="REG_DWORD" value="0x00000004" />
      <registryValue name="DisplayType" valueType="REG_DWORD" value="0x00000000" />
      <registryValue name="DisplayName" valueType="REG_SZ" value="@scecli.dll,-8204" />
      <securityDescriptor name="SCE_REG_DEFAULT_SDDL" />
    </registryKey>
    <registryKey keyName="HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SeCEdit\Reg Values\MACHINE/Software/Microsoft/Windows/CurrentVersion/Policies/System/FilterAdministratorToken">
      <registryValue name="ValueType" valueType="REG_DWORD" value="0x00000004" />
      <registryValue name="DisplayType" valueType="REG_DWORD" value="0x00000000" />
      <registryValue name="DisplayName" valueType="REG_SZ" value="@scecli.dll,-8207" />
      <securityDescriptor name="SCE_REG_DEFAULT_SDDL" />
    </registryKey>
    <registryKey keyName="HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SeCEdit\Reg Values\MACHINE/Software/Microsoft/Windows/CurrentVersion/Policies/System/LegalNoticeCaption">
      <registryValue name="ValueType" valueType="REG_DWORD" value="0x00000001" />
      <registryValue name="DisplayType" valueType="REG_DWORD" value="0x00000002" />
      <registryValue name="DisplayName" valueType="REG_SZ" value="@wsecedit.dll,-59029" />
      <securityDescriptor name="SCE_REG_DEFAULT_SDDL" />
    </registryKey>
    <registryKey keyName="HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SeCEdit\Reg Values\MACHINE/Software/Microsoft/Windows/CurrentVersion/Policies/System/LegalNoticeText">
      <registryValue name="ValueType" valueType="REG_DWORD" value="0x00000007" />
      <registryValue name="DisplayType" valueType="REG_DWORD" value="0x00000004" />
      <registryValue name="DisplayName" valueType="REG_SZ" value="@wsecedit.dll,-59028" />
      <securityDescriptor name="SCE_REG_DEFAULT_SDDL" />
    </registryKey>
    <registryKey keyName="HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SeCEdit\Reg Values\MACHINE/Software/Microsoft/Windows/CurrentVersion/Policies/System/PromptOnSecureDesktop">
      <registryValue name="ValueType" valueType="REG_DWORD" value="0x00000004" />
      <registryValue name="DisplayType" valueType="REG_DWORD" value="0x00000000" />
      <registryValue name="DisplayName" valueType="REG_SZ" value="@scecli.dll,-8206" />
      <securityDescriptor name="SCE_REG_DEFAULT_SDDL" />
    </registryKey>
    <registryKey keyName="HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SeCEdit\Reg Values\MACHINE/Software/Microsoft/Windows/CurrentVersion/Policies/System/ScForceOption">
      <registryValue name="ValueType" valueType="REG_DWORD" value="0x00000004" />
      <registryValue name="DisplayType" valueType="REG_DWORD" value="0x00000000" />
      <registryValue name="DisplayName" valueType="REG_SZ" value="@wsecedit.dll,-59033" />
      <securityDescriptor name="SCE_REG_DEFAULT_SDDL" />
    </registryKey>
    <registryKey keyName="HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SeCEdit\Reg Values\MACHINE/Software/Microsoft/Windows/CurrentVersion/Policies/System/ShutdownWithoutLogon">
      <registryValue name="ValueType" valueType="REG_DWORD" value="0x00000004" />
      <registryValue name="DisplayType" valueType="REG_DWORD" value="0x00000000" />
      <registryValue name="DisplayName" valueType="REG_SZ" value="@wsecedit.dll,-59078" />
      <securityDescriptor name="SCE_REG_DEFAULT_SDDL" />
    </registryKey>
    <registryKey keyName="HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SeCEdit\Reg Values\MACHINE/Software/Microsoft/Windows/CurrentVersion/Policies/System/TypeOfAdminApprovalMode">
      <registryValue name="ValueType" valueType="REG_DWORD" value="0x00000004" />
      <registryValue name="DisplayType" valueType="REG_DWORD" value="0x00000003" />
      <registryValue name="DisplayName" valueType="REG_SZ" value="@scecli.dll,-8210" />
      <registryValue name="DisplayChoices" valueType="REG_MULTI_SZ" value="&quot;1|@scecli.dll,-8260&quot;,&quot;2|@scecli.dll,-8273&quot;" />
      <securityDescriptor name="SCE_REG_DEFAULT_SDDL" />
    </registryKey>
    <registryKey keyName="HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SeCEdit\Reg Values\MACHINE/Software/Microsoft/Windows/CurrentVersion/Policies/System/UndockWithoutLogon">
      <registryValue name="ValueType" valueType="REG_DWORD" value="0x00000004" />
      <registryValue name="DisplayType" valueType="REG_DWORD" value="0x00000000" />
      <registryValue name="DisplayName" valueType="REG_SZ" value="@wsecedit.dll,-59010" />
      <securityDescriptor name="SCE_REG_DEFAULT_SDDL" />
    </registryKey>
    <registryKey keyName="HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SeCEdit\Reg Values\MACHINE/Software/Microsoft/Windows/CurrentVersion/Policies/System/ValidateAdminCodeSignatures">
      <registryValue name="ValueType" valueType="REG_DWORD" value="0x00000004" />
      <registryValue name="DisplayType" valueType="REG_DWORD" value="0x00000000" />
      <registryValue name="DisplayName" valueType="REG_SZ" value="@scecli.dll,-8205" />
      <securityDescriptor name="SCE_REG_DEFAULT_SDDL" />
    </registryKey>
    <registryKey keyName="HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SeCEdit\Reg Values\MACHINE/Software/Policies/Microsoft/Cryptography/ForceKeyProtection">
      <registryValue name="ValueType" valueType="REG_DWORD" value="0x00000004" />
      <registryValue name="DisplayType" valueType="REG_DWORD" value="0x00000003" />
      <registryValue name="DisplayName" valueType="REG_SZ" value="@wsecedit.dll,-59086" />
      <registryValue name="DisplayChoices" valueType="REG_MULTI_SZ" value="&quot;0|@wsecedit.dll,-59087&quot;,&quot;1|@wsecedit.dll,-59088&quot;,&quot;2|@wsecedit.dll,-59089&quot;" />
      <securityDescriptor name="SCE_REG_DEFAULT_SDDL" />
    </registryKey>
    <registryKey keyName="HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SeCEdit\Reg Values\MACHINE/Software/Policies/Microsoft/Windows/Safer/CodeIdentifiers/AuthenticodeEnabled">
      <registryValue name="ValueType" valueType="REG_DWORD" value="0x00000004" />
      <registryValue name="DisplayType" valueType="REG_DWORD" value="0x00000000" />
      <registryValue name="DisplayName" valueType="REG_SZ" value="@wsecedit.dll,-59090" />
      <securityDescriptor name="SCE_REG_DEFAULT_SDDL" />
    </registryKey>
    <registryKey keyName="HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SeCEdit\Reg Values\MACHINE/Software/Policies/Microsoft/Windows NT/DCOM/MachineAccessRestriction">
      <registryValue name="ValueType" valueType="REG_DWORD" value="0x00000001" />
      <registryValue name="DisplayType" valueType="REG_DWORD" value="0x00000002" />
      <registryValue name="DisplayName" valueType="REG_SZ" value="@wsecedit.dll,-59097" />
      <securityDescriptor name="SCE_REG_DEFAULT_SDDL" />
    </registryKey>
    <registryKey keyName="HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SeCEdit\Reg Values\MACHINE/Software/Policies/Microsoft/Windows NT/DCOM/MachineLaunchRestriction">
      <registryValue name="ValueType" valueType="REG_DWORD" value="0x00000001" />
      <registryValue name="DisplayType" valueType="REG_DWORD" value="0x00000002" />
      <registryValue name="DisplayName" valueType="REG_SZ" value="@wsecedit.dll,-59096" />
      <securityDescriptor name="SCE_REG_DEFAULT_SDDL" />
    </registryKey>
    <registryKey keyName="HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SeCEdit\Reg Values\MACHINE/System/CurrentControlSet/Control/Lsa/AuditBaseObjects">
      <registryValue name="ValueType" valueType="REG_DWORD" value="0x00000004" />
      <registryValue name="DisplayType" valueType="REG_DWORD" value="0x00000000" />
      <registryValue name="DisplayName" valueType="REG_SZ" value="@wsecedit.dll,-59002" />
      <securityDescriptor name="SCE_REG_DEFAULT_SDDL" />
    </registryKey>
    <registryKey keyName="HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SeCEdit\Reg Values\MACHINE/System/CurrentControlSet/Control/Lsa/CrashOnAuditFail">
      <registryValue name="ValueType" valueType="REG_DWORD" value="0x00000004" />
      <registryValue name="DisplayType" valueType="REG_DWORD" value="0x00000000" />
      <registryValue name="DisplayName" valueType="REG_SZ" value="@wsecedit.dll,-59004" />
      <securityDescriptor name="SCE_REG_DEFAULT_SDDL" />
    </registryKey>
    <registryKey keyName="HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SeCEdit\Reg Values\MACHINE/System/CurrentControlSet/Control/Lsa/SCENoApplyLegacyAuditPolicy">
      <registryValue name="ValueType" valueType="REG_DWORD" value="0x00000004" />
      <registryValue name="DisplayType" valueType="REG_DWORD" value="0x00000000" />
      <registryValue name="DisplayName" valueType="REG_SZ" value="@wsecedit.dll,-59104" />
      <securityDescriptor name="SCE_REG_DEFAULT_SDDL" />
    </registryKey>
    <registryKey keyName="HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SeCEdit\Reg Values\MACHINE/System/CurrentControlSet/Control/Lsa/DisableDomainCreds">
      <registryValue name="ValueType" valueType="REG_DWORD" value="0x00000004" />
      <registryValue name="DisplayType" valueType="REG_DWORD" value="0x00000000" />
      <registryValue name="DisplayName" valueType="REG_SZ" value="@wsecedit.dll,-59046" />
      <securityDescriptor name="SCE_REG_DEFAULT_SDDL" />
    </registryKey>
    <registryKey keyName="HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SeCEdit\Reg Values\MACHINE/System/CurrentControlSet/Control/Lsa/EveryoneIncludesAnonymous">
      <registryValue name="ValueType" valueType="REG_DWORD" value="0x00000004" />
      <registryValue name="DisplayType" valueType="REG_DWORD" value="0x00000000" />
      <registryValue name="DisplayName" valueType="REG_SZ" value="@wsecedit.dll,-59049" />
      <securityDescriptor name="SCE_REG_DEFAULT_SDDL" />
    </registryKey>
    <registryKey keyName="HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SeCEdit\Reg Values\MACHINE/System/CurrentControlSet/Control/Lsa/FIPSAlgorithmPolicy/Enabled">
      <registryValue name="ValueType" valueType="REG_DWORD" value="0x00000004" />
      <registryValue name="DisplayType" valueType="REG_DWORD" value="0x00000000" />
      <registryValue name="DisplayName" valueType="REG_SZ" value="@wsecedit.dll,-59085" />
      <securityDescriptor name="SCE_REG_DEFAULT_SDDL" />
    </registryKey>
    <registryKey keyName="HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SeCEdit\Reg Values\MACHINE/System/CurrentControlSet/Control/Lsa/ForceGuest">
      <registryValue name="ValueType" valueType="REG_DWORD" value="0x00000004" />
      <registryValue name="DisplayType" valueType="REG_DWORD" value="0x00000003" />
      <registryValue name="DisplayName" valueType="REG_SZ" value="@wsecedit.dll,-59055" />
      <registryValue name="DisplayChoices" valueType="REG_MULTI_SZ" value="&quot;0|@wsecedit.dll,-59056&quot;,&quot;1|@wsecedit.dll,-59057&quot;" />
      <securityDescriptor name="SCE_REG_DEFAULT_SDDL" />
    </registryKey>
    <registryKey keyName="HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SeCEdit\Reg Values\MACHINE/Software/Microsoft/Windows/CurrentVersion/Policies/System/DontDisplayLockedUserId">
      <registryValue name="ValueType" valueType="REG_DWORD" value="0x00000004" />
      <registryValue name="DisplayType" valueType="REG_DWORD" value="0x00000003" />
      <registryValue name="DisplayName" valueType="REG_SZ" value="@wsecedit.dll,-59024" />
      <registryValue name="DisplayChoices" valueType="REG_MULTI_SZ" value="&quot;1|@wsecedit.dll,-59025&quot;,&quot;2|@wsecedit.dll,-59026&quot;,&quot;3|@wsecedit.dll,-59027&quot;,&quot;4|@wsecedit.dll,-59159&quot;" />
      <securityDescriptor name="SCE_REG_DEFAULT_SDDL" />
    </registryKey>
    <registryKey keyName="HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SeCEdit\Reg Values\MACHINE/System/CurrentControlSet/Control/Lsa/FullPrivilegeAuditing">
      <registryValue name="ValueType" valueType="REG_DWORD" value="0x00000003" />
      <registryValue name="DisplayType" valueType="REG_DWORD" value="0x00000000" />
      <registryValue name="DisplayName" valueType="REG_SZ" value="@wsecedit.dll,-59003" />
      <securityDescriptor name="SCE_REG_DEFAULT_SDDL" />
    </registryKey>
    <registryKey keyName="HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SeCEdit\Reg Values\MACHINE/System/CurrentControlSet/Control/Lsa/LimitBlankPasswordUse">
      <registryValue name="ValueType" valueType="REG_DWORD" value="0x00000004" />
      <registryValue name="DisplayType" valueType="REG_DWORD" value="0x00000000" />
      <registryValue name="DisplayName" valueType="REG_SZ" value="@wsecedit.dll,-59001" />
      <securityDescriptor name="SCE_REG_DEFAULT_SDDL" />
    </registryKey>
    <registryKey keyName="HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SeCEdit\Reg Values\MACHINE/System/CurrentControlSet/Control/Lsa/LmCompatibilityLevel">
      <registryValue name="ValueType" valueType="REG_DWORD" value="0x00000004" />
      <registryValue name="DisplayType" valueType="REG_DWORD" value="0x00000003" />
      <registryValue name="DisplayName" valueType="REG_SZ" value="@wsecedit.dll,-59059" />
      <registryValue name="DisplayChoices" valueType="REG_MULTI_SZ" value="&quot;0|@wsecedit.dll,-59060&quot;,&quot;1|@wsecedit.dll,-59061&quot;,&quot;2|@wsecedit.dll,-59062&quot;,&quot;3|@wsecedit.dll,-59063&quot;,&quot;4|@wsecedit.dll,-59064&quot;,&quot;5|@wsecedit.dll,-59065&quot;" />
      <securityDescriptor name="SCE_REG_DEFAULT_SDDL" />
    </registryKey>
    <registryKey keyName="HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SeCEdit\Reg Values\MACHINE/System/CurrentControlSet/Control/Lsa/MSV1_0/NTLMMinClientSec">
      <registryValue name="ValueType" valueType="REG_DWORD" value="0x00000004" />
      <registryValue name="DisplayType" valueType="REG_DWORD" value="0x00000005" />
      <registryValue name="DisplayName" valueType="REG_SZ" value="@wsecedit.dll,-59066" />
      <registryValue name="DisplayFlags" valueType="REG_MULTI_SZ" value="&quot;524288|@wsecedit.dll,-59070&quot;,&quot;536870912|@wsecedit.dll,-59071&quot;" />
      <securityDescriptor name="SCE_REG_DEFAULT_SDDL" />
    </registryKey>
    <registryKey keyName="HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SeCEdit\Reg Values\MACHINE/System/CurrentControlSet/Control/Lsa/MSV1_0/NTLMMinServerSec">
      <registryValue name="ValueType" valueType="REG_DWORD" value="0x00000004" />
      <registryValue name="DisplayType" valueType="REG_DWORD" value="0x00000005" />
      <registryValue name="DisplayName" valueType="REG_SZ" value="@wsecedit.dll,-59067" />
      <registryValue name="DisplayFlags" valueType="REG_MULTI_SZ" value="&quot;524288|@wsecedit.dll,-59070&quot;,&quot;536870912|@wsecedit.dll,-59071&quot;" />
      <securityDescriptor name="SCE_REG_DEFAULT_SDDL" />
    </registryKey>
    <registryKey keyName="HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SeCEdit\Reg Values\MACHINE/System/CurrentControlSet/Control/Lsa/MSV1_0/RestrictSendingNTLMTraffic">
      <registryValue name="ValueType" valueType="REG_DWORD" value="0x00000004" />
      <registryValue name="DisplayType" valueType="REG_DWORD" value="0x00000003" />
      <registryValue name="DisplayName" valueType="REG_SZ" value="@wsecedit.dll,-59105" />
      <registryValue name="DisplayChoices" valueType="REG_MULTI_SZ" value="&quot;0|@wsecedit.dll,-59106&quot;,&quot;1|@wsecedit.dll,-59130&quot;,&quot;2|@wsecedit.dll,-59107&quot;" />
      <securityDescriptor name="SCE_REG_DEFAULT_SDDL" />
    </registryKey>
    <registryKey keyName="HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SeCEdit\Reg Values\MACHINE/System/CurrentControlSet/Control/Lsa/MSV1_0/RestrictReceivingNTLMTraffic">
      <registryValue name="ValueType" valueType="REG_DWORD" value="0x00000004" />
      <registryValue name="DisplayType" valueType="REG_DWORD" value="0x00000003" />
      <registryValue name="DisplayName" valueType="REG_SZ" value="@wsecedit.dll,-59108" />
      <registryValue name="DisplayChoices" valueType="REG_MULTI_SZ" value="&quot;0|@wsecedit.dll,-59109&quot;,&quot;1|@wsecedit.dll,-59110&quot;,&quot;2|@wsecedit.dll,-59111&quot;" />
      <securityDescriptor name="SCE_REG_DEFAULT_SDDL" />
    </registryKey>
    <registryKey keyName="HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SeCEdit\Reg Values\MACHINE/System/CurrentControlSet/Control/Lsa/MSV1_0/AuditReceivingNTLMTraffic">
      <registryValue name="ValueType" valueType="REG_DWORD" value="0x00000004" />
      <registryValue name="DisplayType" valueType="REG_DWORD" value="0x00000003" />
      <registryValue name="DisplayName" valueType="REG_SZ" value="@wsecedit.dll,-59131" />
      <registryValue name="DisplayChoices" valueType="REG_MULTI_SZ" value="&quot;0|@wsecedit.dll,-59134&quot;,&quot;1|@wsecedit.dll,-59135&quot;,&quot;2|@wsecedit.dll,-59136&quot;" />
      <securityDescriptor name="SCE_REG_DEFAULT_SDDL" />
    </registryKey>
    <registryKey keyName="HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SeCEdit\Reg Values\MACHINE/System/CurrentControlSet/Control/Lsa/MSV1_0/ClientAllowedNTLMServers">
      <registryValue name="ValueType" valueType="REG_DWORD" value="0x00000007" />
      <registryValue name="DisplayType" valueType="REG_DWORD" value="0x00000004" />
      <registryValue name="DisplayName" valueType="REG_SZ" value="@wsecedit.dll,-59118" />
      <securityDescriptor name="SCE_REG_DEFAULT_SDDL" />
    </registryKey>
    <registryKey keyName="HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SeCEdit\Reg Values\MACHINE/System/CurrentControlSet/Control/Lsa/MSV1_0/allownullsessionfallback">
      <registryValue name="ValueType" valueType="REG_DWORD" value="0x00000004" />
      <registryValue name="DisplayType" valueType="REG_DWORD" value="0x00000000" />
      <registryValue name="DisplayName" valueType="REG_SZ" value="@wsecedit.dll,-59120" />
      <securityDescriptor name="SCE_REG_DEFAULT_SDDL" />
    </registryKey>
    <registryKey keyName="HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SeCEdit\Reg Values\MACHINE/System/CurrentControlSet/Control/Lsa/UseMachineId">
      <registryValue name="ValueType" valueType="REG_DWORD" value="0x00000004" />
      <registryValue name="DisplayType" valueType="REG_DWORD" value="0x00000000" />
      <registryValue name="DisplayName" valueType="REG_SZ" value="@wsecedit.dll,-59133" />
      <securityDescriptor name="SCE_REG_DEFAULT_SDDL" />
    </registryKey>
    <registryKey keyName="HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SeCEdit\Reg Values\MACHINE/System/CurrentControlSet/Control/Lsa/NoLMHash">
      <registryValue name="ValueType" valueType="REG_DWORD" value="0x00000004" />
      <registryValue name="DisplayType" valueType="REG_DWORD" value="0x00000000" />
      <registryValue name="DisplayName" valueType="REG_SZ" value="@wsecedit.dll,-59058" />
      <securityDescriptor name="SCE_REG_DEFAULT_SDDL" />
    </registryKey>
    <registryKey keyName="HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SeCEdit\Reg Values\MACHINE/System/CurrentControlSet/Control/Lsa/RestrictAnonymous">
      <registryValue name="ValueType" valueType="REG_DWORD" value="0x00000004" />
      <registryValue name="DisplayType" valueType="REG_DWORD" value="0x00000000" />
      <registryValue name="DisplayName" valueType="REG_SZ" value="@wsecedit.dll,-59048" />
      <securityDescriptor name="SCE_REG_DEFAULT_SDDL" />
    </registryKey>
    <registryKey keyName="HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SeCEdit\Reg Values\MACHINE/System/CurrentControlSet/Control/Lsa/RestrictAnonymousSAM">
      <registryValue name="ValueType" valueType="REG_DWORD" value="0x00000004" />
      <registryValue name="DisplayType" valueType="REG_DWORD" value="0x00000000" />
      <registryValue name="DisplayName" valueType="REG_SZ" value="@wsecedit.dll,-59047" />
      <securityDescriptor name="SCE_REG_DEFAULT_SDDL" />
    </registryKey>
    <registryKey keyName="HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SeCEdit\Reg Values\MACHINE/System/CurrentControlSet/Control/Lsa/RestrictRemoteSAM">
      <registryValue name="ValueType" valueType="REG_DWORD" value="0x00000001" />
      <registryValue name="DisplayType" valueType="REG_DWORD" value="0x00000002" />
      <registryValue name="DisplayName" valueType="REG_SZ" value="@wsecedit.dll,-59157" />
      <securityDescriptor name="SCE_REG_DEFAULT_SDDL" />
    </registryKey>
    <registryKey keyName="HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SeCEdit\Reg Values\MACHINE/System/CurrentControlSet/Control/Lsa/SubmitControl">
      <registryValue name="ValueType" valueType="REG_DWORD" value="0x00000004" />
      <registryValue name="DisplayType" valueType="REG_DWORD" value="0x00000000" />
      <registryValue name="DisplayName" valueType="REG_SZ" value="@wsecedit.dll,-59011" />
      <securityDescriptor name="SCE_REG_DEFAULT_SDDL" />
    </registryKey>
    <registryKey keyName="HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SeCEdit\Reg Values\MACHINE/System/CurrentControlSet/Control/Print/Providers/LanMan Print Services/Servers/AddPrinterDrivers">
      <registryValue name="ValueType" valueType="REG_DWORD" value="0x00000004" />
      <registryValue name="DisplayType" valueType="REG_DWORD" value="0x00000000" />
      <registryValue name="DisplayName" valueType="REG_SZ" value="@wsecedit.dll,-59005" />
      <securityDescriptor name="SCE_REG_DEFAULT_SDDL" />
    </registryKey>
    <registryKey keyName="HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SeCEdit\Reg Values\MACHINE/System/CurrentControlSet/Control/SecurePipeServers/Winreg/AllowedExactPaths/Machine">
      <registryValue name="ValueType" valueType="REG_DWORD" value="0x00000007" />
      <registryValue name="DisplayType" valueType="REG_DWORD" value="0x00000004" />
      <registryValue name="DisplayName" valueType="REG_SZ" value="@wsecedit.dll,-59054" />
      <securityDescriptor name="SCE_REG_DEFAULT_SDDL" />
    </registryKey>
    <registryKey keyName="HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SeCEdit\Reg Values\MACHINE/System/CurrentControlSet/Control/SecurePipeServers/Winreg/AllowedPaths/Machine">
      <registryValue name="ValueType" valueType="REG_DWORD" value="0x00000007" />
      <registryValue name="DisplayType" valueType="REG_DWORD" value="0x00000004" />
      <registryValue name="DisplayName" valueType="REG_SZ" value="@wsecedit.dll,-59053" />
      <securityDescriptor name="SCE_REG_DEFAULT_SDDL" />
    </registryKey>
    <registryKey keyName="HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SeCEdit\Reg Values\MACHINE/System/CurrentControlSet/Control/Session Manager/Kernel/ObCaseInsensitive">
      <registryValue name="ValueType" valueType="REG_DWORD" value="0x00000004" />
      <registryValue name="DisplayType" valueType="REG_DWORD" value="0x00000000" />
      <registryValue name="DisplayName" valueType="REG_SZ" value="@wsecedit.dll,-59084" />
      <securityDescriptor name="SCE_REG_DEFAULT_SDDL" />
    </registryKey>
    <registryKey keyName="HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SeCEdit\Reg Values\MACHINE/System/CurrentControlSet/Control/Session Manager/Memory Management/ClearPageFileAtShutdown">
      <registryValue name="ValueType" valueType="REG_DWORD" value="0x00000004" />
      <registryValue name="DisplayType" valueType="REG_DWORD" value="0x00000000" />
      <registryValue name="DisplayName" valueType="REG_SZ" value="@wsecedit.dll,-59079" />
      <securityDescriptor name="SCE_REG_DEFAULT_SDDL" />
    </registryKey>
    <registryKey keyName="HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SeCEdit\Reg Values\MACHINE/System/CurrentControlSet/Control/Session Manager/ProtectionMode">
      <registryValue name="ValueType" valueType="REG_DWORD" value="0x00000004" />
      <registryValue name="DisplayType" valueType="REG_DWORD" value="0x00000000" />
      <registryValue name="DisplayName" valueType="REG_SZ" value="@wsecedit.dll,-59080" />
      <securityDescriptor name="SCE_REG_DEFAULT_SDDL" />
    </registryKey>
    <registryKey keyName="HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SeCEdit\Reg Values\MACHINE/System/CurrentControlSet/Control/Session Manager/SubSystems/optional">
      <registryValue name="ValueType" valueType="REG_DWORD" value="0x00000007" />
      <registryValue name="DisplayType" valueType="REG_DWORD" value="0x00000004" />
      <registryValue name="DisplayName" valueType="REG_SZ" value="@wsecedit.dll,-59091" />
      <securityDescriptor name="SCE_REG_DEFAULT_SDDL" />
    </registryKey>
    <registryKey keyName="HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SeCEdit\Reg Values\MACHINE/System/CurrentControlSet/Services/LanManServer/Parameters/AutoDisconnect">
      <registryValue name="ValueType" valueType="REG_DWORD" value="0x00000004" />
      <registryValue name="DisplayType" valueType="REG_DWORD" value="0x00000001" />
      <registryValue name="DisplayName" valueType="REG_SZ" value="@wsecedit.dll,-59042" />
      <registryValue name="DisplayUnit" valueType="REG_SZ" value="@wsecedit.dll,-59094" />
      <securityDescriptor name="SCE_REG_DEFAULT_SDDL" />
    </registryKey>
    <registryKey keyName="HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SeCEdit\Reg Values\MACHINE/System/CurrentControlSet/Services/LanManServer/Parameters/EnableForcedLogOff">
      <registryValue name="ValueType" valueType="REG_DWORD" value="0x00000004" />
      <registryValue name="DisplayType" valueType="REG_DWORD" value="0x00000000" />
      <registryValue name="DisplayName" valueType="REG_SZ" value="@wsecedit.dll,-59045" />
      <securityDescriptor name="SCE_REG_DEFAULT_SDDL" />
    </registryKey>
    <registryKey keyName="HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SeCEdit\Reg Values\MACHINE/System/CurrentControlSet/Services/LanManServer/Parameters/EnableSecuritySignature">
      <registryValue name="ValueType" valueType="REG_DWORD" value="0x00000004" />
      <registryValue name="DisplayType" valueType="REG_DWORD" value="0x00000000" />
      <registryValue name="DisplayName" valueType="REG_SZ" value="@wsecedit.dll,-59044" />
      <securityDescriptor name="SCE_REG_DEFAULT_SDDL" />
    </registryKey>
    <registryKey keyName="HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SeCEdit\Reg Values\MACHINE/System/CurrentControlSet/Services/LanManServer/Parameters/NullSessionPipes">
      <registryValue name="ValueType" valueType="REG_DWORD" value="0x00000007" />
      <registryValue name="DisplayType" valueType="REG_DWORD" value="0x00000004" />
      <registryValue name="DisplayName" valueType="REG_SZ" value="@wsecedit.dll,-59051" />
      <securityDescriptor name="SCE_REG_DEFAULT_SDDL" />
    </registryKey>
    <registryKey keyName="HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SeCEdit\Reg Values\MACHINE/System/CurrentControlSet/Services/LanManServer/Parameters/NullSessionShares">
      <registryValue name="ValueType" valueType="REG_DWORD" value="0x00000007" />
      <registryValue name="DisplayType" valueType="REG_DWORD" value="0x00000004" />
      <registryValue name="DisplayName" valueType="REG_SZ" value="@wsecedit.dll,-59052" />
      <securityDescriptor name="SCE_REG_DEFAULT_SDDL" />
    </registryKey>
    <registryKey keyName="HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SeCEdit\Reg Values\MACHINE/System/CurrentControlSet/Services/LanManServer/Parameters/RequireSecuritySignature">
      <registryValue name="ValueType" valueType="REG_DWORD" value="0x00000004" />
      <registryValue name="DisplayType" valueType="REG_DWORD" value="0x00000000" />
      <registryValue name="DisplayName" valueType="REG_SZ" value="@wsecedit.dll,-59043" />
      <securityDescriptor name="SCE_REG_DEFAULT_SDDL" />
    </registryKey>
    <registryKey keyName="HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SeCEdit\Reg Values\MACHINE/System/CurrentControlSet/Services/LanManServer/Parameters/RestrictNullSessAccess">
      <registryValue name="ValueType" valueType="REG_DWORD" value="0x00000004" />
      <registryValue name="DisplayType" valueType="REG_DWORD" value="0x00000000" />
      <registryValue name="DisplayName" valueType="REG_SZ" value="@wsecedit.dll,-59050" />
      <securityDescriptor name="SCE_REG_DEFAULT_SDDL" />
    </registryKey>
    <registryKey keyName="HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SeCEdit\Reg Values\MACHINE/System/CurrentControlSet/Services/LanManServer/Parameters/SmbServerNameHardeningLevel">
      <registryValue name="ValueType" valueType="REG_DWORD" value="0x00000004" />
      <registryValue name="DisplayType" valueType="REG_DWORD" value="0x00000003" />
      <registryValue name="DisplayName" valueType="REG_SZ" value="@wsecedit.dll,-59142" />
      <registryValue name="DisplayChoices" valueType="REG_MULTI_SZ" value="&quot;0|@wsecedit.dll,-59143&quot;,&quot;1|@wsecedit.dll,-59144&quot;,&quot;2|@wsecedit.dll,-59145&quot;" />
      <securityDescriptor name="SCE_REG_DEFAULT_SDDL" />
    </registryKey>
    <registryKey keyName="HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SeCEdit\Reg Values\MACHINE/System/CurrentControlSet/Services/LanmanWorkstation/Parameters/EnablePlainTextPassword">
      <registryValue name="ValueType" valueType="REG_DWORD" value="0x00000004" />
      <registryValue name="DisplayType" valueType="REG_DWORD" value="0x00000000" />
      <registryValue name="DisplayName" valueType="REG_SZ" value="@wsecedit.dll,-59041" />
      <securityDescriptor name="SCE_REG_DEFAULT_SDDL" />
    </registryKey>
    <registryKey keyName="HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SeCEdit\Reg Values\MACHINE/System/CurrentControlSet/Services/LanmanWorkstation/Parameters/EnableSecuritySignature">
      <registryValue name="ValueType" valueType="REG_DWORD" value="0x00000004" />
      <registryValue name="DisplayType" valueType="REG_DWORD" value="0x00000000" />
      <registryValue name="DisplayName" valueType="REG_SZ" value="@wsecedit.dll,-59040" />
      <securityDescriptor name="SCE_REG_DEFAULT_SDDL" />
    </registryKey>
    <registryKey keyName="HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SeCEdit\Reg Values\MACHINE/System/CurrentControlSet/Services/LanmanWorkstation/Parameters/RequireSecuritySignature">
      <registryValue name="ValueType" valueType="REG_DWORD" value="0x00000004" />
      <registryValue name="DisplayType" valueType="REG_DWORD" value="0x00000000" />
      <registryValue name="DisplayName" valueType="REG_SZ" value="@wsecedit.dll,-59039" />
      <securityDescriptor name="SCE_REG_DEFAULT_SDDL" />
    </registryKey>
    <registryKey keyName="HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SeCEdit\Reg Values\MACHINE/System/CurrentControlSet/Services/LDAP/LDAPClientIntegrity">
      <registryValue name="ValueType" valueType="REG_DWORD" value="0x00000004" />
      <registryValue name="DisplayType" valueType="REG_DWORD" value="0x00000003" />
      <registryValue name="DisplayName" valueType="REG_SZ" value="@wsecedit.dll,-59072" />
      <registryValue name="DisplayChoices" valueType="REG_MULTI_SZ" value="&quot;0|@wsecedit.dll,-59073&quot;,&quot;1|@wsecedit.dll,-59074&quot;,&quot;2|@wsecedit.dll,-59075&quot;" />
      <securityDescriptor name="SCE_REG_DEFAULT_SDDL" />
    </registryKey>
    <registryKey keyName="HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SeCEdit\Reg Values\MACHINE/System/CurrentControlSet/Services/LDAP/LDAPClientConfidentiality">
      <registryValue name="ValueType" valueType="REG_DWORD" value="0x00000004" />
      <registryValue name="DisplayType" valueType="REG_DWORD" value="0x00000003" />
      <registryValue name="DisplayName" valueType="REG_SZ" value="@wsecedit.dll,-59168" />
      <registryValue name="DisplayChoices" valueType="REG_MULTI_SZ" value="&quot;0|@wsecedit.dll,-59169&quot;,&quot;1|@wsecedit.dll,-59170&quot;,&quot;2|@wsecedit.dll,-59171&quot;" />
      <securityDescriptor name="SCE_REG_DEFAULT_SDDL" />
    </registryKey>
    <registryKey keyName="HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SeCEdit\Reg Values\MACHINE/System/CurrentControlSet/Services/Netlogon/Parameters/DisablePasswordChange">
      <registryValue name="ValueType" valueType="REG_DWORD" value="0x00000004" />
      <registryValue name="DisplayType" valueType="REG_DWORD" value="0x00000000" />
      <registryValue name="DisplayName" valueType="REG_SZ" value="@wsecedit.dll,-59016" />
      <securityDescriptor name="SCE_REG_DEFAULT_SDDL" />
    </registryKey>
    <registryKey keyName="HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SeCEdit\Reg Values\MACHINE/System/CurrentControlSet/Services/Netlogon/Parameters/MaximumPasswordAge">
      <registryValue name="ValueType" valueType="REG_DWORD" value="0x00000004" />
      <registryValue name="DisplayType" valueType="REG_DWORD" value="0x00000001" />
      <registryValue name="DisplayName" valueType="REG_SZ" value="@wsecedit.dll,-59017" />
      <registryValue name="DisplayUnit" valueType="REG_SZ" value="@wsecedit.dll,-59093" />
      <securityDescriptor name="SCE_REG_DEFAULT_SDDL" />
    </registryKey>
    <registryKey keyName="HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SeCEdit\Reg Values\MACHINE/System/CurrentControlSet/Services/Netlogon/Parameters/RefusePasswordChange">
      <registryValue name="ValueType" valueType="REG_DWORD" value="0x00000004" />
      <registryValue name="DisplayType" valueType="REG_DWORD" value="0x00000000" />
      <registryValue name="DisplayName" valueType="REG_SZ" value="@wsecedit.dll,-59012" />
      <securityDescriptor name="SCE_REG_DEFAULT_SDDL" />
    </registryKey>
    <registryKey keyName="HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SeCEdit\Reg Values\MACHINE/System/CurrentControlSet/Services/Netlogon/Parameters/RequireSignOrSeal">
      <registryValue name="ValueType" valueType="REG_DWORD" value="0x00000004" />
      <registryValue name="DisplayType" valueType="REG_DWORD" value="0x00000000" />
      <registryValue name="DisplayName" valueType="REG_SZ" value="@wsecedit.dll,-59018" />
      <securityDescriptor name="SCE_REG_DEFAULT_SDDL" />
    </registryKey>
    <registryKey keyName="HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SeCEdit\Reg Values\MACHINE/System/CurrentControlSet/Services/Netlogon/Parameters/VulnerableChannelAllowList">
      <registryValue name="ValueType" valueType="REG_DWORD" value="0x00000004" />
      <registryValue name="DisplayType" valueType="REG_DWORD" value="0x00000002" />
      <registryValue name="DisplayName" valueType="REG_SZ" value="@wsecedit.dll,-59165" />
      <securityDescriptor name="SCE_REG_DEFAULT_SDDL" />
    </registryKey>
    <registryKey keyName="HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SeCEdit\Reg Values\MACHINE/System/CurrentControlSet/Services/Netlogon/Parameters/RequireStrongKey">
      <registryValue name="ValueType" valueType="REG_DWORD" value="0x00000004" />
      <registryValue name="DisplayType" valueType="REG_DWORD" value="0x00000000" />
      <registryValue name="DisplayName" valueType="REG_SZ" value="@wsecedit.dll,-59021" />
      <securityDescriptor name="SCE_REG_DEFAULT_SDDL" />
    </registryKey>
    <registryKey keyName="HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SeCEdit\Reg Values\MACHINE/System/CurrentControlSet/Services/Netlogon/Parameters/SealSecureChannel">
      <registryValue name="ValueType" valueType="REG_DWORD" value="0x00000004" />
      <registryValue name="DisplayType" valueType="REG_DWORD" value="0x00000000" />
      <registryValue name="DisplayName" valueType="REG_SZ" value="@wsecedit.dll,-59019" />
      <securityDescriptor name="SCE_REG_DEFAULT_SDDL" />
    </registryKey>
    <registryKey keyName="HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SeCEdit\Reg Values\MACHINE/System/CurrentControlSet/Services/Netlogon/Parameters/SignSecureChannel">
      <registryValue name="ValueType" valueType="REG_DWORD" value="0x00000004" />
      <registryValue name="DisplayType" valueType="REG_DWORD" value="0x00000000" />
      <registryValue name="DisplayName" valueType="REG_SZ" value="@wsecedit.dll,-59020" />
      <securityDescriptor name="SCE_REG_DEFAULT_SDDL" />
    </registryKey>
    <registryKey keyName="HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SeCEdit\Reg Values\MACHINE/System/CurrentControlSet/Services/Netlogon/Parameters/RestrictNTLMInDomain">
      <registryValue name="ValueType" valueType="REG_DWORD" value="0x00000004" />
      <registryValue name="DisplayType" valueType="REG_DWORD" value="0x00000003" />
      <registryValue name="DisplayName" valueType="REG_SZ" value="@wsecedit.dll,-59112" />
      <registryValue name="DisplayChoices" valueType="REG_MULTI_SZ" value="&quot;0|@wsecedit.dll,-59113&quot;,&quot;1|@wsecedit.dll,-59114&quot;,&quot;3|@wsecedit.dll,-59115&quot;,&quot;5|@wsecedit.dll,-59116&quot;,&quot;7|@wsecedit.dll,-59117&quot;" />
      <securityDescriptor name="SCE_REG_DEFAULT_SDDL" />
    </registryKey>
    <registryKey keyName="HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SeCEdit\Reg Values\MACHINE/System/CurrentControlSet/Services/Netlogon/Parameters/AuditNTLMInDomain">
      <registryValue name="ValueType" valueType="REG_DWORD" value="0x00000004" />
      <registryValue name="DisplayType" valueType="REG_DWORD" value="0x00000003" />
      <registryValue name="DisplayName" valueType="REG_SZ" value="@wsecedit.dll,-59132" />
      <registryValue name="DisplayChoices" valueType="REG_MULTI_SZ" value="&quot;0|@wsecedit.dll,-59137&quot;,&quot;1|@wsecedit.dll,-59138&quot;,&quot;3|@wsecedit.dll,-59139&quot;,&quot;5|@wsecedit.dll,-59140&quot;,&quot;7|@wsecedit.dll,-59141&quot;" />
      <securityDescriptor name="SCE_REG_DEFAULT_SDDL" />
    </registryKey>
    <registryKey keyName="HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SeCEdit\Reg Values\MACHINE/System/CurrentControlSet/Services/Netlogon/Parameters/DCAllowedNTLMServers">
      <registryValue name="ValueType" valueType="REG_DWORD" value="0x00000007" />
      <registryValue name="DisplayType" valueType="REG_DWORD" value="0x00000004" />
      <registryValue name="DisplayName" valueType="REG_SZ" value="@wsecedit.dll,-59119" />
      <securityDescriptor name="SCE_REG_DEFAULT_SDDL" />
    </registryKey>
    <registryKey keyName="HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SeCEdit\Reg Values\MACHINE/System/CurrentControlSet/Services/NTDS/Parameters/LDAPServerIntegrity">
      <registryValue name="ValueType" valueType="REG_DWORD" value="0x00000004" />
      <registryValue name="DisplayType" valueType="REG_DWORD" value="0x00000003" />
      <registryValue name="DisplayName" valueType="REG_SZ" value="@wsecedit.dll,-59013" />
      <registryValue name="DisplayChoices" valueType="REG_MULTI_SZ" value="&quot;1|@wsecedit.dll,-59014&quot;,&quot;2|@wsecedit.dll,-59015&quot;" />
      <securityDescriptor name="SCE_REG_DEFAULT_SDDL" />
    </registryKey>
    <registryKey keyName="HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SeCEdit\Reg Values\MACHINE/System/CurrentControlSet/Services/NTDS/Parameters/LdapEnforceChannelBinding">
      <registryValue name="ValueType" valueType="REG_DWORD" value="0x00000004" />
      <registryValue name="DisplayType" valueType="REG_DWORD" value="0x00000003" />
      <registryValue name="DisplayName" valueType="REG_SZ" value="@wsecedit.dll,-59161" />
      <registryValue name="DisplayChoices" valueType="REG_MULTI_SZ" value="&quot;0|@wsecedit.dll,-59162&quot;,&quot;1|@wsecedit.dll,-59163&quot;,&quot;2|@wsecedit.dll,-59164&quot;" />
      <securityDescriptor name="SCE_REG_DEFAULT_SDDL" />
    </registryKey>
    <registryKey keyName="HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SeCEdit\Reg Values\MACHINE/System/CurrentControlSet/Control/Lsa/pku2u/AllowOnlineID">
      <registryValue name="ValueType" valueType="REG_DWORD" value="0x00000004" />
      <registryValue name="DisplayType" valueType="REG_DWORD" value="0x00000000" />
      <registryValue name="DisplayName" valueType="REG_SZ" value="@wsecedit.dll,-59129" />
      <securityDescriptor name="SCE_REG_DEFAULT_SDDL" />
    </registryKey>
    <registryKey keyName="HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SeCEdit\Reg Values\MACHINE/Software/Microsoft/Windows/CurrentVersion/Policies/System/Kerberos/Parameters/SupportedEncryptionTypes">
      <registryValue name="ValueType" valueType="REG_DWORD" value="0x00000004" />
      <registryValue name="DisplayType" valueType="REG_DWORD" value="0x00000005" />
      <registryValue name="DisplayName" valueType="REG_SZ" value="@wsecedit.dll,-59121" />
      <registryValue name="DisplayFlags" valueType="REG_MULTI_SZ" value="&quot;1|@wsecedit.dll,-59122&quot;,&quot;2|@wsecedit.dll,-59123&quot;,&quot;4|@wsecedit.dll,-59124&quot;,&quot;8|@wsecedit.dll,-59125&quot;,&quot;16|@wsecedit.dll,-59126&quot;,&quot;2147483616|@wsecedit.dll,-59127&quot;" />
      <securityDescriptor name="SCE_REG_DEFAULT_SDDL" />
    </registryKey>
    <registryKey keyName="HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SeCEdit\Reg Values\MACHINE/System/CurrentControlSet/Services/LanManServer/Parameters/EnableS4U2SelfForClaims">
      <registryValue name="ValueType" valueType="REG_DWORD" value="0x00000004" />
      <registryValue name="DisplayType" valueType="REG_DWORD" value="0x00000003" />
      <registryValue name="DisplayName" valueType="REG_SZ" value="@wsecedit.dll,-59146" />
      <registryValue name="DisplayChoices" valueType="REG_MULTI_SZ" value="&quot;0|@wsecedit.dll,-59147&quot;,&quot;1|@wsecedit.dll,-59148&quot;,&quot;2|@wsecedit.dll,-59149&quot;" />
      <securityDescriptor name="SCE_REG_DEFAULT_SDDL" />
    </registryKey>
    <registryKey keyName="HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SeCEdit\Reg Values\MACHINE/Software/Microsoft/Windows/CurrentVersion/Policies/System/MaxDevicePasswordFailedAttempts">
      <registryValue name="ValueType" valueType="REG_DWORD" value="0x00000004" />
      <registryValue name="DisplayType" valueType="REG_DWORD" value="0x00000001" />
      <registryValue name="DisplayName" valueType="REG_SZ" value="@wsecedit.dll,-59154" />
      <registryValue name="DisplayUnit" valueType="REG_SZ" value="@wsecedit.dll,-59156" />
      <securityDescriptor name="SCE_REG_DEFAULT_SDDL" />
    </registryKey>
    <registryKey keyName="HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SeCEdit\Reg Values\MACHINE/Software/Microsoft/Windows/CurrentVersion/Policies/System/InactivityTimeoutSecs">
      <registryValue name="ValueType" valueType="REG_DWORD" value="0x00000004" />
      <registryValue name="DisplayType" valueType="REG_DWORD" value="0x00000001" />
      <registryValue name="DisplayName" valueType="REG_SZ" value="@wsecedit.dll,-59155" />
      <registryValue name="DisplayUnit" valueType="REG_SZ" value="@wsecedit.dll,-59095" />
      <securityDescriptor name="SCE_REG_DEFAULT_SDDL" />
    </registryKey>
    <registryKey keyName="HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SeCEdit\Reg Values\MACHINE/System/CurrentControlSet/Control/SAM/RelaxMinimumPasswordLengthLimits">
      <registryValue name="ValueType" valueType="REG_DWORD" value="0x00000004" />
      <registryValue name="DisplayType" valueType="REG_DWORD" value="0x00000000" />
      <registryValue name="DisplayName" valueType="REG_SZ" value="@wsecedit.dll,-755" />
      <securityDescriptor name="SCE_REG_DEFAULT_SDDL" />
    </registryKey>
    <registryKey keyName="HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SeCEdit\Reg Values\MACHINE/System/CurrentControlSet/Control/SAM/MinimumPasswordLengthAudit">
      <registryValue name="ValueType" valueType="REG_DWORD" value="0x00000004" />
      <registryValue name="DisplayType" valueType="REG_DWORD" value="0x00000001" />
      <registryValue name="DisplayName" valueType="REG_SZ" value="@wsecedit.dll,-756" />
      <registryValue name="DisplayUnit" valueType="REG_SZ" value="@wsecedit.dll,-59160" />
      <securityDescriptor name="SCE_REG_DEFAULT_SDDL" />
    </registryKey>
    <registryKey keyName="HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SeCEdit\Reg Values\MACHINE/System/CurrentControlSet/Services/NTDS/Parameters/LDAPServerEnforceIntegrity">
      <registryValue name="ValueType" valueType="REG_DWORD" value="0x00000004" />
      <registryValue name="DisplayType" valueType="REG_DWORD" value="0x00000000" />
      <registryValue name="DisplayName" valueType="REG_SZ" value="@wsecedit.dll,-59166" />
      <securityDescriptor name="SCE_REG_DEFAULT_SDDL" />
    </registryKey>
    <registryKey keyName="HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SeCEdit\Reg Values\MACHINE/System/CurrentControlSet/Control/SAM/ComputerAccountReuseAllowList">
      <registryValue name="ValueType" valueType="REG_DWORD" value="0x00000004" />
      <registryValue name="DisplayType" valueType="REG_DWORD" value="0x00000002" />
      <registryValue name="DisplayName" valueType="REG_SZ" value="@wsecedit.dll,-59167" />
      <securityDescriptor name="SCE_REG_DEFAULT_SDDL" />
    </registryKey>
    <registryKey keyName="HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SeCEdit\Reg Values\MACHINE/System/CurrentControlSet/Control/SAM/RefuseDefaultMachinePwd">
      <registryValue name="ValueType" valueType="REG_DWORD" value="0x00000004" />
      <registryValue name="DisplayType" valueType="REG_DWORD" value="0x00000000" />
      <registryValue name="DisplayName" valueType="REG_SZ" value="@wsecedit.dll,-59172" />
      <securityDescriptor name="SCE_REG_DEFAULT_SDDL" />
    </registryKey>
    <registryKey keyName="HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SeCEdit\Reg Values\MACHINE/Software/Microsoft/Windows/CurrentVersion/Policies/System/RemoteAdminAllowList">
      <registryValue name="ValueType" valueType="REG_DWORD" value="0x00000007" />
      <registryValue name="DisplayType" valueType="REG_DWORD" value="0x00000003" />
      <registryValue name="DisplayName" valueType="REG_SZ" value="@wsecedit.dll,-59184" />
      <securityDescriptor name="SCE_REG_DEFAULT_SDDL" />
    </registryKey>
  </registryKeys>
  <asmv3:configuration xmlns:asmv3="urn:schemas-microsoft-com:asm.v3" xmlns:wcm="http://schemas.microsoft.com/WMIConfig/2002/State">
    <asmv3:configurationSchema>
      <xsd:schema xmlns="Microsoft-Windows-Security-Security Configuration Engine client" targetNamespace="Microsoft-Windows-Security-Security Configuration Engine client">
        <xsd:element default="960" name="MaxNoGPOListChangesInterval" type="xsd:unsignedInt" wcm:accessControl="SCE_REG_DEFAULT_SDDL" wcm:handler="regkey('HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions\{827D319E-6EAC-11D2-A4EA-00C04F79F83A}')" wcm:legacyType="REG_DWORD" />
      </xsd:schema>
    </asmv3:configurationSchema>
    <asmv3:metadata />
  </asmv3:configuration>
  <trustInfo>
    <security>
      <accessControl>
        <securityDescriptorDefinitions>
          <securityDescriptorDefinition name="SCE_REG_DEFAULT_SDDL" sddl="D:P(A;CI;KA;;;BA)(A;CIIO;KA;;;CO)(A;CI;KA;;;SY)(A;CI;KR;;;BU)" operationHint="replace" />
          <securityDescriptorDefinition name="SCE_REG_DEFAULT_LOWBOX_SDDL" sddl="D:P(A;CI;KA;;;BA)(A;CIIO;KA;;;CO)(A;CI;KA;;;SY)(A;CI;KR;;;BU)(A;CI;KR;;;S-1-15-2-1)(A;CI;KR;;;S-1-15-3-1024-1065365936-1281604716-3511738428-1654721687-432734479-3232135806-4053264122-3456934681)" operationHint="replace" />
          <securityDescriptorDefinition name="WRP_PARENT_DIR_DEFAULT_SDDL" sddl="O:S-1-5-80-956008885-3418522649-1831038044-1853292631-2271478464G:S-1-5-80-956008885-3418522649-1831038044-1853292631-2271478464D:P(A;CI;GA;;;S-1-5-80-956008885-3418522649-1831038044-1853292631-2271478464)(A;;0x1301bf;;;SY)(A;IOCIOI;GA;;;SY)(A;;0x1301bf;;;BA)(A;IOCIOI;GA;;;BA)(A;CIOI;GRGX;;;BU)(A;OICIIO;GA;;;CO)(A;CIOI;GRGX;;;S-1-15-2-1)(A;CIOI;GRGX;;;S-1-15-2-2)" operationHint="replace" />
          <securityDescriptorDefinition name="WRP_FILE_DEFAULT_SDDL" sddl="O:S-1-5-80-956008885-3418522649-1831038044-1853292631-2271478464G:S-1-5-80-956008885-3418522649-1831038044-1853292631-2271478464D:P(A;;FA;;;S-1-5-80-956008885-3418522649-1831038044-1853292631-2271478464)(A;;GRGX;;;BA)(A;;GRGX;;;SY)(A;;GRGX;;;BU)(A;;GRGX;;;S-1-15-2-1)(A;;GRGX;;;S-1-15-2-2)S:(AU;FASA;0x000D0116;;;WD)" operationHint="replace" description="Default SDDL for Windows Resource Protected file" />
        </securityDescriptorDefinitions>
      </accessControl>
    </security>
  </trustInfo>
  <imaging>
    <sysprepInformation>
      <sysprepProvider stage="specialize">
        <sysprepOrder order="0x0600" />
        <sysprepModule methodName="SceSysPrep" moduleName="$(runtime.system32)\scecli.dll" moduleType="online" />
        <sysprepModule methodName="SceSysPrepOffline" moduleName="$(runtime.system32)\scecli.dll" moduleType="offline" />
      </sysprepProvider>
    </sysprepInformation>
  </imaging>
  <memberships>
    <categoryMembership>
      <id name="Microsoft.Windows.Categories" version="1.0.0.0" publicKeyToken="365143bb27e7ac8b" typeName="BootRecovery" />
    </categoryMembership>
  </memberships>
  <localization>
    <resources culture="en-US">
      <stringTable>
        <string id="displayName" value="Security Configuration Engine Client" />
        <string id="description" value="Provides standalone as well as group policy based configuration and analysis of security policies.  Also supports the creation of such policies files." />
      </stringTable>
    </resources>
  </localization>
</assembly>