This message was deleted.
# _general
s
This message was deleted.
j
If you're in synchronous mode, then the event logs should help you out (or Citrix Director/uberAgent/ControlUp/A.N.Other monitoring tool)
The order of processing is also important here. Admin Templates always goes first. GPP Registry goes later
n
I ran AnalyzeLogonDuration to get this data, but I don't know which phase is which:
j
No Admin Templates at all?
As you can see though GPP (Scheduled Tasks, Registry, Shortcuts) go later
n
I assume Registry is a normal GPO setting, and Group Policy Registry is the actual registry entries
j
Here's a processing order list. yes you are correct
Registry I think is Registry permissions in Security GPO
n
Yeah, not terribly worried about which ones go in which order, just trying to see which would consume more time. Somebody here got into the habit of actually adding the registry values for GPO settings that are actually in the templates. I have no idea why.
One policy has 92 registry entries for Chrome extensions. Ninety. Two.
👀 2
🤦‍♂️ 1
That's one GPO setting that contains a list if you use it like a normal human being.
j
GPP stuff has to load each DLL individually and then process it. Shortcuts I remember is particularly onerous for that part
And "one CSE per policy" is much more efficient, as you probably know
n
Awesome, that's basically what I thought.
I made some suggestions for optimizing our logon process here, and I'm pretty sure I just made some new enemies, haha.
But whatever, some of this stuff makes no sense, and whoever implemented it should feel shame.
⬆️ 2