Special offer. See more information about Outbyte and uninstall instructions. Please review EULA and Privacy policy.

Some links on this page are affiliate links: if you buy through them we may earn a commission, at no extra cost to you.

The Local Group Policy Editor is Windows’ graphical tool for changing policy settings on one computer. Open it by pressing Windows + R, entering gpedit.msc, and pressing Enter. It is supported on Windows Pro, Enterprise, and Education editions; Microsoft says it is not available in Windows Home.

Before changing anything, check your edition with Win + R → winver. Local policies can affect security, privacy, updates, applications, and user access, so change one setting at a time and record its original state.

What the Local Group Policy Editor does

Local Group Policy Editor, launched with gpedit.msc, is a Microsoft Management Console snap-in for editing the local Group Policy Object on the current Windows computer. It is intended for configuring one PC, rather than deploying settings across an organization.

Special offer. See more information about Outbyte and uninstall instructions. Please review EULA and Privacy policy.

Microsoft’s overview of Windows configuration tools confirms the editor’s availability and opening methods: System configuration tools in Windows.

Check your Windows edition first

  1. Press Windows + R.
  2. Enter winver, then press Enter.
  3. Record the Windows edition and version shown in the dialog.

You can also open Settings → System → About and check Windows specifications → Edition.

Edition Local Group Policy Editor Important qualification
Windows Home Not available according to Microsoft Unofficial scripts are not a supported replacement.
Windows Pro Expected to be available Individual policies may still require a particular version or build.
Windows Enterprise and Education Expected to be available Policy applicability still varies by setting.

A policy can appear in the editor but still be unsupported on a particular edition or Windows release. Check the applicability information for the individual policy in Microsoft’s ADMX Group Policy Policy CSP documentation.

Open Local Group Policy Editor

Method 1: Use Run

  1. Press Windows + R.
  2. Type gpedit.msc.
  3. Press Enter.
  4. Approve the User Account Control prompt if Windows displays one.

Method 2: Search from Start

  1. Open Start.
  2. Search for gpedit.msc or Edit group policy.
  3. Select Edit group policy.

Method 3: Add the snap-in through MMC

This method shows that the editor is an MMC snap-in and can be useful when working with a particular local computer or user policy object.

Special offer. See more information about Outbyte and uninstall instructions. Please review EULA and Privacy policy.
  1. Press Windows + R, enter mmc, and press Enter.
  2. Select File → Add/Remove Snap-in.
  3. Select Local Group Policy Editor, then choose Add.
  4. Choose Local computer to edit the current PC.
  5. Use the browse options if you need to select another computer or a specific local user policy object.
  6. Select Finish, then OK.

Microsoft describes this MMC behavior in its documentation for the Local Group Policy Editor.

Understand the console tree

Local Computer Policy
├── Computer Configuration
│   ├── Software Settings
│   ├── Windows Settings
│   └── Administrative Templates
└── User Configuration
    ├── Software Settings
    ├── Windows Settings
    └── Administrative Templates

Computer Configuration

Computer Configuration contains policies processed for the computer. These settings commonly affect all users of that PC, although the exact result depends on the policy and other management layers.

Rank #2
Sale
Windows 11 Inside Out
  • Windows 11's new user experience, from reworked Start menu and Settings app to voice input
  • The brand-new Windows 365 option for running Windows 11 as a Cloud PC, accessible from anywhere
  • Major security and privacy enhancements that leverage the latest PC hardware
  • Expert insight and options for installation, configuration, deployment, and management – from the individual to the enterprise
  • Getting more productivity out of Windows 11's built-in apps and advanced Microsoft Edge browser

User Configuration

User Configuration contains policies processed for users. A setting here may affect the signed-in user or users associated with the local policy object being edited. Do not assume that every policy affects every account.

Administrative Templates

Administrative Templates contain registry-backed policy settings represented through ADMX and ADML template files. They provide a documented policy interface rather than requiring you to edit registry values manually. Microsoft explains the structure in its guide to Administrative Template policy settings.

Special offer. See more information about Outbyte and uninstall instructions. Please review EULA and Privacy policy.

Windows Settings

Windows Settings includes areas such as security settings, scripts, deployed printers, and policy-based Quality of Service. Security-specific controls may also be easier to find in Local Security Policy, opened with secpol.msc.

Find the policy you need

  1. Decide whether the setting should apply to the whole computer or to a user.
  2. Open the appropriate Computer Configuration or User Configuration branch.
  3. Look under Administrative Templates or Windows Settings.
  4. Select a category and inspect the policies in the right-hand pane.
  5. Double-click a policy to open its configuration dialog.
  6. Read the explanation, requirements, supported-version information, and any available options before changing it.

The policy title alone may be misleading. Its description normally explains what Enabled and Disabled mean, which Windows versions support it, and whether a sign-out or restart is required. Microsoft recommends reading the setting description before editing it; see its guide to working with Administrative Template settings.

What Not Configured, Enabled, and Disabled mean

Not Configured
This policy does not impose a value through the local policy setting. It does not necessarily mean that the related feature is enabled. Windows may use its default behavior, another policy source, or a direct configuration elsewhere.
Enabled
The policy is active, and its configured options apply.
Disabled
The policy explicitly prevents or turns off the behavior defined by that policy.

Pay close attention to the wording. A policy named Turn off feature X may need to be set to Enabled to turn feature X off. The buttons describe the policy’s state, not necessarily the feature’s state.

Change a policy safely

  1. Record the original state. Note whether it is Not Configured, Enabled, or Disabled, and record any option values.
  2. Read the complete description. Check requirements and supported editions or versions.
  3. Change one policy at a time. This makes testing and rollback possible.
  4. Select Apply, then OK.
  5. Refresh policy, sign out, or restart as required.
  6. Test the affected feature.

Do not assume that clicking OK immediately changes every related component. Microsoft warns that local policy changes can significantly affect system operation and should be planned and tested carefully.

Free tools Windows power users keep installed

One-click scans. No signup required.

Special offer. See more information about Outbyte and uninstall instructions. Please review EULA and Privacy policy.

Apply the change with Group Policy refresh

Open Command Prompt or Windows Terminal and run:

gpupdate /force

Wait for the command to finish. Then:

  • Sign out and sign back in for policies that apply at user logon.
  • Restart Windows when the policy documentation requires a restart.
  • Test the setting only after the required refresh, sign-in, or restart.

gpupdate /force refreshes policy; it does not guarantee that every change takes effect immediately. User-rights changes may take effect at the next sign-in, while some computer policies require a restart. Microsoft documents these timing differences in its guidance on using Group Policy to enable an update and its security policy configuration guidance.

Undo a Group Policy change

The normal rollback operation is to return the exact policy to Not Configured:

  1. Open gpedit.msc.
  2. Return to the same policy.
  3. Select Not Configured.
  4. Select Apply, then OK.
  5. Run gpupdate /force.
  6. Sign out, sign in, or restart if needed.
  7. Test the feature again.

Do not set every unwanted policy to Disabled. Disabled can actively enforce the opposite behavior; Not Configured usually removes that specific local policy’s instruction.

Local Group Policy versus other Windows management tools

Tool Scope Typical use
Local Group Policy Editor (gpedit.msc) One computer Configure policy settings on a standalone or workgroup PC.
Group Policy Management Console Active Directory domain Create, edit, link, and manage domain Group Policy Objects across an organization.
Local Security Policy (secpol.msc) One computer Password policies, auditing, user rights, and security options.
Registry Editor (regedit.exe) One Windows installation Directly edit registry values when a documented policy or settings interface is unavailable.
Microsoft Intune Cloud-managed devices Deploy and report on policy settings across enrolled organizational devices.

Local Group Policy does not automatically configure other PCs. In a domain, domain policies and other management layers may override or reapply local settings. On cloud-managed devices, Intune’s Settings Catalog and ADMX-backed settings may correspond to policy paths visible in the local editor, but availability depends on the policy, Windows edition, and management configuration. See Microsoft’s Intune documentation for configuring ADMX settings.

What’s actually slowing this PC down?

Pick the symptom - the matching free tool is one click away.

Special offer. See more information about Outbyte and uninstall instructions. Please review EULA and Privacy policy.
Independent reader supportYour contribution helps us test, update, and keep practical guides available for everyone.Support on Ko-Fi

Why gpedit.msc may be missing or ineffective

“Windows cannot find gpedit.msc”

  1. Check the edition with winver. On Windows Home, the missing editor is expected under Microsoft’s current support guidance.
  2. Use the exact command gpedit.msc; gpedit and gpedit.exe are not equivalent commands.
  3. Run mmc, choose File → Add/Remove Snap-in, and check whether Local Group Policy Editor is listed.
  4. Do not download an isolated .msc file from an unofficial website.

Windows Home users

Microsoft does not officially provide Local Group Policy Editor for Windows Home. Online batch files and scripts that copy components or make the editor appear are unsupported. They may fail, expose policies that do not function correctly, or leave the installation in an uncertain state. A visible console is not proof that the full feature is supported.

The policy appears to do nothing

Check the following in order:

  • Did you edit Computer Configuration when the setting belongs under User Configuration, or vice versa?
  • Did you run gpupdate /force?
  • Does the policy require a sign-out, sign-in, or restart?
  • Does the policy apply to your Windows edition and version?
  • Is a domain policy, Intune profile, MDM, security product, script, or scheduled task imposing a different value?
  • Is the feature itself available on this Windows installation?

A policy is missing

A missing policy may be caused by an edition or version restriction, outdated or mismatched ADMX/ADML templates, the policy being under the other configuration branch, or the device using a different management method. Check the individual policy’s applicability rather than assuming that every policy exists on every Windows edition.

A local setting keeps reverting

Repeated changes usually indicate that another management layer owns the setting. Investigate domain Group Policy, Intune or another MDM, endpoint-security software, configuration scripts, scheduled tasks, and logon scripts instead of repeatedly changing the local editor.

When to use another tool

Use Local Security Policy for security-specific settings

For password policies, auditing, user-rights assignments, and security options, open secpol.msc or navigate in Group Policy to:

Special offer. See more information about Outbyte and uninstall instructions. Please review EULA and Privacy policy.
Computer Configuration
└── Windows Settings
    └── Security Settings

Use the Registry Editor only for a documented, policy-specific reason

Some Administrative Template policies map to registry values, but paths, names, data types, and supported versions vary by policy. A later policy refresh may overwrite a direct registry change. Do not use a generic registry recipe as a substitute for every Group Policy setting; verify the exact mapping in documentation for the named policy.

Use domain Group Policy or Intune for multiple devices

Organizations generally need centralized assignment, reporting, deployment control, and auditing. Active Directory environments use domain GPOs linked to sites, domains, or organizational units. Cloud-managed environments may use Intune’s Settings Catalog or ADMX-backed profiles. Neither approach is necessary for a one-time change on a personal PC.

Common mistakes to avoid

  • Trying to install an unofficial copy of Group Policy Editor on Windows Home.
  • Confusing Local Group Policy Editor with domain Group Policy Management.
  • Assuming Enabled always means enabling the feature named in the policy.
  • Using Disabled when Not Configured is the correct rollback state.
  • Editing User Configuration when the goal is a computer-wide setting.
  • Expecting gpupdate /force to replace every restart or sign-in.
  • Changing several policies at once without recording their original states.
  • Assuming a policy’s presence means it works on every Windows edition and build.
  • Using registry instructions without verifying the mapping for the specific policy.

Frequently Asked Questions

Is Local Group Policy Editor available in Windows Home?

Microsoft says Local Group Policy Editor is not available in Windows Home. Unofficial scripts that attempt to add it are unsupported and may not provide working policy functionality.

What command opens Group Policy Editor?

Press Windows + R, enter gpedit.msc, and press Enter.

Special offer. See more information about Outbyte and uninstall instructions. Please review EULA and Privacy policy.

How do I undo a local policy change?

Return to the same policy, select Not Configured, apply the change, run gpupdate /force, and sign out or restart if required.

Does gpupdate /force restart Windows?

No. It refreshes policy but does not replace a restart or sign-in when the individual policy requires one.

Can I use Local Group Policy on a work computer?

You can open it only if your edition and permissions allow it, but a domain policy, Intune, MDM, security product, or script may override the local setting. Follow your organization’s management process.

What is the difference between gpedit.msc and secpol.msc?

gpedit.msc edits broader local Group Policy settings. secpol.msc focuses on local security policies such as auditing, password rules, user rights, and security options.

Special offer. See more information about Outbyte and uninstall instructions. Please review EULA and Privacy policy.

Quick Recap

SaleBestseller No. 1
SaleBestseller No. 2
Windows 11 Inside Out
Windows 11 Inside Out
Windows 11's new user experience, from reworked Start menu and Settings app to voice input
$43.87
SaleBestseller No. 5

Product prices and availability are accurate as of the date/time indicated and are subject to change. Any price and availability information displayed on Amazon at the time of purchase will apply.