Some links on this page are affiliate links: if you buy through them we may earn a commission, at no extra cost to you.
The Local Group Policy Editor is Windows’ graphical tool for changing policy settings on one computer. Open it by pressing Windows + R, entering gpedit.msc, and pressing Enter. It is supported on Windows Pro, Enterprise, and Education editions; Microsoft says it is not available in Windows Home.
Before changing anything, check your edition with Win + R → winver. Local policies can affect security, privacy, updates, applications, and user access, so change one setting at a time and record its original state.
| # | Preview | Product | Price | |
|---|---|---|---|---|
| 1 |
|
Windows 11 For Dummies, 2nd Edition | $11.40 | Buy on Amazon |
| 2 |
|
Windows 11 Inside Out | $43.87 | Buy on Amazon |
| 3 |
|
The Complete Windows 11 Guide for Seniors: An easy, Step-by-Step Visual Guide for Beginners Packed... | $22.97 | Buy on Amazon |
| 4 |
|
Windows 11 All-in-One For Dummies, 2nd Edition | $27.49 | Buy on Amazon |
| 5 |
|
Teach Yourself VISUALLY Windows 11 | $17.39 | Buy on Amazon |
What the Local Group Policy Editor does
Local Group Policy Editor, launched with gpedit.msc, is a Microsoft Management Console snap-in for editing the local Group Policy Object on the current Windows computer. It is intended for configuring one PC, rather than deploying settings across an organization.
Microsoft’s overview of Windows configuration tools confirms the editor’s availability and opening methods: System configuration tools in Windows.
#1 Best Overall
Check your Windows edition first
- Press Windows + R.
- Enter
winver, then press Enter. - Record the Windows edition and version shown in the dialog.
You can also open Settings → System → About and check Windows specifications → Edition.
| Edition | Local Group Policy Editor | Important qualification |
|---|---|---|
| Windows Home | Not available according to Microsoft | Unofficial scripts are not a supported replacement. |
| Windows Pro | Expected to be available | Individual policies may still require a particular version or build. |
| Windows Enterprise and Education | Expected to be available | Policy applicability still varies by setting. |
A policy can appear in the editor but still be unsupported on a particular edition or Windows release. Check the applicability information for the individual policy in Microsoft’s ADMX Group Policy Policy CSP documentation.
Open Local Group Policy Editor
Method 1: Use Run
- Press Windows + R.
- Type
gpedit.msc. - Press Enter.
- Approve the User Account Control prompt if Windows displays one.
Method 2: Search from Start
- Open Start.
- Search for
gpedit.mscor Edit group policy. - Select Edit group policy.
Method 3: Add the snap-in through MMC
This method shows that the editor is an MMC snap-in and can be useful when working with a particular local computer or user policy object.
- Press Windows + R, enter
mmc, and press Enter. - Select File → Add/Remove Snap-in.
- Select Local Group Policy Editor, then choose Add.
- Choose Local computer to edit the current PC.
- Use the browse options if you need to select another computer or a specific local user policy object.
- Select Finish, then OK.
Microsoft describes this MMC behavior in its documentation for the Local Group Policy Editor.
Understand the console tree
Local Computer Policy
├── Computer Configuration
│ ├── Software Settings
│ ├── Windows Settings
│ └── Administrative Templates
└── User Configuration
├── Software Settings
├── Windows Settings
└── Administrative Templates
Computer Configuration
Computer Configuration contains policies processed for the computer. These settings commonly affect all users of that PC, although the exact result depends on the policy and other management layers.
Rank #2
- Windows 11's new user experience, from reworked Start menu and Settings app to voice input
- The brand-new Windows 365 option for running Windows 11 as a Cloud PC, accessible from anywhere
- Major security and privacy enhancements that leverage the latest PC hardware
- Expert insight and options for installation, configuration, deployment, and management – from the individual to the enterprise
- Getting more productivity out of Windows 11's built-in apps and advanced Microsoft Edge browser
User Configuration
User Configuration contains policies processed for users. A setting here may affect the signed-in user or users associated with the local policy object being edited. Do not assume that every policy affects every account.
Administrative Templates
Administrative Templates contain registry-backed policy settings represented through ADMX and ADML template files. They provide a documented policy interface rather than requiring you to edit registry values manually. Microsoft explains the structure in its guide to Administrative Template policy settings.
Windows Settings
Windows Settings includes areas such as security settings, scripts, deployed printers, and policy-based Quality of Service. Security-specific controls may also be easier to find in Local Security Policy, opened with secpol.msc.
Find the policy you need
- Decide whether the setting should apply to the whole computer or to a user.
- Open the appropriate Computer Configuration or User Configuration branch.
- Look under Administrative Templates or Windows Settings.
- Select a category and inspect the policies in the right-hand pane.
- Double-click a policy to open its configuration dialog.
- Read the explanation, requirements, supported-version information, and any available options before changing it.
The policy title alone may be misleading. Its description normally explains what Enabled and Disabled mean, which Windows versions support it, and whether a sign-out or restart is required. Microsoft recommends reading the setting description before editing it; see its guide to working with Administrative Template settings.
What Not Configured, Enabled, and Disabled mean
- Not Configured
- This policy does not impose a value through the local policy setting. It does not necessarily mean that the related feature is enabled. Windows may use its default behavior, another policy source, or a direct configuration elsewhere.
- Enabled
- The policy is active, and its configured options apply.
- Disabled
- The policy explicitly prevents or turns off the behavior defined by that policy.
Pay close attention to the wording. A policy named Turn off feature X may need to be set to Enabled to turn feature X off. The buttons describe the policy’s state, not necessarily the feature’s state.
Rank #3
Change a policy safely
- Record the original state. Note whether it is Not Configured, Enabled, or Disabled, and record any option values.
- Read the complete description. Check requirements and supported editions or versions.
- Change one policy at a time. This makes testing and rollback possible.
- Select Apply, then OK.
- Refresh policy, sign out, or restart as required.
- Test the affected feature.
Do not assume that clicking OK immediately changes every related component. Microsoft warns that local policy changes can significantly affect system operation and should be planned and tested carefully.
Free tools Windows power users keep installed
One-click scans. No signup required.
Apply the change with Group Policy refresh
Open Command Prompt or Windows Terminal and run:
gpupdate /force
Wait for the command to finish. Then:
- Sign out and sign back in for policies that apply at user logon.
- Restart Windows when the policy documentation requires a restart.
- Test the setting only after the required refresh, sign-in, or restart.
gpupdate /force refreshes policy; it does not guarantee that every change takes effect immediately. User-rights changes may take effect at the next sign-in, while some computer policies require a restart. Microsoft documents these timing differences in its guidance on using Group Policy to enable an update and its security policy configuration guidance.
Undo a Group Policy change
The normal rollback operation is to return the exact policy to Not Configured:
- Open
gpedit.msc. - Return to the same policy.
- Select Not Configured.
- Select Apply, then OK.
- Run
gpupdate /force. - Sign out, sign in, or restart if needed.
- Test the feature again.
Do not set every unwanted policy to Disabled. Disabled can actively enforce the opposite behavior; Not Configured usually removes that specific local policy’s instruction.
Local Group Policy versus other Windows management tools
| Tool | Scope | Typical use |
|---|---|---|
Local Group Policy Editor (gpedit.msc) |
One computer | Configure policy settings on a standalone or workgroup PC. |
| Group Policy Management Console | Active Directory domain | Create, edit, link, and manage domain Group Policy Objects across an organization. |
Local Security Policy (secpol.msc) |
One computer | Password policies, auditing, user rights, and security options. |
Registry Editor (regedit.exe) |
One Windows installation | Directly edit registry values when a documented policy or settings interface is unavailable. |
| Microsoft Intune | Cloud-managed devices | Deploy and report on policy settings across enrolled organizational devices. |
Local Group Policy does not automatically configure other PCs. In a domain, domain policies and other management layers may override or reapply local settings. On cloud-managed devices, Intune’s Settings Catalog and ADMX-backed settings may correspond to policy paths visible in the local editor, but availability depends on the policy, Windows edition, and management configuration. See Microsoft’s Intune documentation for configuring ADMX settings.
What’s actually slowing this PC down?
Pick the symptom - the matching free tool is one click away.
Rank #4
Why gpedit.msc may be missing or ineffective
“Windows cannot find gpedit.msc”
- Check the edition with
winver. On Windows Home, the missing editor is expected under Microsoft’s current support guidance. - Use the exact command
gpedit.msc;gpeditandgpedit.exeare not equivalent commands. - Run
mmc, choose File → Add/Remove Snap-in, and check whether Local Group Policy Editor is listed. - Do not download an isolated
.mscfile from an unofficial website.
Windows Home users
Microsoft does not officially provide Local Group Policy Editor for Windows Home. Online batch files and scripts that copy components or make the editor appear are unsupported. They may fail, expose policies that do not function correctly, or leave the installation in an uncertain state. A visible console is not proof that the full feature is supported.
The policy appears to do nothing
Check the following in order:
- Did you edit Computer Configuration when the setting belongs under User Configuration, or vice versa?
- Did you run
gpupdate /force? - Does the policy require a sign-out, sign-in, or restart?
- Does the policy apply to your Windows edition and version?
- Is a domain policy, Intune profile, MDM, security product, script, or scheduled task imposing a different value?
- Is the feature itself available on this Windows installation?
A policy is missing
A missing policy may be caused by an edition or version restriction, outdated or mismatched ADMX/ADML templates, the policy being under the other configuration branch, or the device using a different management method. Check the individual policy’s applicability rather than assuming that every policy exists on every Windows edition.
A local setting keeps reverting
Repeated changes usually indicate that another management layer owns the setting. Investigate domain Group Policy, Intune or another MDM, endpoint-security software, configuration scripts, scheduled tasks, and logon scripts instead of repeatedly changing the local editor.
When to use another tool
Use Local Security Policy for security-specific settings
For password policies, auditing, user-rights assignments, and security options, open secpol.msc or navigate in Group Policy to:
The Tool Desk
Outbyte Driver Updater FREEFix the driver behind crashes, sound loss and screen glitchesFind Drivers →Outbyte PC Repair FREEClear out junk files and repair common Windows errorsFree Scan →Computer Configuration
└── Windows Settings
└── Security Settings
Use the Registry Editor only for a documented, policy-specific reason
Some Administrative Template policies map to registry values, but paths, names, data types, and supported versions vary by policy. A later policy refresh may overwrite a direct registry change. Do not use a generic registry recipe as a substitute for every Group Policy setting; verify the exact mapping in documentation for the named policy.
Best Value
Use domain Group Policy or Intune for multiple devices
Organizations generally need centralized assignment, reporting, deployment control, and auditing. Active Directory environments use domain GPOs linked to sites, domains, or organizational units. Cloud-managed environments may use Intune’s Settings Catalog or ADMX-backed profiles. Neither approach is necessary for a one-time change on a personal PC.
Common mistakes to avoid
- Trying to install an unofficial copy of Group Policy Editor on Windows Home.
- Confusing Local Group Policy Editor with domain Group Policy Management.
- Assuming Enabled always means enabling the feature named in the policy.
- Using Disabled when Not Configured is the correct rollback state.
- Editing User Configuration when the goal is a computer-wide setting.
- Expecting
gpupdate /forceto replace every restart or sign-in. - Changing several policies at once without recording their original states.
- Assuming a policy’s presence means it works on every Windows edition and build.
- Using registry instructions without verifying the mapping for the specific policy.
Frequently Asked Questions
Is Local Group Policy Editor available in Windows Home?
Microsoft says Local Group Policy Editor is not available in Windows Home. Unofficial scripts that attempt to add it are unsupported and may not provide working policy functionality.
What command opens Group Policy Editor?
Press Windows + R, enter gpedit.msc, and press Enter.
Do these 3 things before closing this tab:
1Fix the driver behind crashes, sound loss and screen glitches2Clear out junk files and repair common Windows errors3Scan for outdated or missing drivers - takes under a minuteHow do I undo a local policy change?
Return to the same policy, select Not Configured, apply the change, run gpupdate /force, and sign out or restart if required.
Does gpupdate /force restart Windows?
No. It refreshes policy but does not replace a restart or sign-in when the individual policy requires one.
Can I use Local Group Policy on a work computer?
You can open it only if your edition and permissions allow it, but a domain policy, Intune, MDM, security product, or script may override the local setting. Follow your organization’s management process.
What is the difference between gpedit.msc and secpol.msc?
gpedit.msc edits broader local Group Policy settings. secpol.msc focuses on local security policies such as auditing, password rules, user rights, and security options.
Windows Errors? Fix Them Before They Spread
Repair common Windows errors and clear accumulated junk for a smoother, more stable PC - no reinstall needed.Free scan · no reinstallOutdated Drivers Are Slowing You Down
One free scan finds every outdated or missing driver and matches the right update for your exact hardware.Free scan · exact hardware matchQuick Recap
Product prices and availability are accurate as of the date/time indicated and are subject to change. Any price and availability information displayed on Amazon at the time of purchase will apply.

