You can customize computer and user policies to force a specific visual style on a Windows system. Instead of using the Windows Group Policy Editor to configure the appropriate Administrative template or editing the registry keys on each system, you can create a JumpCloud policy to do this. This type of policy lets you control the display settings and prevents users from changing the display.
This policy applies the same screen settings that are in the control panel display Administrative template (controlpaneldisplay.admx) for Windows systems. If you force a visual style on a system, a user can’t apply a different style when trying to change themes in the Personalization Control Panel.
This is a device level policy that applies system-wide to the device and all of its users. You can bind this policy to individual devices or device groups. For policies that apply to a specific user's profile across devices, see Get Started: Policies and Learn More section of this article.
Considerations
- A restart of the device is required for the policy to take effect.
Images that Correspond to Background IDs
If you want to force a specific background, enter a Background ID number that corresponds to one of the following images:

Creating the Policy
To create a Control Panel Policy for Windows devices, do the following:
Selecting the Policy Template
- Log in to the JumpCloud Admin portal.
If your data is stored outside of the US, check which login URL you should be using depending on your region. If your organization uses LDAP, RADIUS, or requires firewall allow list configuration, the Fully Qualified Domain Names (FQDNs) will also be region specific. See JumpCloud Data Centers for the URLs, FQDNs, and IP addresses.
- Go to Device Management > Policy Management. The Policy Management page is displayed.
- On the Policy Management page, click +Add New.
- Select Device Policy to assign the policy to devices and device groups. On the New Device Policy page:
- Select the Windows tab.
- Search and select the policy name and click Configure. The Details tab of the policy is displayed.
- On the Details tab, configure the required policy configuration settings.
- (Optional) In the Policy Name field, enter a new name for the policy or keep the default. Policy names must be unique.
- (Optional) In the Policy Notes field, enter details such as creation date of the policy, and information on testing and deployment of the policy.
Configuring the Policy
You can configure these settings in this policy:
- Do not display the lock screen - Supported on Windows 8.1 only. This setting controls whether or not users see the lock screen.
- If you enable it, users who aren’t required to press CTRL + ALT + DEL before signing in see their user tile after locking their PC.
- If you clear it, users see a lock screen after locking their PC.
- Force a specific Start background - Supported on Windows 8.1 only. By default, users can change their Start menu appearance.
- To allow the default behavior, clear this option or enable it with a Background ID of 0.
- To prevent users from changing the Start menu, select this option and enter a number between 1-20. If the background you specify is not found, then the default (ID = 1) is used.
- Force a specific background and accent color - Supported on Windows 8.1 only. By default, users can change these colors. You can force Windows to use the colors you specify in hex as #RGB and prevent users from changing them.
- For example, the color Alice Blue is specified as #FFF0F8FF.
- See Microsoft’s Color Class documentation to learn more about a list of predefined colors in hex.
- This setting isn’t applied if the specified colors don’t meet a contrast ratio of 2:1 with white text.
- Force a specific default lock screen and logon image - Supported on Windows 8.1 and 10 Enterprise, Education, 2016/2019 Servers Editions. When no user is signed in, you can specify what’s displayed by enabling this and specifying an image. If the specified image isn’t available at user logon the default visual style loads.
- Prevent changing lock screen and logon image - Supported on Windows 8.1 only. By default, users can change the background image shown when the system is locked or displaying the logon screen.
- If you enable this setting, users can’t change their lock screen or logon image, and will see the default image.
- Prevent changing start menu background - Supported on Windows 8.1 only. By default, users can change the look of their start menu background, such as its color or accent. If you enable this setting, users see the default start menu background and colors and can’t change them.
- If the Force a specific background and accent color policy is also set, then those colors take precedence over this policy.
- If the Force a specific Start background policy is also set, then that background takes precedence over this policy.
- Prevent enabling lock screen camera - Supported on Windows 8.1 only. If you enable this setting:
- Prevent enabling lock screen slide show - Supported on Windows 8.1 only. If you enable this setting, users can’t modify slide show settings in PC Settings, and no slide show starts when the screen locks.
Applying the Policy
- (Optional) Select the Policy Groups tab. Select one or more policy groups where you want to add this policy.
- Select the Device Groups tab. Select one or more device groups where you want to apply this policy to. For device groups with multiple OS member types, the policy only applies when a user logs into a supported Windows device that is enrolled in MDM.
- Or, select the Devices tab. Select one or more devices where you want to apply this policy.
- Click Create Policy. A success message is displayed indicating the completion of policy creation.
Viewing Policy Status
- Select the Status tab.
- To see the last Result Log for a device where this policy is applied, click view.
- If any errors occur, they're listed in Exit Status. If you have an Exit Status of 0, no errors occurred when applying or enforcing this policy.