3.1.1 Abstract Data Model

The administrative-side plug-in maintains no state. It loads all the settings, as specified in section 2.2, in a <name of setting, value of setting> pair in memory.

When using the administrative UI, the administrative-side plug-in is used to interact with the Group Policy framework, as specified in [MS-GPOL]. It determines the physical location of the security policy wanted based on the abstract data model, creates a new policy or opens an existing policy as appropriate, and displays it to the administrator. After the administrator modifies the policy, the changes are propagated back into the policy at the location wanted.