s4: regroup gpo modification in one function, set acl on files accordingly with ACL...