Group Policy : Run only
allowed Windows applications
At least
Microsoft Windows 2000
Limits the
Windows programs that users have permission to run on the computer. If you
enable this setting, users can only run programs that you add to the List of
Allowed Applications. This setting only prevents users from running programs
that are started by the Windows Explorer process. It does not prevent users
from running programs such as Task Manager, which are started by the system
process or by other processes. Also, if users have access to the command
prompt, Cmd.exe, this setting does not prevent them from starting programs in
the command window that they are not permitted to start by using Windows
Explorer. Note: It is a requirement for third-party applications with Windows
2000 or later certification to adhere to this setting. Note: To create a list
of allowed applications, click Show, click Add, and then enter the application
executable name (eg, Winword.exe, Poledit.exe, Powerpnt.exe).
USER
Group Policy Path :
Administrative Templates\System
Group Policy Registry Settings :
hkcu\software\microsoft\windows\currentversion\policies\explorer!restrictrun,
hkcu\software\microsoft\windows\currentversion\policies\explorer\restrictrun!{1,2,3,...}
0 التعليقات:
Post a Comment