Network and Classroom Management Thread, Forbidding users to save files to desktop. in Technical; Good Afternoon ladies & gents.
I was wondering if there was such a policy we could send out to our ...
-
26th May 2010, 03:51 PM #1 Forbidding users to save files to desktop.
Good Afternoon ladies & gents.
I was wondering if there was such a policy we could send out to our teachers that forbids any files being saved to their desktop forcing to their docs area, but allow shortcuts to installed programs through? Had a brief look through the microsoft spreadsheet, but nothing jumps out at me
Any ideas on this one gang?
Andy T
-
-
IDG Tech News
-
26th May 2010, 03:55 PM #2 Why not use GP to redirect the Desktop to one central location on the server, apply NTFS ACL permissions to that folder so that staff can only read, this way you have controll over what is on their desktop from one central location, all the program shortcuts can either go on the desktop of a seperate re-directed startmenu.
1. Edit user GPO
2. Go to user config
3. Go to folder redirection
4. Right click folder redirection and click properties.
5. Redirect all to same location
6. Create a folder on your server, share is as "Desktop" and apply NTFS ACL's to give staff read permission.
7. Enter the address into the location as \\servername\desktop
8. Sit back and relax.
D
Last edited by danrhodes; 26th May 2010 at 04:00 PM.
-
Thanks to danrhodes from:
andyturpie (28th May 2010)
-
26th May 2010, 04:02 PM #3 
Originally Posted by
danrhodes
Why not use
GP to redirect the Desktop to one central location on the server, apply NTFS ACL permissions to that folder so that staff can only read, this way you have controll over what is on their desktop from one central location, all the program shortcuts can either go on the desktop of a seperate re-directed startmenu.
1. Edit user GPO
2. Go to user config
3. Go to folder redirection
4. Right click folder redirection and click properties.
5. Redirect all to same location
6. Create a folder on your server, share is as "Desktop" and apply NTFS ACL's to give staff read permission.
7. Enter the address into the location as \\servername\desktop
8. Sit back and relax.
D
That is how we do it here.
-
Thanks to ICT_GUY from:
andyturpie (28th May 2010)
-
26th May 2010, 04:21 PM #4 you could block it entirely with a script that just removed their access to %userprofile%\desktop on logon but that would stop shortcuts as well
what about folder redirection to \\server\desktops\staff\%username% and then enabling a Quota of say 1mb
-
-
26th May 2010, 04:28 PM #5 
Originally Posted by
danrhodes
Why not use
GP to redirect the Desktop to one central location on the server, apply NTFS ACL permissions to that folder so that staff can only read, this way you have controll over what is on their desktop from one central location, all the program shortcuts can either go on the desktop of a seperate re-directed startmenu.
1. Edit user GPO
2. Go to user config
3. Go to folder redirection
4. Right click folder redirection and click properties.
5. Redirect all to same location
6. Create a folder on your server, share is as "Desktop" and apply NTFS ACL's to give staff read permission.
7. Enter the address into the location as \\servername\desktop
8. Sit back and relax.
D
This is how I would do it too
-
Thanks to Hightower from:
andyturpie (28th May 2010)
-
27th May 2010, 11:31 AM #6 
Originally Posted by
danrhodes
Why not use
GP to redirect the Desktop to one central location on the server, apply NTFS ACL permissions to that folder so that staff can only read, this way you have controll over what is on their desktop from one central location, all the program shortcuts can either go on the desktop of a seperate re-directed startmenu.
1. Edit user GPO
2. Go to user config
3. Go to folder redirection
4. Right click folder redirection and click properties.
5. Redirect all to same location
6. Create a folder on your server, share is as "Desktop" and apply NTFS ACL's to give staff read permission.
7. Enter the address into the location as \\servername\desktop
8. Sit back and relax.
D
This + use FSRM if you are Server 2003R2/2008.
You can then stop all kinds of files being saved on the desktop as well but still permit shortcuts, perhaps even throw a quota in there also? 
Az
-
Thanks to azrael78 from:
andyturpie (28th May 2010)
-
27th May 2010, 12:27 PM #7 Sounds like a good mix :-)
-
-
27th May 2010, 12:30 PM #8 
Originally Posted by
danrhodes
Why not use
GP to redirect the Desktop to one central location on the server, apply NTFS ACL permissions to that folder so that staff can only read, this way you have controll over what is on their desktop from one central location, all the program shortcuts can either go on the desktop of a seperate re-directed startmenu.
1. Edit user GPO
2. Go to user config
3. Go to folder redirection
4. Right click folder redirection and click properties.
5. Redirect all to same location
6. Create a folder on your server, share is as "Desktop" and apply NTFS ACL's to give staff read permission.
7. Enter the address into the location as \\servername\desktop
8. Sit back and relax.
D
That's how I do it, and whilst I sit back and relax, I also listen to the complaints come rolling in about lost files etc, but I warn them that it is at their own detriment if they do not save it to the my documents folder like I tell them too!
-
Thanks to nephilim from:
andyturpie (28th May 2010)
-
28th May 2010, 08:22 AM #9 Guys sounds like a plan, thanks again for your ideas - much appriciated
-
-
28th May 2010, 08:41 AM #10 No problem, that's what were here for :-)
-
SHARE:
Similar Threads
-
Replies: 5
Last Post: 23rd June 2010, 07:04 PM
-
By OutToLunch in forum Windows Server 2000/2003
Replies: 3
Last Post: 26th May 2010, 03:38 PM
-
By maark in forum MIS Systems
Replies: 12
Last Post: 2nd February 2010, 09:59 AM
-
Replies: 0
Last Post: 28th September 2009, 10:06 AM
-
By bandgeekmafia78 in forum Windows
Replies: 2
Last Post: 11th June 2008, 04:10 PM
Thread Information
Users Browsing this Thread
There are currently 1 users browsing this thread. (0 members and 1 guests)
Posting Permissions
- You may not post new threads
- You may not post replies
- You may not post attachments
- You may not edit your posts
-
Forum Rules