dblight Posted April 28, 2016 Posted April 28, 2016 This one is odd... All GPO's are being applied and the store has been disabled and AppLocker is set to deny and the service is running...... User can still access the store...... Doing my head in!
Arthur Posted April 28, 2016 Posted April 28, 2016 Does it make any difference if you log in as a brand new user?
dblight Posted April 28, 2016 Author Posted April 28, 2016 No not at all, all users. Removed their local profile, created new and store is still on start menu which I can live with but it works. Can't have that!
dfergusson Posted April 29, 2016 Posted April 29, 2016 Applocker should work in blocking it, does for us. I would double check that Package App Rules is set to Enforce Rules and Not Audit Only. Also check Package Version set to * If they all set correctly, I would look at Event Viewer, Applocker, Pacakge App-Execution
alfatec Posted April 29, 2016 Posted April 29, 2016 I use slightly different method. I edit the install.wim from the Windows 10 edu 1511 iso and remove the default apps, just leaving photo's and calculator. Then rebuild iso and make bootable DVD. Here is the link: https://gallery.technet.microsoft.com/Removing-Built-in-apps-65dc387b?tduid=(569e0478750b11eef92bc61924d27191)(256380)(2459594)(TnL5HPStwNw-zWYNrEBXJwDBJFGQV46sng)(). Once you build your reference image go to gpedit.msc and follow these instructions to get rid of the Microsoft customer experience apps, like Candy Crush, Twitter etc. https://blogs.technet.microsoft.com/mniehaus/2015/11/23/seeing-extra-apps-turn-them-off/. Now when you sysprep and redploy your image no more annoying apps apart from the ones you want. 2
dblight Posted April 29, 2016 Author Posted April 29, 2016 I use slightly different method. I edit the install.wim from the Windows 10 edu 1511 iso and remove the default apps, just leaving photo's and calculator. Then rebuild iso and make bootable DVD. Here is the link: https://gallery.technet.microsoft.com/Removing-Built-in-apps-65dc387b?tduid=(569e0478750b11eef92bc61924d27191)(256380)(2459594)(TnL5HPStwNw-zWYNrEBXJwDBJFGQV46sng)(). Once you build your reference image go to gpedit.msc and follow these instructions to get rid of the Microsoft customer experience apps, like Candy Crush, Twitter etc. https://blogs.technet.microsoft.com/mniehaus/2015/11/23/seeing-extra-apps-turn-them-off/. Now when you sysprep and redploy your image no more annoying apps apart from the ones you want. Just looking at this now thanks!
dblight Posted May 10, 2016 Author Posted May 10, 2016 Sorted it in the end and just removed the store completely. Win 10 image all but done and ready to roll out!
alfatec Posted May 11, 2016 Posted May 11, 2016 I think it is the best option in the long run. Even if they bring out a new Redstone build I will be sticking with 1511 until they bring out Redstone build 3. I think they are going to be bringing a new one out every year!!!!
RLR Posted May 11, 2016 Posted May 11, 2016 I use slightly different method. I edit the install.wim from the Windows 10 edu 1511 iso and remove the default apps, just leaving photo's and calculator. Then rebuild iso and make bootable DVD. Here is the link: https://gallery.technet.microsoft.com/Removing-Built-in-apps-65dc387b?tduid=(569e0478750b11eef92bc61924d27191)(256380)(2459594)(TnL5HPStwNw-zWYNrEBXJwDBJFGQV46sng)(). Once you build your reference image go to gpedit.msc and follow these instructions to get rid of the Microsoft customer experience apps, like Candy Crush, Twitter etc. https://blogs.technet.microsoft.com/mniehaus/2015/11/23/seeing-extra-apps-turn-them-off/. Now when you sysprep and redploy your image no more annoying apps apart from the ones you want. What do you use to rebuild your iso?
Decimas6 Posted May 11, 2016 Posted May 11, 2016 Are you using pro Microsoft no longer allows administrators to block Windows Store access in Windows 10 Pro | ZDNet
alfatec Posted May 11, 2016 Posted May 11, 2016 Once I have edited the install.wim file I place it back in the Windows 1511 folder. I then use 'imgburn' to create a bootable DVD. I am using Windows 1511 education not Pro.
RLR Posted May 11, 2016 Posted May 11, 2016 Once I have edited the install.wim file I place it back in the Windows 1511 folder. I then use 'imgburn' to create a bootable DVD. I am using Windows 1511 education not Pro. Yep. I found imgburn after a lot of googleing. Everything that was coming up where just trials or needed payment. Thanks
alfatec Posted May 11, 2016 Posted May 11, 2016 The Official ImgBurn Website The program is Freeware.
BACA Posted May 27, 2016 Posted May 27, 2016 I have found that the GPO recommended by MS doesn't work and I'm on Edu build. This does though SOLVED: Video: How to Disable the Store in Windows 10 Pro Using Group Policy GPO - Up & Running Technologies Calgary 1
DJ-1701 Posted May 27, 2016 Posted May 27, 2016 The Official ImgBurn Website The program is Freeware. I would point out that the ImgBurn installer has OpenCandy as part of it's installation process. 7zip is able to nab the ImgBurn.exe from the Setup executable to avoid this.
gaz003 Posted October 17, 2016 Posted October 17, 2016 Can anyone help, I am having the same issue? I have added the group policy setting to block access to the store for the students, but even though we have windows 10 education installed students can browse the store. I have tried the applocker program but again it doesn't seem to work? I have checked event viewer but cannot see any group policy errors. I am so close now but this is the last setting I just cannot get my head around. If anyone can help at all it would greatly be appreciated
turboturbet Posted October 18, 2016 Posted October 18, 2016 I have found a way around this but it requires the latest admx templates. There is a option to display the private store within the Windows Store App. [TABLE=width: 2426] [TR] [TD=class: xl65, width: 331]Only display the private store within the Windows Store app[/TD] [TD=class: xl65, width: 178]enabled[/TD] [TD=class: xl66, width: 1214]Computer Configuration\Administrative Templates\Windows Components\Store[/TD] [TD=class: xl65, width: 703]Stops the Windows Store from loading..[/TD] [/TR] [/TABLE] When the Windows Store is loaded it will just show a white page and say that the store app is blocked and wont show the update icon in the top right hand corner.
DavR Posted October 19, 2016 Posted October 19, 2016 (edited) I have found that the GPO recommended by MS doesn't work and I'm on Edu build. This does though SOLVED: Video: How to Disable the Store in Windows 10 Pro Using Group Policy GPO - Up & Running Technologies Calgary I'm only testing Windows 10 at the moment, deployment is a waaaaaaay off, but I found myself tearing my hair out over Windows Store. The group policy settings at best give you an application blocked and ugly error code when you try and run Windows Store, which you can bypass by simply logging in! This is on Enterprise and Education - what kind of enterprise allows their staff to buy programs on a whim?! Of course we want rid of the store. I eventually went nuclear and used Software Restriction Policies as in the link above to kill it off. This works REALLY well, I've used it for a lot of the other junk apps (ie, most of the apps). I'm probably leaning towards uninstalling them when I create a build, although I need to be convinced that the uninstall would be permanent first. Edited October 19, 2016 by DavR
turboturbet Posted October 19, 2016 Posted October 19, 2016 I am the same. Just testing at the moment. Apparently this has been a issue since the Windows 8.1 days. What i posted does work in Win 10 1511 and 1607 and just gives a white screen and wont prompt a login prompt.
Recommended Posts
Create an account or sign in to comment
You need to be a member in order to leave a comment
Create an account
Sign up for a new account in our community. It's easy!
Register a new accountSign in
Already have an account? Sign in here.
Sign In Now