jmak Posted January 3, 2024 Posted January 3, 2024 I'm creating security policies for some users who I don't want to have access to cmd or powershell. I have them blocked in group policy for the required users, but they can still open Terminal. Is there any straightforward way to do that? At the minute I'm playing with deprovisioning the app for some users, but I haven't got my head around how I'll control who does it does not get it. Many thanks
ConTheITGuy Posted January 3, 2024 Posted January 3, 2024 Hi, you can block terminal on GPO using Application Control Policies I have it blocked for all pupils and staff. Thanks 1
ITGURU Posted January 7, 2024 Posted January 7, 2024 Exes blocked by do not allowed specific programs to be run policy wt.exe Windowsterminal.exe and the App is blocked via Applocker
kidpressingbuttons Posted February 26, 2024 Posted February 26, 2024 I have tried to block terminal in applocker and via the do not allow specific methods but nothing appears to be working?
jamiegrimwood Posted April 22, 2024 Posted April 22, 2024 It might sound simple and obvious but did you try gpupdate /force to force a refresh?
Leonao1 Posted April 22, 2024 Posted April 22, 2024 (edited) yea a gpupdate/force works really well Edited April 22, 2024 by Leonao1
georgeescott Posted April 30, 2024 Posted April 30, 2024 Although Don't run specified Windows applications would probably do, without AppLocker it wouldn't stop the user from having a renamed copy of it that they could run. We've blocked it via AppLocker but allow it for Administrators. Here's our AppX XML for it: 1
Recommended Posts
Create an account or sign in to comment
You need to be a member in order to leave a comment
Create an account
Sign up for a new account in our community. It's easy!
Register a new accountSign in
Already have an account? Sign in here.
Sign In Now