faza Posted February 2, 2007 Posted February 2, 2007 I am trying to implement the Software Restriction but i am having difficulty getting it to work. E.G. If i just wanted Microsoft Office to work on all Pupil workstation i put all software to disallow and then put the path for Microsoft Word into the "New PAth Rule" unrestricted and do it that way. Faza
Mr_T Posted February 2, 2007 Posted February 2, 2007 If i have got you right... in AD user configuration/administrative templates/windows componats/system/run only allowed windows applications. add in the apps you want to work. that will mean only the apps you have specified should run for the users in the OU you have set the policy on
faza Posted February 2, 2007 Author Posted February 2, 2007 Its the softwate restriction option within Group Policy where you disallow certain files and folders
Norphy Posted February 2, 2007 Posted February 2, 2007 Does it work when you run the executable straight from the Office folder? If so, you need to put %allusersprofile% into your allowed list.
sahmeepee Posted February 2, 2007 Posted February 2, 2007 Yeah, or remove .lnk files from the list of executable file types. I'd go with Norphy's suggestion. The problem is that it needs to "run" the item in the start menu, then run the actual program. If your users are picking up some start menu items from the default user profile rather than all users (generally not good anyway, but that's another story) then you might need to loosen up restrictions on %userprofile%\Start Menu
Recommended Posts
Create an account or sign in to comment
You need to be a member in order to leave a comment
Create an account
Sign up for a new account in our community. It's easy!
Register a new accountSign in
Already have an account? Sign in here.
Sign In Now