MkII Posted March 23, 2007 Posted March 23, 2007 I've set file restriction policies to the Student PCs OU - but it seems to have applied to the whole domain. Anyone know if this is one of those policies that does that - like the password strength policy? Ta!
Uraken Posted March 23, 2007 Posted March 23, 2007 Can you explain what you have done at what level in you OU structure policies should only apply to those ou's that it is linked to.
NetworkGeezer Posted March 23, 2007 Posted March 23, 2007 Make sure the policy isn't linked to domain.
Uraken Posted March 23, 2007 Posted March 23, 2007 yeah good point network geezer this type of seting should be in its own gpo which can then be applied to a test machine first then rolled out to other OU'S. Incidenatlly did you manage to block exe's etc at different levels i'm stuck my policy blocks exe etc at b:\ but not at b:\folder ??
MkII Posted March 23, 2007 Author Posted March 23, 2007 Thanks Uraken I'll check the links... hmm - only student logins I set up a GPO on the Student PCs OU to set restrictions - computer config I then set up in user config to apply it on to the student users in the Student OU (with inheritance blocked) NWG: The policy isn't linked to the Domain The structure is like this: Domain > PCs > Student PCs Domain > Students Uraken - I think ppl say that you have to specify each subfolder: e:\ e:\*\ e:\*\*\ ...and so on (just by the wildcard I think - not the actual names)
Uraken Posted March 23, 2007 Posted March 23, 2007 Ah thanks mark i just did two entrys b:\ b:\*.exe and now everything is blocked brilliant.
Recommended Posts
Create an account or sign in to comment
You need to be a member in order to leave a comment
Create an account
Sign up for a new account in our community. It's easy!
Register a new accountSign in
Already have an account? Sign in here.
Sign In Now