Jump to content

Recommended Posts

Posted

This is my first question post!

 

I found that students are storing files (Music & Games) in C:\Documents and Settings\All Users\Documents - what is the best way of stopping this?

 

Cheers

Stuart

Posted

Do the students need to have access to the C: drive....

 

If you could just hide the drive from then in AD and not allow them access to it.

 

The other thing would be to protect all that is not needed by permissions.. and hide the folders and files they dont need access to

 

Cheers

N

Posted

Where is this Music and Game stuff coming from? There are copyright issues...

 

As others say, deny access to the C:\ drive and delete contents of My Documents on start up.

 

Make sure that the users are set up so that My Documents automatically maps to their Home Drive on the Server and not to the C:\drive of the PC they are using.

 

Make sure AUP has Music downloads as "death penalty" offence!

 

You might also want to check what download sites get through your firewall!

Posted

I have the following set:

 

Policy Setting:

Hide these specified drives in My Computer - Enabled - Restrict C drive only

 

Which other settings could I set?

 

Students dont need to have access to drive C, however applications are installed there and they need to be able to run them. I am fully aware of the copyright issues and the network file servers are clear of such materials.

 

When login scripts run are they run with administrator level access?

Guest kerrymoralee9280
Posted

You can block all access to C: and then open each program up that they need to run using a hash rule.

 

Elsie - Copyright issues?! I think that's one of the reason stuart is looking to block access to it!

Posted
had a kid trying to play a copyed dvd of borat on one of our machines today, took it off him and snaped it in front of him. He of course kicked off and i asked him if he would like me to report him for handling copyed movies. He went very quiet :)
Posted

What about just setting file permissions on this folder to read-only for normal users. That's why they can't can store files in Program Files or Windows folders.

 

If you have to give them elevated priviliges for any reason then you need something like DeepFreeze or Microsoft's Share Computer Toolkit

Posted

Domain\Users are members of the local "Users" group.

 

In any case you can also set the permissions explicitly for Domian\Users if you are connected to the network.

 

You can set file/folders permissions in a GPO. Can't remember the exact path though.

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now



×
×
  • Create New...