The first is to check whether the computer set up a shared file, the method is simple, start-run-cmd, and then enter, under the DOS command input: NET share can be, as shown in the following figure:
So how to disable it?
Use the following method to resolve.
Methods to disable network sharing by using Group Policy to prevent Domain users from sharing folders, and Group Policy to turn off shared files.
1.1 Create ADM configuration, as follows, save as *.adm
CLASS MACHINE
CATEGORY!! Category1
CATEGORY!! Category2
POLICY!! PolicyName
EXPLAIN!! Defaultsharesexplain
KeyName "Systemcurrentcontrolsetserviceslanmanserverparameters"
VALUENAME "AutoShareWks"
VALUEON NUMERIC 1
Valueoff NUMERIC 0
End POLICY
End CATEGORY
End CATEGORY
[Strings]
category1= "Network"
Category2= "Sharing"
Policyname= "Administrativeshares"
Defaultsharesexplain= "Enables default workstation administrative shares if enabled or disables if disabled"
1.2 Open the Group Policy console, create a new users GPO, and then edit.
1.3 Then right click on Admin template, add template
Add the ADM file that you just entered.
1.4 After adding ADM, locate Group Policy to classic ADM
1.5 See the template just added has already appeared, so now is right click to enable stop share
Ok, this is done, and then just refresh the Group Policy on the client PC in the domain.
For domain management, it is more convenient to manage by Group Policy. However, because it is implemented by the relevant permissions of the operating system, once the user has been reversed to modify the Group Policy, you can easily open the shared file access. Therefore, we may consider adopting a different approach.
Method Two, the use of specialized shared file access control software, shared folder management software to shut down the network share.
At present, there are some computer file security management software, integrated computer-shared file management, can real-time monitoring, disabling access to shared folders, to prevent users to set the behavior of shared files. For example, there is a "trend to USB port management software" (Download Address:), is a complete ban on the use of U disk, mobile hard disk and mobile phone, such as USB storage device software, but also can prevent through mail, network, FTP file upload and QQ send files to send the computer files out of the behavior, Thus, the security of computer files is completely protected. The trend to USB interface disabled software integrates a "No file sharing" function, just tick to prohibit the computer to set up the sharing of files in real-time behavior, as shown in the following figure:
Photo: Prohibit computer file sharing
In addition, to prevent some skilled personnel from attempting to modify the registry, to modify Group Policy to bypass system management, the trend to USB disable software also integrates the prohibition to modify the registry, prohibit the modification of Group Policy, prohibit the ability to modify the startup items, and so on, so as not only to prevent the computer to set up the behavior of shared files, It also protects the security of the operating system and the software itself.
In short, to prohibit the computer to share files, to prevent the sharing of file leaks, on the one hand, through Group Policy, registry and other operating system functions to achieve, on the other hand, can also use some computer file management software to achieve. Concrete use of which method, enterprises and institutions can according to their own needs to make a choice.