Four, "desktop" settings
Windows desktops, like our desks, need to be sorted and cleaned frequently, and Group Policy is like our personal secretary, making desktop management a breeze. Let's take a look at a few practical configuration examples:
Location: "Group Policy console → user Configuration → admin templates
directly in the address bar. In addition, this setting does not prevent users from using programs to access these drives or their contents.
Advanced defense privileged users can use
System disk has important system files, can not let others casually modify or move. In particular, some partitions have important files, if only to hide the drive, other people can access, so of course not! The safest way to do this is to protect the associated drives and disallow access by users without permissio
this case, you only need to enable the Windows 2000 GUEST user. But Windows XP is facing this problem again, and the above method is no longer working. In fact, you still need to enable the Guest user and run the Group Policy Editor Program, choose "Local Computer Policy"> "Computer Configuration"> "Windows Settings"> "Security Settings"> "Local
periodic plan. If you do not set a schedule, download and install all updates at every morning.
Other optionsYou can also select "Disable" or "not configured. If you select "Disable", the Administrator must manually download and install all available updates from the Microsoft Windows Update Web site.If you select "Not Configured", the automatic update status is not specified at the
win8.1 in the Run window input gpedit.msc not open Group Policy solution
1, in this need to note that for the core version of the Win8.1 system, does not provide a "Group Policy editing" program. We can see if there is a "GPEDIT" in our computer in the following ways. MSC "Program:
2, open the "Run" dialog box (press
as follows:
In the "Windows XP Group Policy" window, expand "user configuration"> "management template"> "Taskbar and" start "menu ", in the window on the right, locate and enable the "Close personalized menu" option, and click "OK.
After this policy is enabled, menus are not customized and all menu items are displayed in standard order. In addition, this settin
Instance environment:L an ad domain (Active Directory) environment in the enterprise.Administrative department "user A" logs in to a computer within the company.• Limit the use of USB to user A through Group Policy.1. In the Group Policy Management editor, set deny all permi
When I used to work in the office, a lot of people like to take things to me to print, the first time is due to face embarrassed refused, but later this kind of thing became a habit, cause sometimes my own work can not be completed on time, so I was in the Win7 system to prohibit the use of USB devices, Sometimes, we also encounter in the operation of the computer need to prohibit the USB device to do some
running dialog box, enter the string command regedit and click OK to open the registry editing window;
2. In this window, expand the Registry branch HKEY_CURRENT_USER \ Software \ Policies \ Microsoft \ MMC,
3. Modify RestrictToPermittedSnapins to 0 to use the "gpedit. msc" command.
4. Modify RestrictToPermittedSnapins to 1 to disable the "gpedit. msc" command.
5. Expand the Registry branch HKEY_CURRENT_USER \ Software \ Policies \ Microsoft \ MMC \
In some cases, for security and anti-virus purposes, we need to disable the USB device in WinXP. refer to the following methods.
If the USB interface is not connected to a USB device, you can directly modify the user or group's "deny" permission on the USB stor. pnf and
Menu, click "run", or directly open the "run" window in Win + R, and enter "gpedit. msc, or open the Windows toolbox in the "utility" of the cube optimization master to find the Group Policy. Expand Computer Configuration> management template> system> device installation restrictions ". (1) Open "Prohibit installation of devices not described by other policies" on the right, select "enabled" in the pop-up
When managing a larger network environment, network security is often the most energy-consuming link. Take the firewall configured with Windows XP SP2, if let network management for the network of computers to configure each, the workload will be very large, and in the details of the configuration is also prone to error. So, how can we improve the efficiency of firewall configuration in large-scale environment?
Windows Firewall is an extremely important security design in Windows XP SP2 that ca
The system administrator sets a system policy to disable installation.
Method 1: Click Start and run "gpedit. msc"Open Group PolicyClick "user configuration"-manage template-Windows Components-Windows Installation ServiceSet "Prohibit installation from media" to "Disable ",Set "always install with high privileges" to
settings, or you can use Group Policy objects (GPOs) so that you apply to organizational units (OUs). I introduce you to some GPO methods for user and Computer Management configuration, and show you how to use them to perform general tasks.
Where is the Terminal Services policy?
After you open the Group
RelatedGroup PolicyKnowledge can be easily found on the internet, but sometimes we perform corresponding operations based on the information on the Internet, but the opposite results often occur, the following is my situation.
When we see some technical articles, we tend to follow them and sometimes unexpected things happen. Not long ago, I saw an article about how to restrict others to use the application and disable the Registry Editor by using
least WIN2000)"NoInstrumentation" = dword: 00000001 (Disable User tracking) (at least WIN2000)[Note] This setting prevents the system from tracking user programs, user navigation paths, and documents opened by users. The system uses this information to customize Windows functions, such as personalized menus."MemCheckBoxInRunDlg" = dword: 00000001 (add the "run in separate memory space" check box to the "run" dialog box) (at least WIN2000)[Note] users
modification of 'taskbar and start menu settings" and "prevent access to the context menu of the taskbar" in the right pane of the Group Policy console. In this way, when you right-click the taskbar and click "properties", an error message will appear, and when you right-click the taskbar and the project on the taskbar, for example, the start button, clock, and taskbar button are hidden in the pop-up menu.
files, print and log on to the network]
16. Telnet [allow remote users to log on to this computer and run programs]
17. Terminal Services [allow users to connect to a remote computer in interactive mode]
18. window s Image Acquisition (WIA) [Photo Service, application and digital camera] If you find that the machine has started some strange services, such as r_server, you must immediately stop the service, this is probably because hackers use the server that controls the program.
10. account an
]"Disablelowdiskspacebroadcast" =(CDrive )/,(DDrive )/,(EDrive )/,(FDrive)/HEX: FF, FF(All)Submit Error Report for scheduled tasks[HKEY_LOCAL_MACHINE/software/Microsoft/schedulingagent]"Notifyontaskmiss" = DWORD: 00000001[Note]When you use a scheduled task to allow the system to automatically run some commands or programs, if an error occurs during execution, the scheduled task will not submit an error report, this setting prompts the scheduled task to appear when an error occurs.Add driver reco
In Windows Server 2008, administrators can apply Group Policy to control whether a user can read or write to any device that uses removable media. These policies can be used to help prevent sensitive or confidential material from being written to removable media or removable devices that contain storage areas.
This policy setting can be found in two locations. T
The content source of this page is from Internet, which doesn't represent Alibaba Cloud's opinion;
products and services mentioned on that page don't have any relationship with Alibaba Cloud. If the
content of the page makes you feel confusing, please write us an email, we will handle the problem
within 5 days after receiving your email.
If you find any instances of plagiarism from the community, please send an email to:
info-contact@alibabacloud.com
and provide relevant evidence. A staff member will contact you within 5 working days.