Give only Read only rights for Desktop, My document..etc via GPO
I want to accomplish the following task: A user must not have rights to save in his/her Desktop, My Documents, My Music, My video, My picture, etc.
I have already prevent & hide all drives via GPO, but still user are able to store files in the locations listed above. How can I configure the desired behavior?
Server OS = Window server 2008 R2
Client OS = Window XP, Vista & Window 7
It’s very easy if you are using Window server 2008 Server.
Just create a Group Policy Object, go to Computer Configuration > Policy > window Setting > Security Setting > File System and there – Right click and add %userprofile%\Desktop ….etc and there you can specify the rights on user or Groups.
Check more discussion of this question.
Related posts:
- “log on as a batch job” user rights removed by what GPO?
- GPO to remapp desktop folder and user profile
- What is the safest way to give anonymous read/write access to Windows file shares?
- How can I apply Group Policy object (GPO)user settings in GPO only if connecting to specific users?
- Word Document Turns to Read-Only
Leave a comment
Recent Posts
Tags
active-directory
amazon-ec2
apache
apache2
backup
bash
centos
cisco
command-line
debian
dns
email
exchange
firewall
iis
iis7
iptables
linux
macosx
monitoring
mysql
networking
nginx
performance
permissions
php
postfix
raid
security
sql-server
sql-server-2005
sql-server-2008
ssh
ssl
ubuntu
unix
virtualization
vpn
webserver
windows
windows-7
windows-server-2003
windows-server-2008
windows-server-2008-r2
windows-xp





