Answer the question
In order to leave comments, you need to log in
How to prevent ordinary users from installing software on windows server 2016?
By default, vatsaps, telegrams, chromes (into the user environment) are installed without question. But they can also install malware with them.
How can I disable any settings at all?
Isn't there an easy one-click way instead of dancing with AppLocker?
Answer the question
In order to leave comments, you need to log in
Through the "Software Restriction Policies" you can set up a white list of directories from which applications are allowed to run. But I'm not sure how various updaters that like to unpack themselves into a temporary folder behave in this case. Can be configured to not apply to administrators.
If we are talking about a terminal server, then there it is limited to local and / or group policies, including Software Restrictions Policy and AppLocker
And do not give administrative rights to everyone in a row ...
Didn't find what you were looking for?
Ask your questionAsk a Question
731 491 924 answers to any question