|
Question : Need a Domain group policy to disable the use of Internet Explorer
|
|
Hello Everyone, I need a domain group policy to remove access to Internet Explorer. I've already tried to remove access to Internet Explorer using the policy to remove it from the desktop and from quick launch and it still shows up in quick launch. I can't manually do this for every single user in the OU. I've also performed the following steps: Computer Configuration\Windows Settings\Security Settings\Software Restriction Policies Right Click Additional Rules > Create Hash Rule Navigated to X:\program files\Internet Explorer\iexplore.exe. Set the Security Level to Disallowed
However, the program can still be executed by users in the OU (did perform a GPupdate after creating the policy). Any help would be appreciated.
|
Answer : Need a Domain group policy to disable the use of Internet Explorer
|
|
You defined a policy below "computer config" - that applies to computer objects, not to user objects. So your users will never get this policy, the TS however will. Why not just deny access to iexplore.exe using ntfs-rights?
|
|
|