Depends how harsh you want to be locking this down.
Group Policies will do 90% of this for you plus a well redirected Start Menu to a folder where users only have read & execute.
If you want to be really tough maybe go as far as Only Run Allowed applications. A Bit of time reading through what options you have available in GPs (if you are not already familiar) will show you the way.
This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
By continuing to use this site, you are consenting to our use of cookies.