Hello all,
Does anyone know howto dissalow IE use for one user on a domain that has local admin rights on all computers (by the way they need local admin rights so they can play certain games). I've used the GPO setting of "Don't Run specified Windows Applications" and added iexplore.exe which dissalows them from executing this actual file as well as disabled access to the command prompt, but if there's an html/htm file that resides on the computer they're on which points to a website they can simply double click this file and they're up and surfing to wherever they want (the GPO settings don't affect this). What do you guys recommend I do to make it so that a certain user has no rights to use IE as local admin? Finally they can't login locally.
thanks
baldhead
Does anyone know howto dissalow IE use for one user on a domain that has local admin rights on all computers (by the way they need local admin rights so they can play certain games). I've used the GPO setting of "Don't Run specified Windows Applications" and added iexplore.exe which dissalows them from executing this actual file as well as disabled access to the command prompt, but if there's an html/htm file that resides on the computer they're on which points to a website they can simply double click this file and they're up and surfing to wherever they want (the GPO settings don't affect this). What do you guys recommend I do to make it so that a certain user has no rights to use IE as local admin? Finally they can't login locally.
thanks
baldhead