Biswajit Banerjee
2018-Aug-04 07:52 UTC
[Samba] Fwd: Restrict local Storage use and Restrict web Access via any Browser via Group Policy on Windows Desktops
Hi , Need to see if it is possible to do * Restrict local Storage use - Means how to restrict via group policy so that logon user in Samba AD will not be able to save any files on local storage of C: of D: drives . He can save on mapped Drive ( From Samba File Server ) . * Restrict web Access via any Browser via Group Policy We have used samba-4.8.3 and windows version is win 7 , win 8 and window 10 . We have tested "web policy " on win2k and found working but same policy is not working on other mentioned versions. Require help in getting some pointers to see if this is possible via Group Policy . TIA -- Warm Regards Biswajit Banerjee <mailto:biswajit at tetrain.com>
Roy Eastwood
2018-Aug-04 12:02 UTC
[Samba] Fwd: Restrict local Storage use and Restrict web Access via any Browser via Group Policy on Windows Desktops
> Hi , > > > Need to see if it is possible to do > > * Restrict local Storage use - Means how to restrict via group policy > so that logon user in Samba AD will not be able to save any files on > local storage of C: of D: drives . He can save on mapped Drive ( > From Samba File Server ) . > * Restrict web Access via any Browser via Group Policy > > > We have used samba-4.8.3 and windows version is win 7 , win 8 and window > 10 . > > > We have tested "web policy " on win2k and found working but same policy > is not working on other mentioned versions. > > Require help in getting some pointers to see if this is possible via > Group Policy . >You can hide the C: & D: drives with group policy: User Configuration | Policies | Administrative Templates | Windows Components | File Explorer | Hide These specified drives in My Computer. By default you can select A & B, C only, D only, A B & C, A B C and D or all drives. (You can edit the template file to be able to specify just C: and D: - see here: https://support.microsoft.com/en-gb/help/231289/using-group-policy-objects-to-hide-specified-drives ) However, this won't prevent the user saving files to these drives by specifying the path explicitly, it just hides them in File Explorer. To prevent access to these drives, then the "Prevent Access to drives from My Computer" policy (in the same branch as the one above) may be used as well. To restrict web access, a web search will provide some answers, such as: https://www.gypthecat.com/how-to-block-internet-access-with-group-policy HTH, Roy Eastwood
Biswajit Banerjee
2018-Aug-20 12:13 UTC
[Samba] Fwd: Restrict local Storage use and Restrict web Access via any Browser via Group Policy on Windows Desktops
Thanks Roy .. We could restrict the drive access by group policy . The method suggested for web access has completely blocking mechanism , Can you suggest where we have resticted access to web site by any browser on the windows PC . TIA Biswajit On Saturday 04 August 2018 05:32 PM, Roy Eastwood via samba wrote:>> Hi , >> >> >> Need to see if it is possible to do >> >> * Restrict local Storage use - Means how to restrict via group policy >> so that logon user in Samba AD will not be able to save any files on >> local storage of C: of D: drives . He can save on mapped Drive ( >> From Samba File Server ) . >> * Restrict web Access via any Browser via Group Policy >> >> >> We have used samba-4.8.3 and windows version is win 7 , win 8 and window >> 10 . >> >> >> We have tested "web policy " on win2k and found working but same policy >> is not working on other mentioned versions. >> >> Require help in getting some pointers to see if this is possible via >> Group Policy . >> > You can hide the C: & D: drives with group policy: > > User Configuration | Policies | Administrative Templates | Windows Components | File Explorer | > Hide These specified drives in My Computer. > > By default you can select A & B, C only, D only, A B & C, A B C and D or all drives. > (You can edit the template file to be able to specify just C: and D: - see here: > https://support.microsoft.com/en-gb/help/231289/using-group-policy-objects-to-hide-specified-drives ) > > However, this won't prevent the user saving files to these drives by specifying the path explicitly, it just hides them in File Explorer. > > To prevent access to these drives, then the "Prevent Access to drives from My Computer" policy (in the same branch as the one above) > may be used as well. > > To restrict web access, a web search will provide some answers, such as: > https://www.gypthecat.com/how-to-block-internet-access-with-group-policy > > HTH, > > Roy Eastwood > >
Possibly Parallel Threads
- Fwd: Restrict local Storage use and Restrict web Access via any Browser via Group Policy on Windows Desktops
- Restricting AD group logging on to Servers
- Restricting AD group logging on to Servers
- Adding a Windows Server 2008 as a DC to the domain fails
- how to change samba (smbpasswd) via web browser...