ML
    • Recent
    • Categories
    • Tags
    • Popular
    • Users
    • Groups
    • Register
    • Login

    GPO on Desktop

    IT Discussion
    6
    11
    2.1k
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • RoopanKumarR
      RoopanKumar
      last edited by

      need to set a GPO which should restrict the user in saving files in desktop

      DustinB3403D 1 Reply Last reply Reply Quote 2
      • jyatesJ
        jyates
        last edited by

        You can change permissions for the "desktop" folder . I don't know of a GPO for it off hand, but here's a site that's rather helpful with policies.

        http://gpsearch.azurewebsites.net/

        iroalI 1 Reply Last reply Reply Quote 2
        • DustinB3403D
          DustinB3403 @RoopanKumar
          last edited by

          @RoopanKumar said in GPO on Desktop:

          need to set a GPO which should restrict the user in saving files in desktop

          Why stop with the desktop, restrict saving anything to the machine at all so the user is forced to save to a network share.

          This way there is no data to be lost, should the users computer fail.

          1 Reply Last reply Reply Quote 1
          • RoopanKumarR
            RoopanKumar
            last edited by

            user need to save in their local drive they already have network share. this is for when some user system crashes we need to recovery files instead of that we are doing like this.

            i have tired that GPO which gives clear desktop but here what we need is to restrict the users from saving

            1 Reply Last reply Reply Quote 0
            • nadnerBN
              nadnerB
              last edited by

              Screenshot is from GPEdit.msc on a desktop but the application from your DC is the same.
              User Config --> Admin Templates --> Desktop --> Desktop --> Prohibit Changes
              0_1463065412055_ML_desktop_GPO.jpg

              DashrenderD 1 Reply Last reply Reply Quote 2
              • iroalI
                iroal @jyates
                last edited by

                @jyates said in GPO on Desktop:

                You can change permissions for the "desktop" folder . I don't know of a GPO for it off hand, but here's a site that's rather helpful with policies.

                http://gpsearch.azurewebsites.net/

                Thanks for the Link.

                1 Reply Last reply Reply Quote 1
                • DashrenderD
                  Dashrender @nadnerB
                  last edited by

                  @nadnerB said in GPO on Desktop:

                  Screenshot is from GPEdit.msc on a desktop but the application from your DC is the same.
                  User Config --> Admin Templates --> Desktop --> Desktop --> Prohibit Changes
                  0_1463065412055_ML_desktop_GPO.jpg

                  The description of the GPO item does not seem to indicated that the user's can't save things to their desktop, only that they can't change Active Desktop type things.

                  Instead of preventing from saving to the desktop, how about redirecting it to their personal folder on a network share?

                  RoopanKumarR 1 Reply Last reply Reply Quote 3
                  • RoopanKumarR
                    RoopanKumar @Dashrender
                    last edited by

                    @Dashrender no not to a shared path too

                    DashrenderD 1 Reply Last reply Reply Quote 0
                    • DashrenderD
                      Dashrender @RoopanKumar
                      last edited by

                      @RoopanKumar said in GPO on Desktop:

                      @Dashrender no not to a shared path too

                      I don't understand.

                      RoopanKumarR 1 Reply Last reply Reply Quote 0
                      • RoopanKumarR
                        RoopanKumar @Dashrender
                        last edited by

                        @Dashrender we need to create a rule so that the user should not save their work on desktop that is the aim but the condition is there is no network path or any other space just they have to save in their other partition

                        got it

                        DashrenderD 1 Reply Last reply Reply Quote 0
                        • DashrenderD
                          Dashrender @RoopanKumar
                          last edited by

                          @RoopanKumar said in GPO on Desktop:

                          @Dashrender we need to create a rule so that the user should not save their work on desktop that is the aim but the condition is there is no network path or any other space just they have to save in their other partition

                          got it

                          I hear what you are saying. I've never done it, so I'm not sure it can be done. You could setup a mandatory profile that users can't change, but I think that still allows them to save to the desktop as if it was a temporary directory, and upon reboot, the files are gone.

                          Not a great solution in your situation I'm sure.

                          1 Reply Last reply Reply Quote 0
                          • 1 / 1
                          • First post
                            Last post