A good tool for managing win7 important applications

  
In the family, many people often use one computer at the same time. Although they can use multiple users to operate in their own users, because a user randomly deletes files and installs software, the system often runs or does not run. Smooth phenomenon.
In addition, in the family, in order to prevent children from arbitrarily surfing the Internet, free to install or use the software, some users often use the encryption tool or user permission control method to control the system permissions, if each program is set to one by one, This is not only troublesome, but also does not completely control the user.
In the Windows 7 system, a new "AppLocker" function has been added. It controls the users who use our computer to run only the specified program and install the specified software. The purpose of the system and personal data.
For example, we don't want other users to mess with the software in the system partition when using their own computer, so we can lock the partition by &;AppLocker”.
When setting, first type “GPEDIT.MSC” in “Start”→“Run", click the “OK" button to open the Group Policy Editor.
In this case, expand “Computer Configuration——Windows Settings——Security Settings——Application Control Policy——AppLocker” Branch (click AppLocker, a "On the right" ;Configure rule restrictions” window.
In this program, the "executable rules", "windows installer rules", "script rules", three settings, here we choose according to needs Controlled content.
If you control the user to install the windows program, click the "Windows Installer Rules" option in the right window of the branch to enter the "Windows Installer Rules" interface, in this interface Right-click and select “Create New Rule from the shortcut menu that opens.
Open the “ Rule Creation Wizard” dialog box, click the “Next” button, in the “Permissions” project Select the rule type as “Reject”, and select the system user to reject below.
Then click ““Next” button in “ Under the item, select a rule type, such as "path", and then enter the path that refuses the user to perform the operation in the next interface. If you deny the user access to "C disk", we enter the C drive letter here.
Go to the next interface, in which we can also create exception items, such as allowing users to access a folder under the C drive, etc. Then follow the prompts of the prompt wizard to complete the creation of the rule step by step. After that, in the group policy's "Windows Installer Rules" list, we can see the policy just created. If you don't use a policy later, just delete it in the list. Then if we restrict some users to allow certain For these programs, we can set the "executable rules" and "script rules" to "execution rules".
After the rules are created, click in the group policy and click “ AppLocker”, then on the right side of the "AppLocker" interface, click "Configure Rule Mandatory" to open the Rule Settings dialog box, where we will "Win" The dows Installer rule is selected as “rule enforcement", then click the <;OK” button.
Programs or folders that have been set up in the future can only be used by allowed users. This way other users will no longer mess with the software on our computer.

Copyright © Windows knowledge All Rights Reserved