How do you limit software execution through application control policies?

  
1. Open the control panel and select the management tool. As shown below:

2, select the local security policy. As shown below:

3. After opening the local security policy, open “application control policy>--click “Applocker”. As shown below:

4, open Applocker as shown below:

5, before setting the rule, first confirm whether the Application Identity service is set to start automatically, only the service is started, Applocker is set Only take effect, open the same method as step 1, open the search and enter “Services.msc”, open the service settings interface. As shown below:

6, select automatic, click to start. As shown below:

7, you can set up specific projects, first select the configuration mandatory rules. As shown in the following figure:

8, you can see the mandatory tab, you can set whether each rule set enforces applocker rules, the options are mandatory rules and only audited, set to mandatory rules, set The rule will be enforced. After it is set to audit only, the set rule will be recorded in the log after it takes effect, but it will not take effect. As shown in the following figure:

9. Set the executable rule as an example, and select the executable rule on the Applocker interface. As shown below:

10, right click to select a new rule. As shown below:

11. Click on “Next”. As shown below:

12. Set whether the rule is a permit rule or a deny rule, and you can select the user or user group for the rule. As shown below:

13, set conditions, conditions are divided into three, publisher, path and file hash, according to demand. As shown below:

14. Using the file hash method as an example, disable the notes mailbox program. First select “file hash” as shown below:

15, select the application with the set rules, take "lds; notes.exe" as an example, select and click Next. As shown below:

16, enter the rule name and corresponding description, click Create. As shown below:

17, the program rules have been established, take effect after restart.


Copyright © Windows knowledge All Rights Reserved