Navigation

    ML
    • Register
    • Login
    • Search
    • Recent
    • Categories
    • Tags
    • Popular
    • Users
    • Groups

    GPO on Desktop

    IT Discussion
    6
    11
    1676
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • RoopanKumar
      RoopanKumar last edited by

      need to set a GPO which should restrict the user in saving files in desktop

      DustinB3403 1 Reply Last reply Reply Quote 2
      • jyates
        jyates last edited by

        You can change permissions for the "desktop" folder . I don't know of a GPO for it off hand, but here's a site that's rather helpful with policies.

        http://gpsearch.azurewebsites.net/

        iroal 1 Reply Last reply Reply Quote 2
        • DustinB3403
          DustinB3403 @RoopanKumar last edited by

          @RoopanKumar said in GPO on Desktop:

          need to set a GPO which should restrict the user in saving files in desktop

          Why stop with the desktop, restrict saving anything to the machine at all so the user is forced to save to a network share.

          This way there is no data to be lost, should the users computer fail.

          1 Reply Last reply Reply Quote 1
          • RoopanKumar
            RoopanKumar last edited by

            user need to save in their local drive they already have network share. this is for when some user system crashes we need to recovery files instead of that we are doing like this.

            i have tired that GPO which gives clear desktop but here what we need is to restrict the users from saving

            1 Reply Last reply Reply Quote 0
            • nadnerB
              nadnerB last edited by

              Screenshot is from GPEdit.msc on a desktop but the application from your DC is the same.
              User Config --> Admin Templates --> Desktop --> Desktop --> Prohibit Changes
              0_1463065412055_ML_desktop_GPO.jpg

              Dashrender 1 Reply Last reply Reply Quote 2
              • iroal
                iroal @jyates last edited by

                @jyates said in GPO on Desktop:

                You can change permissions for the "desktop" folder . I don't know of a GPO for it off hand, but here's a site that's rather helpful with policies.

                http://gpsearch.azurewebsites.net/

                Thanks for the Link.

                1 Reply Last reply Reply Quote 1
                • Dashrender
                  Dashrender @nadnerB last edited by

                  @nadnerB said in GPO on Desktop:

                  Screenshot is from GPEdit.msc on a desktop but the application from your DC is the same.
                  User Config --> Admin Templates --> Desktop --> Desktop --> Prohibit Changes
                  0_1463065412055_ML_desktop_GPO.jpg

                  The description of the GPO item does not seem to indicated that the user's can't save things to their desktop, only that they can't change Active Desktop type things.

                  Instead of preventing from saving to the desktop, how about redirecting it to their personal folder on a network share?

                  RoopanKumar 1 Reply Last reply Reply Quote 3
                  • RoopanKumar
                    RoopanKumar @Dashrender last edited by

                    @Dashrender no not to a shared path too

                    Dashrender 1 Reply Last reply Reply Quote 0
                    • Dashrender
                      Dashrender @RoopanKumar last edited by

                      @RoopanKumar said in GPO on Desktop:

                      @Dashrender no not to a shared path too

                      I don't understand.

                      RoopanKumar 1 Reply Last reply Reply Quote 0
                      • RoopanKumar
                        RoopanKumar @Dashrender last edited by

                        @Dashrender we need to create a rule so that the user should not save their work on desktop that is the aim but the condition is there is no network path or any other space just they have to save in their other partition

                        got it

                        Dashrender 1 Reply Last reply Reply Quote 0
                        • Dashrender
                          Dashrender @RoopanKumar last edited by

                          @RoopanKumar said in GPO on Desktop:

                          @Dashrender we need to create a rule so that the user should not save their work on desktop that is the aim but the condition is there is no network path or any other space just they have to save in their other partition

                          got it

                          I hear what you are saying. I've never done it, so I'm not sure it can be done. You could setup a mandatory profile that users can't change, but I think that still allows them to save to the desktop as if it was a temporary directory, and upon reboot, the files are gone.

                          Not a great solution in your situation I'm sure.

                          1 Reply Last reply Reply Quote 0
                          • First post
                            Last post