Remove ability to create folders in the root of c:
Is it safe to remove the Authenticated Users special permissions on the root of c: to prevent users from creating folders (there are two entries under advanced)? I think it would be better to do it through gpo rather than remove them from
the image because we could reverse it. The goal is to prevent users from storing data locally as much as possible.
Thanks
June 3rd, 2010 10:04pm
Hi,
To answer your question, it’s safe to remove the Authenticated Users’ special permission on the system root. To prevent certain user to modify drive C,
you just need add them to Security tab and deny them to modify the drive. For more information about permission, please refer to the following article:
http://support.microsoft.com/kb/308419
Thanks,
Novak
Free Windows Admin Tool Kit Click here and download it now
June 4th, 2010 8:59am