How to block installation of programs

How to block installation of programs

If someone imperceptible constantly litters the hard drive with the unnecessary and loading a system programs, it is not obligatory to make on it an ambush at all. Having in a certain way configured Windows it is possible to prohibit installation of programs, per se.

Instruction

1. Click Win+R key shortcut. The Execute dialog box in which enter gpedit.msc and click the ENTER key will appear. The editor of the local group policy will open.

2. In the left part of a window open a directory "A computer configuration"> "Windows Configuration"> "Security settings"> "Policies of limited use of programs". If before these policies were not assigned, click a menu item "Action"> "Create the policy of limited use of programs". In the right part of a window click with the right mouse button the newly created parameter "The Assigned Types of Files" and select "Properties". Thumb through The Assigned Types of Files list regarding existence of the MSI and EXE formats. If some of them is absent, add it by means of the Expansion data entry field and the Add button in the bottom of this window. That changes became effective, click "Apply", and then OK, or at once the OK button if no changes were made.

3. In the left part of a window select the Security levels item, and in right – click with the right button parameter It "is forbidden" and in the appeared menu click "By default". In a new window click the Yes button. Now the system will prohibit start of all applications (including installers of EXE and MSI) which are in The Assigned Types of Files list. The following two paragraphs of the instruction describe actions for access lock to the editor of the local group policy.

4. Activate the account of the guest. For this purpose click "Start-up"> "Control panel". Further there are two possible options: if the control panel is displayed by icons, select "Accounts of users"> "Management of other account" and if categories, find the Accounts of Users and Family Safety group and click in it on "Adding and removal of accounts". The new window in which click on an icon "Guest", and following – "Include" will appear. You activated the account under which the user will log into the system.

5. Select the administrator's profile, i.e. that account under which you log into the system. Click on "Creation of the password". Specify the password in the appeared window, confirm it and at will write the hint. In conclusion click "Create the password". Thus, you allowed foreign users access to a system only by means of the Guest account. Through it they will not be able to open the editor of the local group policy, and, therefore, and to remove blocking on installation of programs.

Author: «MirrorInfo» Dream Team


Print