I may just be spacing here, but I seem to recall a way that there was to prevent applications from being run from the command line. Here's the situation. I blocked access to the C: drive and to certain applications on the C: drive using group policy. I knew that blocking certain applications in group policy would not work from the command prompt, which is why I prevented access to the C: drive. When you go to start > Run then type c:\, it comes up properly and blocks the drive from coming up. But when you run cmd.exe, then change drives, the drive is fully accessible.
I really thought there was a way to stop that....and I'm either wrong or I just cannot remember how to do it. Can anyone offer a quick fix to this? It seems stupid to block access to everything EXCEPT if you go into the command prompt.
FYI...I don't want to block access to the command prompt simply because the students need access to TCP/IP diagnostic tools for their networking classes.
Thanks in advance!