?
Solved

Lock down terminal service to only allow access to PeachTree

Posted on 2006-07-12
6
Medium Priority
?
341 Views
Last Modified: 2010-05-18
I am in the process of setting up PeachTree for an accountant on a terminal server.   I created a new OU for the user and via the GP for that OU have been able to lock down the desktop, explorer, and several other things.  Basically from the desktop the user can't do anything but click on the PeachTree icon.  However that is where the problem is at.  Once they open PeachTree, they can then browse the local drives, mapped drives, and also the network.  From a security stand point I don't want them to be able to access anything but the mapped drive where their data files reside.  Any suggestions on how I can lock down the ability to browse from the PeachTree application?  I contacted PeachTree about it, and they indicated there is nothing I can do to the program to resolve the issue.
0
Comment
Question by:techhd
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
  • 3
  • 2
6 Comments
 
LVL 33

Accepted Solution

by:
NJComputerNetworks earned 1500 total points
ID: 17093686
Edit security (NTFS permissions) so that the user does not have access.
0
 
LVL 33

Expert Comment

by:NJComputerNetworks
ID: 17093699
0
 
LVL 22

Expert Comment

by:mcsween
ID: 17093971
If you want them to only be allowed to run Peachtree set the following policy in your GPO

User Config --> Windows Componets --> Terminal Services --> Start a program on connection

With this policy set the user will connect to Terminal Services and Peachtree will launch and they will not even see the desktop or start menu.  When they close Peachtree the terminal server session will end.

How are they browsing the network/local drives once Peachtree is open?

0
Back Up Your Microsoft Windows Server®

Back up all your Microsoft Windows Server – on-premises, in remote locations, in private and hybrid clouds. Your entire Windows Server will be backed up in one easy step with patented, block-level disk imaging. We achieve RTOs (recovery time objectives) as low as 15 seconds.

 

Author Comment

by:techhd
ID: 17095113
PeachTree has a browse option to locate the database files.  You then get a drop down that gives the drives.  There is also a network browse where it opens the window for mapping a network drive, where I am able to browse the network.

Tomorrow I will try the NTFS permissions for the local drives which might take care of that problem.  I still need a solution that stops them from browsing the network.  Even though they can't browse into folders due to permissions, I don't want them to be able to even see anything on the network like the shares.

0
 

Author Comment

by:techhd
ID: 17102033
Editing the Security in NTFS, did eliminate the ability to browse the hard drive from within PeachTree.  I am still looking for some suggestions on how I can block the ability to browse the network?
0
 

Author Comment

by:techhd
ID: 17261263
I was able to find resolution to stop an individual from browsing the network.  I shut off the computer browser service.  I now have the server locked down that even through Peach Tree the individual will not be able to browse anything.
0

Featured Post

Technology Partners: We Want Your Opinion!

We value your feedback.

Take our survey and automatically be enter to win anyone of the following:
Yeti Cooler, Amazon eGift Card, and Movie eGift Card!

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

I guess it is not common knowledge to most Wintel engineers/administrators: If you have an SNMP-based monitoring system in your environment (and it's common to have SNMP or Syslog) it's reasonably easy to enable monitoring of the Windows Event logs,…
While rebooting windows server 2003 server , it's showing "active directory rebuilding indices please wait" at startup. It took a little while for this process to complete and once we logged on not all the services were started so another reboot is …
In this video we outline the Physical Segments view of NetCrunch network monitor. By following this brief how-to video, you will be able to learn how NetCrunch visualizes your network, how granular is the information collected, as well as where to f…
In this brief tutorial Pawel from AdRem Software explains how you can quickly find out which services are running on your network, or what are the IP addresses of servers responsible for each service. Software used is freeware NetCrunch Tools (https…
Suggested Courses

743 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question