In Windows XP SP3, how can I remove "ALL Programs" in the Start Menu for a user on the computer?

In Windows XP Professional - SP3, I have set up a "user" on a Dell laptop.  I want the user to have very limited access.  Mostly with items on the desktop.  I want to remove the "All Programs" on the Start Menu, so that the user will not have access to it.

I want the administrator account to have full access.

I found a registry fix, but I cannot get it to work with the "user".  I can do it for the administrator account, but not the user.

Windows Registry Editor Version 5.00
 [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer]
"NoStartMenuMorePrograms"=dword:00000001

When I try to import the fix while in the user account a Registry Editor error appears...
"Cannot import "fix.reg: Not all data was successfully written to the registry.  Some keys are open by the system or other processes."  Tried in SAFE MODE as well, but same result.

Again, logged in as administrator, it will work.  Once I restart the "All Programs" is gone.  However, if I log in as the "user', "All Programs" is still there.

Can someone give me some advice.  It would be greatly appreciated.

Thanks!
mbolton1967Asked:
Who is Participating?

[Product update] Infrastructure Analysis Tool is now available with Business Accounts.Learn More

x
I wear a lot of hats...

"The solutions and answers provided on Experts Exchange have been extremely helpful to me over the last few years. I wear a lot of hats - Developer, Database Administrator, Help Desk, etc., so I know a lot of things but not a lot about one thing. Experts Exchange gives me answers from people who do know a lot about one thing, in a easy to use platform." -Todd S.

DarksquireCommented:
Click Start, Run, type gpedit.msc then confirm with the Enter key. Go to User Configuration => Administrative Templates => Start menu and Taskbar.

Double click Remove All Programs list in the Start menu and select On. Then click OK.

Try this logged into the Administrator account and reboot into user account to see if it works. If it is still there, I would go through the steps again while logged into the user account and then reboot back into that account. That should do the trick. Hope that helps!
0
TripyreCommented:
have you limited the access for the "user" account.  This may be why you cannot import the registry setting.  Give the "User" account temporary Admin access, import the registry setting, remove the access and logout and back in with "User" account.  The change should have stuck.
0

Experts Exchange Solution brought to you by

Your issues matter to us.

Facing a tech roadblock? Get the help and guidance you need from experienced professionals who care. Ask your question anytime, anywhere, with no hassle.

Start your 7-day free trial
johnb6767Commented:
Even an Admin doesnt have rights to thier own "HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies". Thats where GPO is stored. You need to explicitly grant Modify Rights to the above key.....
0
IT Pros Agree: AI and Machine Learning Key

We’d all like to think our company’s data is well protected, but when you ask IT professionals they admit the data probably is not as safe as it could be.

darkchild173Commented:
You can access that key by logging as an administrator.
Find out the SID of the account you are trying to fix. Here's how:

Open regedit and goto:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WindowsNT\Cu rrentVersion\ProfileList

Click on any of key on the left [SID] and check out the right pane for ProfileImagePath. Now you should find something as following there:

%SystemDrive%\Documents and Settings\username

Do that untill you find the right SID.

Now, that you know the SID of the acount, in regedit, instead of going to
HKEY_CURRENT_USER\..  just goto HKEY_USERS\SID\... and modify the settings accordingly.

While i understand what you are trying to accomplish, please bare in mind that any program that allows the user to open a browse window to the file system (e.g. Internet Explorer), also allows him to execute programs, so technically you're not restricting the user unless you also explicity deny him access to the files, by means of ACL's, but when u get to restricting access to folders like "Program Files" you get into a world of pain.

You might want to look into different approaches on this, something along the lines of this:
http://technet.microsoft.com/en-us/library/bb457006.aspx

Good luck.
0
mbolton1967Author Commented:
Thanks so much for the help.
0
johnb6767Commented:
Clarification.....

"Even an Admin doesnt have rights to thier own "HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies". "

They do have the rights to grant themself permissions though....
0
It's more than this solution.Get answers and train to solve all your tech problems - anytime, anywhere.Try it for free Edge Out The Competitionfor your dream job with proven skills and certifications.Get started today Stand Outas the employee with proven skills.Start learning today for free Move Your Career Forwardwith certification training in the latest technologies.Start your trial today
Microsoft Legacy OS

From novice to tech pro — start learning today.