Reject browsers

Hi Experts,

I need to setup to reject browsers other than IE and Safari, could you
please advise what should I configure, can I apply any GPO.
ipsec600Asked:
Who is Participating?
I wear a lot of hats...

"The solutions and answers provided on Experts Exchange have been extremely helpful to me over the last few years. I wear a lot of hats - Developer, Database Administrator, Help Desk, etc., so I know a lot of things but not a lot about one thing. Experts Exchange gives me answers from people who do know a lot about one thing, in a easy to use platform." -Todd S.

rhandelsCommented:
The only GPO that would actually pull this of is Software restriction policy.
This is a policy that enables (or disables) execution of specific files, files in directories or hashcoded files.

The policy is located in Computer Configuration --> Policies --> WIndows Settings --> Security Settings --> Software restiction Policies.
0

Experts Exchange Solution brought to you by

Your issues matter to us.

Facing a tech roadblock? Get the help and guidance you need from experienced professionals who care. Ask your question anytime, anywhere, with no hassle.

Start your 7-day free trial
ipsec600Author Commented:
Hi rhandels, thank you so much for your reply, software restriction policy is for computer specific settings, and the policy eventually need to be applied on OU.

Could you please assist me to know, how can I apply for specific Group, meaning that when any user will be member of this group will be able to access IE and Safari not any other browser.
0
rhandelsCommented:
Do you mean the entire setup of the policy?
I don;t mind helping you into the right direction but there is a multitude on articles how to setup Software Restriction Policy.

This document is a good way to start.
http://technet.microsoft.com/en-us/library/bb457006.aspx

Regarding the users. You only want to add the policy to a specific set of users? Due to the fact that this is a computer setting you will need to add it to an OU were computers reside in. It is possible to add WMI templates but still, it will apply to computers so to a specific group of users will not work i'm afraid.

Can't you somehow make sure not that specific users log on to specific computers?

You could also try to use AppLocker but i believe it is added in 2008 or 2012.

http://technet.microsoft.com/en-us/library/dd723678(v=ws.10).aspx
0
It's more than this solution.Get answers and train to solve all your tech problems - anytime, anywhere.Try it for free Edge Out The Competitionfor your dream job with proven skills and certifications.Get started today Stand Outas the employee with proven skills.Start learning today for free Move Your Career Forwardwith certification training in the latest technologies.Start your trial today
Active Directory

From novice to tech pro — start learning today.

Question has a verified solution.

Are you are experiencing a similar issue? Get a personalized answer when you ask a related question.

Have a better answer? Share it in a comment.