Abraham Deutsch
asked on
Windows 7 ultimate security permission
In the following environment
A Windows 7 ultimate machine
Staff log in to this machine from their workstation via Remote Desktop connection use the applications installed on this machine and save there all files.
What I want to accomplish
I am adding an outside assistance to do data entry in quickbooks but want he should “only” see the quickbooks program and file he will be working on no other programs/icons/ files (as in a server environment with sharing permissions) is there a way to accomplish this in this environment?
If not so restrict access would be the only option. Is the only way to do it by restricting folder by folder that has documents in it (even so it's not secure against opening programs that save their data in the program folder) since restricting the C drive is not an option (maybe it is and then share the quickbooks program folder and file folder, don't think it will work)?
PS it's a accounting office so confidentiality is required.
A Windows 7 ultimate machine
Staff log in to this machine from their workstation via Remote Desktop connection use the applications installed on this machine and save there all files.
What I want to accomplish
I am adding an outside assistance to do data entry in quickbooks but want he should “only” see the quickbooks program and file he will be working on no other programs/icons/ files (as in a server environment with sharing permissions) is there a way to accomplish this in this environment?
If not so restrict access would be the only option. Is the only way to do it by restricting folder by folder that has documents in it (even so it's not secure against opening programs that save their data in the program folder) since restricting the C drive is not an option (maybe it is and then share the quickbooks program folder and file folder, don't think it will work)?
PS it's a accounting office so confidentiality is required.
Regarding "How to Allow Users to Run Only Specified Programs in Windows", see http://www.sevenforums.com/tutorials/257189-applications-run-only-specified-programs-windows.html, Option One.
For Step 1, since you want to apply it to just one user, you need to follow "How to Apply Local Group Policies to Specific User or Group in Windows" per http://www.sevenforums.com/tutorials/151415-group-policy-apply-specific-user-group.html
For Step 1, since you want to apply it to just one user, you need to follow "How to Apply Local Group Policies to Specific User or Group in Windows" per http://www.sevenforums.com/tutorials/151415-group-policy-apply-specific-user-group.html
ASKER
Remote app does not work with quick books I already tried it.
ASKER
Thank you NVIT for your reference.
2 questions
1- seams it only blocks application not files.
2- What do I enter for the programs I do want to allow? I tried *.qwb did not work I tried the path to the exe also did not work
2 questions
1- seams it only blocks application not files.
2- What do I enter for the programs I do want to allow? I tried *.qwb did not work I tried the path to the exe also did not work
ASKER CERTIFIED SOLUTION
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
ASKER
Tasted and works.
the user only has access to the assigned softwares through rdp and restricting access is much easier cause the user only sees his own virtualized profile (if you use 2012 version and configure it correctly)