There are various 3rd party tools out there (Digital Guardian or Desktop
Central) that could install agents on isolated (ie no reachability to its
server/management centre) workstations so that we only permit
specific USB (with a device id) to connect to the USB.
Does Windows OS (Win 10, 2019) or GPO has this feature (say by
tweaking in the registry) as we prefer not to add on additional 3rd
party tools to the station? Appreciate detailed steps to set this up.
In particular we have a SCADA station that we want to permit vendor
to access on a temporary basis to troubleshoot issue (but we'll use
Windows Firewall to permit the vendor's remote IP to come in only).
We don't want the Engineering technicians to stick any other USB
device other than that approved 4G USB modem.
Our community of experts have been thoroughly vetted for their expertise and industry experience.
The Distinguished Expert awards are presented to the top veteran and rookie experts to earn the most points in the top 50 topics.