oy your users could have FULL admin rights in no time with that method.
Just add a few commands of their own to the file. Boot from a Windows PE and take rights to that folder if needed. Then add or remove stuff as they see fit without you ever being the wiser.
CD boots disabled! on all workstations! in bios!
2nd please explain where the commands they will run if i have RUN disable
in policy!
dont slam me too much; i am not that dumb! hee hee
but explain NTDOC where they will run the commands from if i have CD diabled form boot
and (though you can use BartPE from boot up windows!
the job scheduler is admin rights the machine is not.
run is removed CD boot is disable as well as USB disabled in bios
so explain where i may have said something wrong
WIP: MCSE buut i do not see my security breach explain big guy!
oh yeah i have the cacls file deleted when done and the setup.exe deleted
when done
Edited by itdaddy (2006-12-23 01:52 AM)
_________________________
Robert
A+, CCNA, MCP
Network Admin
Credit Union Wisconsin