Quote:
Originally Posted by Concerned User
That particular policy the you referenced will allow .exe files to be executed only from the program files folder. You can fine tune it to allow .exe files from any other path also.
|
Thanks, Concerned User. Looking into Microsoft's guidance on SRP, I THINK I can see how to specify the execution directory or directories. What I don't immediately see is the other half of the equation -- how to prevent the Limited User from storing files other than in a specific, DIFFERENT directory or directories...