Comand Prompt Restrictions

  • Thread starter Thread starter Nemanja
  • Start date Start date
N

Nemanja

I have disabled the command prompt with the GPO, and also
put it as restricted aplication. I also did that for
command.com, but if user creates new shortcut for
command.com he can still run it with no problems. What I
can do?
 
Unfortunately nothing. There is no easy way to prevent certain programs from
being run. You can accomplish this with expensive third-party apps which use
both hardware and software stuff to control literally everything happening
on your computer, SecureNet one of them.
 
Can the user actually do anything within the command prompt? This may
sound like an odd question but, IIRC, the shell will launch but will be
effectively useless.

Dean
 
I had the same problem with this. Even after setting the
restriction in GPO, this only effects cmd.exe
Command.com still runs.

The only way to stop this is to use NTFS file
permissions. Set the security to deny for this
command.com.
 
Back
Top