Use AppLocker to restrict install Unauthorized Software in Windows 7


If your computer is open to all in office or home many unnecessary software is installed. So you can set your computer that the user can run only selected software.
For doing this windows 7 has a feature name AppLocker, which make sure the user that a PC can only run selected software.
You can easily install this feature. If you want you can set a rule that need a sign in option  to the user to install software. AppLocker  tool  specified to user the authorized publisher  softwares to install which help to protect your system security.
First of all launch  Applocker . For this open Run and write GPEDIT.MSC  and press OK or write GPEDIT.MSC on Start button search box and press Enter.The Local Group Policy Editor window will open. In the window you navigate on following path.



Local Group Policy Editor
Computer Configuration  →  Windows Settings   → Security Settings   →  Application Control Policies   → AppLocker








Local Group Policy Editor
AppLocker window is open. In the window you find three rules on Overview option. The rules are Executable rules, Windows installer rules and Script rule. Click on any of the rules. A blank page open and right click on the page and select Create New Rule.  For demonstration  purpose Executable rule is selected.





Permission-gpedit
 A dialogue window is set in motion. Select  Allow or Deny and you also choose here User or Group. Form selection User or Group you can specify the different user that are using your computer. If your computer is in a LAN network and  it is a server computer or Administrative power you can control the other computer which are joined in the network. Click on the Next button.






condition-gpedit
New window open and the condition come . It is a Publisher, Path and File hash. Select one of them. For discussing I choose Publisher and click Next








Publisher
The next step asked you to browse and choose the signed file. For discussing the purpose browse and  choose iexplore.exe and clicked Next .On the  next step you have an option to choose Exceptions that who are not allowed in this rule.








Name & Description
Click Next and a new window open where need to  specify a name for this particular rule and click Create









The rule will be created and added in the list of rules.





That’s all, it is not so hard to enforce restriction on applications on Windows 7.


No comments:

Post a Comment