Re: Restrict running applications from usb key

From: Miroslaw Slawek Chorazy (mchorazy_at_depaul.edu)
Date: 03/03/05

  • Next message: Beauford, Jason: "FW: Restrict running applications from usb key"
    Date: Thu, 03 Mar 2005 15:49:27 -0600
    To: <burkeyc@cliu.org>, <focus-ms@securityfocus.com>
    
    

    If you have the option of using Software Restriction Policies then I
    think you can do what you want to accomplish
    by siimply buildng new Path Rules.

    You might not know a-priori what drive letter a system assigns to a USB
    device but you can create exlusions for imaginary drive letters;
    like D:\ E:\ ... Z:\ except for your %SystemDrive%

    Also make sure that you build an exhaustive File Type list which covers
    any possible executable and don't forget to diagnose any problems with
    "saferlog.txt"

    slawek

    >>> "Chris Burkey" <burkeyc@cliu.org> 3/3/2005 13:51 >>>
    Does anyone know if there is a way to restrict a user from running
    applications from a usb key. The user needs to be able to save data to
    the key and retrieve a document from the key but not run an
    application
    from it. Thanks.

    Christopher Burkey

    Sr. Network Administrator

    Carbon Lehigh Intermediate Unit #21

    Phone: (610)-769-1010

    burkeyc@cliu.org

    Weboffice address: http://weboffice.cliu.org:2200/burkeyc@cliu.org

     

     

    This email and any files transmitted with it are confidential and
    intended solely for the use of the individual or entity to whom they
    are
    addressed. If you have received this email in error please notify the
    system manager. This message contains confidential information and is
    intended only for the individual named. If you are not the named
    addressee you should not disseminate, distribute or copy this e-mail.
    Please notify the sender immediately by e-mail if you have received
    this
    e-mail by mistake and delete this e-mail from your system. If you are
    not the intended recipient you are notified that disclosing, copying,
    distributing or taking any action in reliance on the contents of this
    information is strictly prohibited.Our company accepts no liability
    for
    the content of this email, or for the consequences of any actions
    taken
    on the basis of the information provided, unless that information is
    subsequently confirmed in writing. Any views or opinions presented in
    this email are solely those of the author and do not necessarily
    represent those of the company. WARNING: Computer viruses can be
    transmitted via email. The recipient should check this email and any
    attachments for the presence of viruses. The company accepts no
    liability for any damage caused by any virus transmitted by this email.

     

    ---------------------------------------------------------------------------
    ---------------------------------------------------------------------------

    ---------------------------------------------------------------------------
    ---------------------------------------------------------------------------


  • Next message: Beauford, Jason: "FW: Restrict running applications from usb key"

    Relevant Pages

    • Re: Now is time for banks to replace core system according to Accenture
      ... Search the archives at http://bama.ua.edu/archives/ibm-main.html ... This message contains confidential information and is ... addressee you should not disseminate, ... Please notify the sender immediately by e-mail if you have received ...
      (bit.listserv.ibm-main)
    • Re: Job openings for Smalltalk Consultants
      ... the system manager. ... This message contains confidential information and ... addressee you should not disseminate, ... Please notify the sender immediately by e-mail if you have received ...
      (comp.lang.smalltalk)