How to have group policy apply to Runas user

J

Jims

Is it possible to apply a group policy to a Runas user? We apply AD group
policies to users and computers but the do not appear to apply to users
running applications with Runas. For instance; if a user launches Word and
tries to save a .doc with Runas we want to prevent them from seeing certain
drives like them do if they just logged into our Windows machines normally.
This is possible by modifying the Default user profile (ntuser.dat) but that
is not an ideal solution for us.
Any ideas appreciated,
Jim
 
K

Ken B

If the user runs Word as another user, Word is looking at the network drives
as the "Runas" user. Being that's the case, it'll allow them to save to the
folders the Runas user is allowed access to.

Why are users utilizing "Runas" for Word?
kb
 
J

Jims

We're installing an SSO app that runs on our locked down kiosks and the SSO
app
runs applications using runas. We don't have a problem seeing drives, we
are trying to hide drives. We don't allow users to see the local drives,
only their network drives that are mapped when they login. Not a problem
with standard windows login and group policy but apparently our restricive
group policies don't apply when an app is launched by runas the user - which
is how this sso app works.
Thanks,
jim
 

Ask a Question

Want to reply to this thread or ask your own question?

You'll need to choose a username for the site, which only take a couple of moments. After that, you can post your question and our members will help you out.

Ask a Question

Top