Thursday, January 26, 2012

How To Restrict User Access & Enforce Windows 7 Personalization Settings


Earlier, we showed you how to prevent PC users from accessing Internet Connection Properties dialog, so that they can not change the DHCP settings and DNS server address. Using the built-in Microsoft Management Console snap-in called Local Group Policy Editor, you could define a wide range of system components’ usage constraints to limit users’ access to core system settings as well as visual configurations. Like previous Windows versions, Windows 7 lets you prevent PC users from tweaking the default or specified Desktop Personalization settings, including theme settings, screen saver, sounds, desktop background, and other visual styles. This post shows you a simple way of applying user access limits on Personalization and Visual Styles in order to prevent PC users from changing their settings.
The following steps requires logging into Windows 7 as an administrator. If you’re not logged in as administrator, then first log off and log back in to Windows via an administrator account. Once logged in, bring up Windows 7 Start Search and enter group policy or gpedit.msc to launch the Local Group Policy Editor.
gpedit.msc 1
The Local Group Policy Editor holds two categories, namely Computer Configuration and User Configuration. To change the default Personalization settings, expand User Configuration followed by Administrative Templates. Now, click Control Panel to select Personalization setting folder. This will open all the personalization-related settings in main window, allowing you change the default options and apply limits as per requirement.
local group policy editor
The Personalization Setting page holds numerous desktop personalization objects’ settings including color scheme, theme, windows & buttons visual styles, screen saver, window color and appearance, desktop background, mouse pointers and more. If you for instance want to revoke access to Desktop Background dialog, just open the Prevent changing desktop background option, and select Enabled option to restrict user from changing desktop wallpaper.
restrict changing desktop wallpaper
Similarly, you can prevent standard User Account holders from changing the screensaver by disabling the Enable screen saver option. Moreover, if you want to enforce a specific screen saver for all user accounts, open Force specific screen saver, select Enabled, and then specify the screen saver file you want to use for user accounts. Apart from enforcing a specific visual style file across network, you have the option to load a specific theme, prevent users from changing mouse pointers, desktop icons, window color and appearance.
change sounds
When a PC users open Personalization dialog to change the desktop background, default Windows sound etc., they will find these options greyed out. It’s worth mentioning here that, unlike other type of Windows access restrictions, the personalized options don’t prompt users to enter the Administrative password to proceed.
wallpaper change disabled
In case, you’ve enforced a specific screen saver, standard user account holder won’t be able to change the pre-defined screen saver. The following screenshot shows the greyed-out Screen saver drop-down menu.
force screeen saver
The Personalization setting folder includes numerous desktop and visual personalization settings that you change, and apply limits on accessing personalization objects’ settings. If you want to prevent users from accessing Control Panel, check out how to do it here.

0 comments:

Post a Comment