If more than one person is working on the same computer, it is wise to create multiple accounts to maintain privacy and separate areas of responsibility. The administrator determines the rights and capabilities of other users. If necessary, he can prevent untrustworthy persons from launching and installing programs.
Instructions
Step 1
You will need administrator rights to set these restrictions. In the "Control Panel", double-click the node "User Accounts" and click the account, the owner of which is going to restrict access to programs. In the new window, follow the link "Change type …" and move the radio button to the "Administrator" position. Click Change Account Type to confirm the decision.
Step 2
Log in to the system using this account. In the program launch line (called by the Win + R hotkeys or by choosing the Run option from the Start menu), enter the regedit command and click OK to start the registry editor. Find the HKCUSOFTWAREMicrosoft WindowsCurrentVersonPoliciesExplorer section and create a RestrictRun key.
Step 3
To do this, right-click on the free space on the right side of the screen and select "DWORD Value" in the "New" list. Call the drop-down menu by right-clicking on the new key, select the "Change" option and enter the value 1.
Step 4
Right-click on the expanded folder icon on the left side of the screen and select New and Section. Name the new section by the same name RestrictRun. On the right side of the window, create a list of applications that the user can run. The list will look like a list of string parameters, in which the item names and serial numbers are enclosed in quotes:
Step 5
“1” =”winword.exe” “2” =”excel.exe” “3” =”regedit.exe” You need to include regedit.exe in the list so that you can edit this list. To remove restrictions, change the value of the RestrictRun key to 0.
Step 6
Log into the system as an administrator and in the "Control Panel" change the user account to an account with limited rights so that he does not have access to the registry editor.