I am trying to lock down systems and thus allow only allowed applications to run and to block running of all executables, applications and programs by default.
So basically, as soon as application control is applied on a system it should block all applications by default and only allow those in the whitelist to run.
What I have noticed is I can get the inventory and then list out which programs to block. however if a user install a new program he will be able to run it without any issues due to it not being in the banned list.
so the question is how to block all programs by default and then create a whitelist?
Don't forget, when your helpful posts earn a kudos or get accepted as a solution you can unlock perks and badges. Those aren't the only badges, either. How many can you collect? Click here to learn more.
Community Help Hub
New to the forums or need help finding your way around the forums? There's a whole hub of community resources to help you.