I have a problem with users copying files from their local workstation to a USB memory stick, floppys and at times burn CDs with company files. Is there any way I can deny access to these peripherals? Currently, the users are not administrators of their local machines and are just users.
Software/Hardware used:
ASKED:
January 23, 2007 3:59 PM
UPDATED:
January 24, 2007 1:41 PM
you have to use the GFI Software and it is integrated with Active Directory and it is very good I have tested in the Bank and if you need more information you can send me msg on the following mail:jawishm@yahoo.fr
There is another new security product on the market. We are currently evaluating it and I am quite impressed. The product is ActiveSentry from the company NextSentry (www.nextsentry.com). I had a visit and a product demo from them and you can protect data movement on the network. It uses an advanced AI (artificial intelligence) engine to analyze what users are doing and can prevent actions or just report them to administrators for analysis. It goes way beyond just disabling peripheral device access if you need it to.
There is an article on this issue specifically here: http://www.windowsdevcenter.com/pub/a/windows/2005/11/15/disabling-usb-storage-with-group-policy.html
They go over some options but ultimately, recommend making a custom ADM file to use with Group Policy. It links to a Microsoft KB article listing exact code for the new ADM file.
That MS KB article is here: http://support.microsoft.com/default.aspx?scid=kb;en-us;555324
Good luck,
Dave VW