Windows-server 2016 GPO File System Security: Restricting Write Access to Root of Drive C:\. By default domain, users have rights to write in the root of Drive C:\, with this GPO we remove this ability.
1. Begin Groepsbeleidsmanagement troosten;
2. Choose the GPO object, Right Mouse Button click, en klik Bewerking;
3. Navigeren naar Computer Configuration\Policies\Windows Settings\Security Settings;
4. Rechter muis knop Klik op File System en klik Add File;
5. Selecteer Lokale schijf (C:) en klik OK;
6. In de Database Security raam, set the permissions you want, then clickOK;
7. In de Add Object raam, select the ACL inheritance you want, then clickOK;
8. The Group Policy Editor displays the new object name;