You are on page 1of 3

Exercise 10.

1 Installing Remote Server Administration Tools

Quastion 1: Will the Group Policy settings you configure in your new GPO have an immediate effect on your network? Why? No. There may be a need for a logout and log back in. You can use the command gpupdate force

Quastion 2: Why would you want to enable the User policy accelerators policy in this case, rather than the Turn off accelerators policy? Users can only access Accelerators that are deployed through Group Policy. Quastion 3: Why is it necessary to disable the Turn on Internet Explorer Standards Mode for Local Intranet policy? Because Internet Explorer will use an Internet Explorer 7 user agent string for local intranet content if you dont configure this policy setting. Quastion 4: Why, in this case, is it necessary to enable both the Prevent Deleting Web sites that the User has Visited policy and the Turn off InPrivate Browsing policy?

So users cant delete their browsing history, and so they cant browse in private. Quastion 5: Why isnt it necessary to enable the Turn off InPrivate Filtering as well? We disabled in private browsing so In Private Filtering isnt optional.

Question 6: Based on the default rules that appear in the Executable Rules folder, what programs can a typical user run on a Windows 7 workstation? What programs can members of the Administrators group run? Standart user: All files located in the Windows Folder except Ragedit.exe, all files located in the Program Files folder, and all files located in the Windows folder. Administrator group: All files. Question 7: Based on the default rules that appear in the Windows Installer Rules folder, what Windows Installer files can a typical user run on a Windows 7 workstation? What Windows Installer files can members of the Administrators group run?

All installer files that are digitally signed and are in the specific installer folder for windows. Administration can run all files. All installer files that are digitally signed and are in the specific installer folder for windows. Administrators can run all files. Question 8: Why is it necessary to create the additional rule for the Group Policy Creator Owners group? Because the default rule wont let you access the Regedit.exe so we needed to make an exception in order to be able to access it.