Win7 system to make shared directories more secure by setting group policies

  
                                    

First, close the SAM account and shared anonymous enumeration function

1, first press "ld+;Win+R" in the keyboard, open "ld"; run & rdquo; window, enter “gpedit.msc” Press the Enter key after the command to open the local Group Policy Editor;

2, then in the open local Group Policy Editor window, click on "Computer Configuration", <;mdash;“Windows Settings&rdquo ;—“Security Settings”—“Local Policies”—“Security Options 

3, found in the "Security Options" window and double-clicked “ Network access: Do not allow SAM account and shared anonymous enumeration & rdquo; select items, then select the “ Enabled & rdquo; option in the pop-up window, then click the OK button to save and exit;

4, this is illegal Users will not be able to get shared information and account lists directly.

Second, prohibit anonymous SID /name conversion

1, also in the group policy window, click to open & ldquo; computer configuration & rdquo; & mdash; & ldquo; Windows settings & rdquo; & mdash; & ldquo; Security Settings ”—“Local Policies”—“Security Options 

2, found in the "Security Options" window and double-clicked "Network Access: Allow Anonymous SID/Name Conversion”, select “deactivated” in the pop-up window, click “OK“Save.

Third, prohibit unauthorized access

1, also open the "Run" window, enter the "gpedit.msc" and press the Enter key to open the local Group Policy Editor;

2. In the Group Policy Editor that opens, select “Computer Configuration>&mquoash;“Windows Settings”—“Security Settings”—“Local Policies”&mdash ;“User Rights Assignment>;

3. In the right window of “User Rights Assignment”, select “Access this computer from the network” to delete accounts such as Everyone and Guest. , add some accounts that must use network access;

4, open & ldquo; refuse to access this computer from the network & rdquo;, also delete all other users, add the authorized account that needs to access the shared directory Just fine.

Copyright © Windows knowledge All Rights Reserved