设为首页 - 加入收藏 ASP站长网(Aspzz.Cn)- 科技、建站、经验、云计算、5G、大数据,站长网!
热搜: 重新 试卷 文件
当前位置: 首页 > 服务器 > 搭建环境 > Windows > 正文

windows-server-2008 – 如何使用组策略设置默认的Internet区域

发布时间:2021-03-06 01:23 所属栏目:117 来源:网络整理
导读:我一直试图完成这项工作但没有成功.当我运行组策略结果向导时,看起来我的组策略设置正在应用. 这是我正在做的将互联网区域设置为中等. 1.组策略管理编辑器用户配置政策管理模板 windows组件网络浏览器互联网控制面板安全页面 我登录到我的xennapp桌面打开IE



1.组策略管理编辑器>用户配置>政策>管理模板> windows组件>网络浏览器>互联网控制面板>安全页面




所以我很好奇这个研究它.我没有要测试的2003服务器环境,因此需要“Google Fu”来检查这一点.

原来它是GUI中的“bug”.您应用的策略确实正常工作,它只是在客户端的IE GUI中无法正确显示.愚蠢,是的……但是确实如此.


If you see “Some settings are managed by your system administrator”
then it was applied successfully and is on Medium. You can verify
this by clicking custom level and looking at each security option,
they will coincide with what they should be for “Medium”.

You can disregard what it says on “Security level for this
zone”…it’s not accurate.

For example,if you set it to low,it will still still say
medium/high or high but if you click on custom level you will see
“download unsigned activex controls” is enabled…..which is a option
that is enabled on low and disabled on high. – Jake77444 @ EE


IE GPO Zone Templates and the “Open File – Security Warning”

In Conclusion

  • Security templates are not visually reflected in the security page of Internet Explorer even though they are applied.
  • Security zone settings are applied to Internet Explorer by doing a gpupdate but a log off/on is required to apply these settings to the
    rest of the OS
  • The “Launching applications and unsafe files” setting determines whether the “Open File – Security Warning” dialog is displayed when
    launching applications from a given location
  • The “Launching applications and unsafe files” cannot be set with a an indvidual GPO setting. (You could create a custom adm file though)
  • When setting zone security via GPO I recommend making the Internet Explorer security page invisible to users to avoid confusion
    as they can still quite happily adjust the security level slider,it
    just won’t have any effect!


