Hardened UNC Access-Prevent scripts in GPOs from running from Sysvol, that do not have UNC in them?


  • I have read about the Windows Server update that is blocking GPOs that run scripts from UNCs by default. I read about the way to create a policy to add Sysvol into those paths.

    Those (2)Updates sound like that will block UNC paths in a script, until you configure UNC hardened access.  The problem is the updates have not applied on my production domain controllers yet, so I do not have the options to configure UNC hardened access.

    Will one of these updates block scripts from running from Sysvol, even if they do NOT contain a UNC path in them?  Just want to double-check because I have scripts that are running from sysvol(which is across a network path), and they reference things in sysvol, without using  a UNC, and not sure if that will break.



    • Edited by DaveBryan37 Wednesday, March 11, 2015 4:17 PM
    Wednesday, March 11, 2015 4:08 PM


All replies