Active directory users


  • Hi All,

    Hope all are doing good,

    We as a company has some security requirements need to block net user and wmic commands in our domain for all users except administrartor to restrict rights of users is there any possibility that we can achieve this requirement.

    Looking forward for your response in the above query.


    Syed Muhammad Safwan

    יום רביעי 09 מאי 2018 06:17

כל התגובות

  • Really appreciate if anybody could help on above query


    Safwan Syed.

    יום חמישי 10 מאי 2018 03:52
  • Hi,

    You could restrict the "net.exe" and "wmic.exe" by group policy for specific users.

    Here is the policy:

    User Configuration/Administrative Templates/System/Don't run specified Windows applications

    And net.exe is under windows/system32 folder,  wmic.exe is under Windows\System32\wbem folder.

    Best Regards
    Please remember to mark the replies as an answers if they help. If you have feedback for TechNet Subscriber Support, contact

    יום שישי 18 מאי 2018 02:29
    מנחה דיון