Updated Script
This commit is contained in:
parent
06c08beeb2
commit
22bc7e4d05
@ -1,10 +1,22 @@
|
||||
$computerName = $env:COMPUTERNAME
|
||||
$domain = (Get-WmiObject Win32_ComputerSystem).Domain
|
||||
|
||||
$folderPath = "C:\Scripts"
|
||||
$groupName = "Authenticated Users"
|
||||
$groupName = "NT AUTHORITY\Authenticated Users"
|
||||
|
||||
# Get current ACL
|
||||
$acl = Get-Acl -Path $folderPath
|
||||
$acl.SetAccessRuleProtection($true, $false)
|
||||
$acl.RemoveAccessRule($acl.Access | Where-Object {$_.IdentityReference -eq "$domain\$groupName"})
|
||||
Set-Acl -Path $folderPath -AclObject $acl
|
||||
|
||||
# Create a new FileSystemSecurity object
|
||||
$newAcl = New-Object System.Security.AccessControl.DirectorySecurity
|
||||
|
||||
# Disable inheritance and copy existing rules
|
||||
$newAcl.SetAccessRuleProtection($true, $true)
|
||||
|
||||
# Get all rules except Authenticated Users
|
||||
$rules = $acl.Access | Where-Object {$_.IdentityReference -ne $groupName}
|
||||
|
||||
# Add each rule to the new ACL
|
||||
foreach ($rule in $rules) {
|
||||
$newAcl.AddAccessRule($rule)
|
||||
}
|
||||
|
||||
# Apply the modified ACL back to the folder
|
||||
Set-Acl -Path $folderPath -AclObject $newAcl
|
||||
Loading…
x
Reference in New Issue
Block a user