Now you will see the overall controls for the applications.

Under Configure Rule Enforcement hit the Configure rule enforcement link.

Now under AppLocker Properties check the boxes next to Configured under Executable rules then click Ok. After completing the steps above, under the Overview section press Executable Rules.

Restrict Access to Programs with AppLocker in Windows 7

Since this is your first time accessing AppLocker, there will be no rules listed.

Right-click and select Create New Rule…

Select Permissions under Action select Deny.

2-app

Add the user you want to block, in this case it’s Jack.

After you’ve selected the deny action and selected the user continue to the next step.

In Conditions you could select from Publisher, Path or File hash.

3-app

We don’t want Jack to have access to any of the games.

so we will select Path.

tap on Browse Folders and go for the Microsoft Games folder.

1-applock

When everything looks right press Create.

A message pops up saying default rules haven’t been created yet.

It is important to ensure they are created so click Yes to this message.

1-lock

By default this service is not started so you will need to enable it.

Only an Administrator can go in and change the rule.

ConclusionUse caution when configuring the rules and only start the software Identity service after everything looks right.

3-applock

2-lock

9-applocker

3-lock

4-lock

5-lock

6-lock

7-lock

8-lock

9-lock

10-lock

11-lock

sshot-2009-11-08-[22-52-10]

sshot-10000