Software Restriction Policy Notification

Applies To: Windows Server 2008

Software Restriction Policy Notification displays a messages to the user and writes an event to the event log when the user attempts to run a program that is not allowed by the policy. If the software restriction policy is enforced on all users, then messages will be displayed to both standard users and administrators. If the policy is enforced on all users except local administrators, then users logged on with administrative credentials will not be notified as the policy will not apply to the programs that they run.  

If the policy is enforced on all users and the Basic User default security level is selected, local administrators may not be able to run programs that require administrative credentials unless those programs are specifically excepted from the rule.

Events

Event ID Source Message

865

Microsoft-Windows-SoftwareRestrictionPolicies

Access to %1 has been restricted by your Administrator by the default software restriction policy level.

866

Microsoft-Windows-SoftwareRestrictionPolicies

Access to %1 has been restricted by your Administrator by location with policy rule %2 placed on path %3.

867

Microsoft-Windows-SoftwareRestrictionPolicies

Access to %1 has been restricted by your Administrator by software publisher policy.

868

Microsoft-Windows-SoftwareRestrictionPolicies

Access to %1 has been restricted by your Administrator by policy rule %2.

882

Microsoft-Windows-SoftwareRestrictionPolicies

Access to %1 has been restricted by your Administrator by policy rule %2.

Software Restriction Policies (SRP)

Core Security