bennyineire wrote: » Thanks for the reply's guys, We have Kaspersky endpoint and my solution was to put these PC's in a "disable USB group" then disable the policy on a needs be basis. I suggested this to my manager but she's looking for me to explore other options, she seems to think what I asked for in this thread was possible but I had my doubts.
syklops wrote: » So basically you want a whitelist of USB device IDs? I'm sure it can be done.
bennyineire wrote: » Yep that's what I thought, just wanted to check to see if its possible. I guess not.
bofhdan wrote: » Have you looked at the Kensington USB Port Locks? They might be easier and cheaper than trying to do that in software.
bennyineire wrote: » ... These PC's are not on our network...
MMFITWGDV wrote: » All of those central managed solutions may not suit the OP. Even the BIOS solution may not be ideal, as these machines are controlling a part of the manufacturing process and therefore may not be able to be shut down to access the BIOS. A quick Google threw up some solutions that may suit. I have no idea if these are good or bad:http://securityxploded.com/windows-usb-blocker.phphttp://www.newsoftwares.net/usb-block/
Victor wrote: » Realistically, how long do these machines have left and what if one / more than one just dies?
davo2001 wrote: » They have nothing to do with what he wants.