Get the App
SLTechnology News&Howtos  ›  Servers  › 

RMS Rights Policy template creation and deployment

Shulou Source: shulou.com Published: 2022-06-02 10:27:43 10月03日 Update

1. Create a shared folder where template files are stored

Create a new folder temp on disk D with full control of AD RMS Service Group group and system group, and read-only everyone group.

two。 Enable export in the rights policy template properties and specify the template file location (the location must be the UNC path)

3. Create a permission policy template that forbids forwarding by the IT department

4. Add an IT group to disable forwarding in the permission list

5. Select the expiration policy to never expire

6. Group Policy Settings

Go to Microsoft officially to download the Office 2010 administrative template

Http://www.microsoft.com/download/en/details.aspx?id=18968

7. Extract the Office 2010 administrative template

Here, extract it to the d:\ Office ADM directory

8. Office 2010 Administrative templates in Group Policy Management

Open group policy with gpmc and edit Default Domain Policy policy

Add a template to the user configuration-Administration template

Add a template with path D:\ Office ADM\ ADM\ zh-cn\ office14.adm

Open the specified permission policy path in user configuration-policies-Administrative templates-Classic Administrative templates (ADM)-Microsoft Office 2010-manage restricted permissions

Enable the specified permission policy path and specify the path location

9. Let the group policy take effect immediately

10. Sending test

Use wxt to send email to the zj of the IT department, and you can choose the permission policy template you just created on the RMS server in the permissions.

Zj receives the letter and can see that the permission cannot be forwarded.

Note: apply RMS template to XP. You need to install WindowsRightsManagementServicesSP2-KB917275-Client-CHS-x86 patch.

Tags: Templates policies permissions administration paths files locations folders users selections configurations comments official properties servers never directories classics patches mail Apple Docker Huawei Linux macOS MariaDB Microsoft MySQL NVidia OPPO Reno Shulou Technology MySQL NVidia Docker Xiaomi