Empêcher l'exécution et l'arrêt des tâches
Vérifié avec Windows 11 25H2 — mis à jour le 10 juillet 2026
Pris en charge sur : Windows Server 2003, Windows XP et Windows 2000 uniquement
Chemin dans la console GPO
Configuration utilisateur\Modèles d'administration\Composants Windows\Planificateur de tâches Description
Empêche les utilisateurs de démarrer et d'arrêter des tâches manuellement. Ce paramètre supprime les éléments Démarrer et Arrêter la tâche du menu contextuel qui apparaît quand vous cliquez sur une tâche avec le bouton droit de la souris. Par conséquent, les utilisateurs ne peuvent pas démarrer les tâches manuellement ou forcer les tâches à se terminer avant qu'elles ne soient terminées. Remarque : ce paramètre apparaît dans les dossiers Configuration de l'ordinateur et Configuration de l'utilisateur. Si les deux paramètres sont configurés, le paramètre défini dans Configuration de l'ordinateur prévaut sur le paramètre défini dans Configuration de l'utilisateur.
Registre
Software\Policies\Microsoft\Windows\Task Scheduler5.0 Nom de valeur : Execution
Générateur d'exports
BETAConfigurez l'état, la portée et les options, puis générez les sorties .reg, PowerShell, Intune et SCCM — ou ajoutez le paramètre à une collection multi-paramètres.
Ces exports écrivent le registre — ce n'est pas une GPO managée. ⓘ
Fichier .reg
Windows Registry Editor Version 5.00
; Exported from gporais.com
; Policy: Empêcher l'exécution et l'arrêt des tâches
; State: Enabled
; Supported on: Windows Server 2003, Windows XP et Windows 2000 uniquement
[HKEY_CURRENT_USER\Software\Policies\Microsoft\Windows\Task Scheduler5.0]
"Execution"=dword:00000001 Autres formats (PowerShell, Intune, SCCM)
PowerShell
# Exported from gporais.com
# Policy: Empêcher l'exécution et l'arrêt des tâches
# State: Enabled
# Supported on: Windows Server 2003, Windows XP et Windows 2000 uniquement
# Warning: In SYSTEM context (the Intune default), HKCU targets the SYSTEM profile. Run this script using the logged-on credentials.
$path = 'HKCU:\Software\Policies\Microsoft\Windows\Task Scheduler5.0'
New-Item -Path $path -Force | Out-Null
Set-ItemProperty -Path $path -Name 'Execution' -Value 1 -Type DWord Intune XML
Aucune correspondance directe Policy CSP / OMA-URI pour cette stratégie. Utilisez l'onglet Intune Remediation, ou importez l'ADMX dans Intune. Intune Remediation
# === Detection script ===
# Exported from gporais.com
# Policy: Empêcher l'exécution et l'arrêt des tâches
# State: Enabled
# Supported on: Windows Server 2003, Windows XP et Windows 2000 uniquement
# Warning: In SYSTEM context (the Intune default), HKCU targets the SYSTEM profile. Run this script using the logged-on credentials.
function Test-RegistryValue {
param(
[Parameter(Mandatory = $true)][string]$Path,
[Parameter(Mandatory = $true)][string]$Name,
[object]$Expected,
[ValidateSet('String', 'DWord', 'MultiString')][string]$Kind = 'String',
[switch]$Absent
)
try {
$item = Get-ItemProperty -LiteralPath $Path -Name $Name -ErrorAction Stop
} catch {
return $Absent.IsPresent
}
if ($Absent.IsPresent) { return $false }
$actual = $item.$Name
if ($Kind -eq 'DWord') { return ([int64]$actual) -eq ([int64]$Expected) }
if ($Kind -eq 'MultiString') {
$actualValues = @($actual)
$expectedValues = @($Expected)
if ($actualValues.Count -ne $expectedValues.Count) { return $false }
for ($i = 0; $i -lt $expectedValues.Count; $i++) {
if ([string]$actualValues[$i] -ne [string]$expectedValues[$i]) { return $false }
}
return $true
}
return [string]$actual -eq [string]$Expected
}
$checks = @(
(Test-RegistryValue -Path 'HKCU:\Software\Policies\Microsoft\Windows\Task Scheduler5.0' -Name 'Execution' -Expected 1 -Kind DWord)
)
if ($checks -notcontains $false) {
Write-Output 'Compliant'
exit 0
}
Write-Output 'Non-compliant'
exit 1
# === Remediation script ===
# Exported from gporais.com
# Policy: Empêcher l'exécution et l'arrêt des tâches
# State: Enabled
# Supported on: Windows Server 2003, Windows XP et Windows 2000 uniquement
# Warning: In SYSTEM context (the Intune default), HKCU targets the SYSTEM profile. Run this script using the logged-on credentials.
$path = 'HKCU:\Software\Policies\Microsoft\Windows\Task Scheduler5.0'
New-Item -Path $path -Force | Out-Null
Set-ItemProperty -Path $path -Name 'Execution' -Value 1 -Type DWord Scripts SCCM
# Exported from gporais.com
# Policy: Empêcher l'exécution et l'arrêt des tâches
# State: Enabled
# Supported on: Windows Server 2003, Windows XP et Windows 2000 uniquement
# SCCM Configuration Item guidance:
# Create a Configuration Item of type "Setting: Script".
# Discovery script: use the Detection script below.
# Remediation script: use the Remediation script below.
# Compliance rule: the Discovery script output equals 'Compliant'.
# === Detection script ===
# Exported from gporais.com
# Policy: Empêcher l'exécution et l'arrêt des tâches
# State: Enabled
# Supported on: Windows Server 2003, Windows XP et Windows 2000 uniquement
# Warning: In SYSTEM context (the Intune default), HKCU targets the SYSTEM profile. Run this script using the logged-on credentials.
function Test-RegistryValue {
param(
[Parameter(Mandatory = $true)][string]$Path,
[Parameter(Mandatory = $true)][string]$Name,
[object]$Expected,
[ValidateSet('String', 'DWord', 'MultiString')][string]$Kind = 'String',
[switch]$Absent
)
try {
$item = Get-ItemProperty -LiteralPath $Path -Name $Name -ErrorAction Stop
} catch {
return $Absent.IsPresent
}
if ($Absent.IsPresent) { return $false }
$actual = $item.$Name
if ($Kind -eq 'DWord') { return ([int64]$actual) -eq ([int64]$Expected) }
if ($Kind -eq 'MultiString') {
$actualValues = @($actual)
$expectedValues = @($Expected)
if ($actualValues.Count -ne $expectedValues.Count) { return $false }
for ($i = 0; $i -lt $expectedValues.Count; $i++) {
if ([string]$actualValues[$i] -ne [string]$expectedValues[$i]) { return $false }
}
return $true
}
return [string]$actual -eq [string]$Expected
}
$checks = @(
(Test-RegistryValue -Path 'HKCU:\Software\Policies\Microsoft\Windows\Task Scheduler5.0' -Name 'Execution' -Expected 1 -Kind DWord)
)
if ($checks -notcontains $false) {
Write-Output 'Compliant'
exit 0
}
Write-Output 'Non-compliant'
exit 1
# === Remediation script ===
# Exported from gporais.com
# Policy: Empêcher l'exécution et l'arrêt des tâches
# State: Enabled
# Supported on: Windows Server 2003, Windows XP et Windows 2000 uniquement
# Warning: In SYSTEM context (the Intune default), HKCU targets the SYSTEM profile. Run this script using the logged-on credentials.
$path = 'HKCU:\Software\Policies\Microsoft\Windows\Task Scheduler5.0'
New-Item -Path $path -Force | Out-Null
Set-ItemProperty -Path $path -Name 'Execution' -Value 1 -Type DWord Vous construisez une collection multi-paramètres ? Ajoutez ce paramètre et générez des exports combinés (.reg, PowerShell, GPO).