Remove “Users” Group from ACL

This script allows to remove the “Users” Group from the Access Control List (ACL) of a file or folder.

First, the NTFS rights inheritance is removed, then the “Users” group is removed from ACL.

To play with ACL, the Cmdlet to use is the following: Get-Acl


The Get-Acl cmdlet gets objects that represent the security descriptor of a file or resource. The security descriptor contains the access control lists (ACLs) of the resource. The ACL specifies the permissions that users and user groups have to access the resource.