I've seen this asked a bunch of times but can find no answer. The win7 policy is computer > admin templates > windows components > windows remote shell > allow remote shell access. The description reads:
If you enable this policy setting and set it to False, new remote shell connections will be rejected by the server.There is no option to set to false. My goal is to ensure my win7 desktops can neither send nor receive remote shell commands.