Yes that is correct. There is most likely a policy in place to not allow access to the command prompt. When I build policies that is one of the first thing I make sure that is instituted. It could be...