User Configuration\Administrative Templates\Windows Components\Microsoft Management Console\Restricted/Permitted snap-ins\Group Policy
Permits or prohibits use the Software Installation folder (Computer Configuration\Software Installation) in Group Policy.
If Restrict users to the explicitly permitted list of snap-ins is enabled, users cannot use any snap-in except those explicitly permitted. To explicitly permit use of this snap-in folder, enable this policy. If this policy is not configured (or disabled), this snap-in folder is prohibited.
If Restrict users to the explicitly permitted list of snap-ins is disabled or not configured, users can use any snap-in except those explicitly prohibited. To explicitly prohibit use of this snap-in folder, disable this policy. If this policy is not configured (or enabled), this snap-in folder is permitted.