all users have RDP SMB connection for both servers. But they shouldnt connect from one to another (SMB RDP)Are these domain joined?
They cant copy file to their local pc. they work in one server. They user other server for mail and internet. but from server which has lan connection they shouldnt reach other server which has their work filesThen you'll need to use a firewall to block that. If they can connect to both servers, blocking connections makes no sense since they can RDP to both, copy data from one to their system and then to the other computer defeating such a block.