Re: Deploying an msi application via group policy
- From: "Mikal" <Mikal@xxxxxxxxxxxxxxxxxxxxxxxxx>
- Date: Tue, 21 Jun 2005 17:49:01 -0700
Hi Cary
thanks for your help on this
What I am trying to do is to deploy trend office scan to various PC's on an
Active Directory network. the PC's are running both windows XP and windows
2000. Trend office scan has a tool for creating a MSI - I have used this tool
and have run the MSI on a local PC logged in as administrator and it works.
When I go to assign the MSI to a computer through group policy it doesnt
work - I'm assiming its because the computer is unable to find the path which
in my case is eg \\server\data\file.msi when i assign it to a user i get a
message saying that the user doesnt have rights to install the application so
I'm assuming that the user needs to be an administrator
so i guess what I want to know is if u assign a policy to deploy a msi to a
user should it deploy regardless of user rights on the local machine?
(regardless of OS win2k or XP) cause at the moment it doesnt seem to be
working
"Cary Shultz [A.D. MVP]" wrote:
> Mikal,
>
> I am sorry but I am still confused with what it is exactly that you have
> tried.
>
> What is the application that you are trying to deploy via Group Policy?
> Does it come with a 'native' .msi file? or are you creating a .msi file (
> there are several ways )?
>
> Not sure that pushing it out via logon script is the correct way! But that
> all depends on what you are trying to install.
>
> --
> Cary W. Shultz
> Roanoke, VA 24012
> Microsoft Active Directory MVP
>
> http://www.activedirectory-win2000.com
> http://www.grouppolicy-win2000.com
>
>
>
> "Mikal" <Mikal@xxxxxxxxxxxxxxxxxxxxxxxxx> wrote in message
> news:3CFF4953-FFAC-4349-8C5C-5A8E3322279A@xxxxxxxxxxxxxxxx
> > Hi Cary thanks for your reply
> > I should have been a bit more clearer - i am appling the group policy to
> > OU
> > containers in Active Directory - im am pushing out a logon script to users
> > to
> > install the msi, the OS is win2k - I am using a login script to push the
> > msi
> > on win2k machines as if I use group policy it just sits in add/remove
> > programs
> >
> > as trouble shooting I have made sure there anre any local policies
> > affecting
> > installation and have made sure that the msi works (which it does under
> > admin
> > account) I have run the script (batch file) from the command prompt and
> > that
> > works fine
> >
> > I also tried assigning the policy to a machine but this failed too, i'm
> > assuming it failed as it was unable to get a network connection. hence
> > find
> > the path of the msi
> >
> >
> >
> > "Cary Shultz [A.D. MVP]" wrote:
> >
> >> Mikal,
> >>
> >> You do not deploy applications via GPO to groups. This is your first
> >> problem! You deploy applications either to user account objects or to
> >> computer account objects which directly reside in the OU ( assuming that
> >> we
> >> are talking about this level; it is possible that we are talking about
> >> another level...possibly the Site level? ) to which the GPO has been
> >> linked.
> >>
> >> You have to make sure that the user account objects ( or computer account
> >> objects, but since you are trying to deploy this to user account
> >> objects.... ) have both the Share and NTFS permissions to the shared
> >> folder
> >> in which the .msi file is located.
> >>
> >> You have to make sure that you tell Active Directory where the .msi file
> >> is
> >> via the UNC method ( \\servername\sharename\file.msi ) and not via a
> >> mapped
> >> network drive ( n:\someserver\somefolder\file.msi ).
> >>
> >> Now, in reference to my first point: it is possible that you are using
> >> Security Group Filtering. This is - on the Security tab of the GPO
> >> itself -
> >> where you would remove the group 'Authenticated Users' from the security
> >> and
> >> add your own security group. If you have done this you need to make sure
> >> that this group has both the READ and APPLY GROUP POLICY rights.
> >>
> >> What troubleshooting have you done? What would the OS on the clients be?
> >>
> >> Also, you need to make sure that your clients are pointing O*N*L*Y to
> >> your
> >> internal DNS Servers ( and not to any external DNS Servers - such as your
> >> ISP's ) in their TCP/IP configuration settings.
> >>
> >> --
> >> Cary W. Shultz
> >> Roanoke, VA 24012
> >> Microsoft Active Directory MVP
> >>
> >> http://www.activedirectory-win2000.com
> >> http://www.grouppolicy-win2000.com
> >>
> >>
> >>
> >> "Mikal" <Mikal@xxxxxxxxxxxxxxxxxxxxxxxxx> wrote in message
> >> news:3EB7FCEF-CC35-44E1-8C46-71B6FF9AF1E5@xxxxxxxxxxxxxxxx
> >> > Hi
> >> > I am trying to deploy an msi application via group policy to a user
> >> > group,
> >> > but it doesnt seem to be working. The users dont have any rights to the
> >> > local
> >> > machine, do they need to be administrators in order for the application
> >> > to
> >> > install?
> >> > any help would be great.
> >> >
> >> > ta
> >>
> >>
> >>
>
>
>
.
- Follow-Ups:
- Re: Deploying an msi application via group policy
- From: Cary Shultz [A.D. MVP]
- Re: Deploying an msi application via group policy
- References:
- Deploying an msi application via group policy
- From: Mikal
- Re: Deploying an msi application via group policy
- From: Cary Shultz [A.D. MVP]
- Re: Deploying an msi application via group policy
- From: Mikal
- Re: Deploying an msi application via group policy
- From: Cary Shultz [A.D. MVP]
- Deploying an msi application via group policy
- Prev by Date: NT4 to 2003 w/AD & new servers
- Next by Date: Re: Problems with transfering PDC emulator role
- Previous by thread: Re: Deploying an msi application via group policy
- Next by thread: Re: Deploying an msi application via group policy
- Index(es):
Relevant Pages
|
Loading