Re: A way around domain group policy?
- From: Dups <Dups@xxxxxxxxxxxxxxxxxxxxxxxxx>
- Date: Wed, 23 Apr 2008 12:08:01 -0700
I am using VMWare. I created a snapshot of the system before poking around in
registry so if I happened to mess things up big time I can easily revert back
to the previous state with zero impact. The registry settings I am playing
around with are nothing major anyhow. It only deals with Windows Update
anyhow.
I did fire off an incident record to the security team to inform them of the
issue with their policy.
However, in the meantime I was having fun getting around the domain policies
that they had setup, especially how they seem to be so useless at the moment.
That's why I would like to get past this last hurdle of Windows not auto
installing the updates that it downloaded.
Thanks for the warnings though :)
"Meinolf Weber" wrote:
Hello Dups,.
First, you have to talk to your domain admins!!!
Second, if you are playing around in the registry without knowing what you
are really doing, it can/will happen that you will kick off yourself or create
total crash from your machine!!!
Third, talk to your domain admins or boss to provide you with a standalone
machine instead of a domain computer!!!
Best regards
Meinolf Weber
Disclaimer: This posting is provided "AS IS" with no warranties, and confers
no rights.
** Please do NOT email, only reply to Newsgroups
** HELP us help YOU!!! http://www.blakjak.demon.co.uk/mul_crss.htm
Hello everyone. I will try to best explain my scenerio.
I am a local admin for several workstations (Windows XP SP2) in my
office. I do not have any domain access other than a regular domain
user. I check the MMC snapin of Domain users etc and noticed that
there are 3 group policies that are applied to my profile when I log
in with my domain account. One of them is called WUS. I assume this
is the one that is causing me problems.
This policy sets up Windows update to use the companies' update server
instead of Microsoft's update server. That would be fine and dandy if
it wasn't for the fact that the server has been down since November.
So, I started messing around with Registry settings to try and get
around this issue. I have managed to have the computer contact the
Microsoft update server instead. I have it setup to download and
install the updates automaticly. It does download the updates that
are needed but the system does not auto apply these updates. I am
thinking there might be something in the registry or a policy applied
that does not allow the system to auto install the updates.
Now for the questions.
1. Is it even worth messing around with the registry settings and
local group policies? To my knowledge the domain policy should
override any settings I do localy. However, I have been changing
things in the registry and they do not get changed by the domain group
policy.
2. When do domain group policies get applied? From what I understand
when I log into windows with my domain account the domain group policy
gets applied to my profile. However, if I keep the computer on all the
time does the domain policy automaticaly get reapplied or refreshed
eventually?
I'll be registered to this post so if there is missing any information
I will get back to you asap.
Thanks in advance!
- References:
- A way around domain group policy?
- From: Dups
- Re: A way around domain group policy?
- From: Meinolf Weber
- A way around domain group policy?
- Prev by Date: Re: A way around domain group policy?
- Next by Date: Re: Group Policy applied to logon local and TS
- Previous by thread: Re: A way around domain group policy?
- Next by thread: Re: A way around domain group policy?
- Index(es):
Relevant Pages
|
Loading