RE: How to apply SCW policy to another server?



Hi,

You can refer to following steps:

To apply an SCW security policy during the unattended installation, also
carry out the following steps.

1. Create the security policy file on a server that already has SCW
installed.

2. Either create a Cmdlines.txt file or modify the existing one so that it
has a [Commands] section containing the following line:

scwcmd configure /p:SCWPolicy.xml

3. Copy the Cmdlines.txt file and the previously created policy file
(SCWPolicy.xml in this case) to the $OEM$ directory.

You can refer to the article as below:
<http://technet2.microsoft.com/WindowsServer/en/Library/5254f8cd-143e-4559-a
299-9c723b3669461033.mspx?mfr=true>

Best regards,

Vincent Xu
Microsoft Online Partner Support

======================================================
Get Secure! - www.microsoft.com/security
======================================================
When responding to posts, please "Reply to Group" via your newsreader so
that others
may learn and benefit from this issue.
======================================================
This posting is provided "AS IS" with no warranties,and confers no rights.
======================================================



--------------------
Thread-Topic: How to apply SCW policy to another server?
thread-index: AcZ4TrI725ainV4VTbytfjuLb/NXXQ==
X-WBNR-Posting-Host: 70.171.42.251
From: =?Utf-8?B?U3RldmVQ?= <SteveP@xxxxxxxxxxxxxx>
Subject: How to apply SCW policy to another server?
Date: Mon, 15 May 2006 11:38:01 -0700
Lines: 14
Message-ID: <0D98625B-E486-4AD6-BC54-1F4C7557B0FC@xxxxxxxxxxxxx>
MIME-Version: 1.0
Content-Type: text/plain;
charset="Utf-8"
Content-Transfer-Encoding: 7bit
X-Newsreader: Microsoft CDO for Windows 2000
Content-Class: urn:content-classes:message
Importance: normal
Priority: normal
X-MimeOLE: Produced By Microsoft MimeOLE V6.00.3790.1830
Newsgroups: microsoft.public.windows.server.general
Path: TK2MSFTNGXA01.phx.gbl
Xref: TK2MSFTNGXA01.phx.gbl microsoft.public.windows.server.general:96058
NNTP-Posting-Host: TK2MSFTNGXA01.phx.gbl 10.40.2.250
X-Tomcat-NG: microsoft.public.windows.server.general

I have been practicing running the SCW on a 2003 standard server test
box to
get a feel for it before I use it on the 2003 standard server network.

I am ready to run it on a primary domain controller (DC1). If all goes
well
I will then want to apply this same policy to the secondary DC (DC2)
which is
a mirror image of the primary DC.

There was no place in the wizard to apply the policy to another server.

I assume this must be done through the command line interface.

What is the command to apply the SCW policy from DC1 to DC2?
--
Thanks, Steve


.



Relevant Pages

  • Cant get SCW to create group policy
    ... I have a been trying to create a baseline security ... policy for my company using the SCW in Windows Server 2003. ... Note the server that I'm running the command on is not a DC, ... SCW on a DC. ...
    (microsoft.public.windows.group_policy)
  • Re: Security Configuration Wizard
    ... > After running the SCW on two Windows 2003 Server Std SP1 servers, ... > ran into a few problems with the .xml file. ... I created the policy and saved it successfully to a ... I checked with the SCW team on this and here is the response they provided: ...
    (microsoft.public.windows.server.general)
  • RE: How to apply SCW policy to another server?
    ... Create the security policy file on a server that already has SCW ...
    (microsoft.public.windows.server.general)
  • RE: How to apply SCW policy to another server?
    ... When responding to posts, please "Reply to Group" via your newsreader so ... Create the security policy file on a server that already has SCW ...
    (microsoft.public.windows.server.general)
  • Error 0x800704b8 when applying policy with Security Configuration Wizard
    ... I'm having problems applying a security policy with the Security ... Member Servers with IIS and SCW. ... running SCW from MS01 onto MS02, and this is when the process fails and I ...
    (microsoft.public.windows.server.security)