GP on Server 2008 R2 trying to push software to WIn 7 with Security Filtering via Security Group
i searched internet far , wide last couple days answer, not find one.
so here goes. long one.
i running server 2008 r2 primary dc server 2003 backup dc (hmm, perhaps issue). system trying push software win 7 x64 pro machine.
i have created gpo called "chrome_browser" want applied computer objects in domain. in computer configuration | policies | software settings | software installation, "assigned" coogle chrome msi package v65.85. assigned options default except added "uninstall application when falls out of scope of management" option. software on share "everyone" has read access to, , software added via unc path.
i created "chrome_65.85" security group global group scope, , added test computer member.
in "chrome_browser" gpo added "chrome_65.85" security group under scope tab in security filtering section. in gpo delegation tab security group has read , apply group policy "allow" permissions.
the gpo sits in root of domain "highest level", security group sits in sofware ou. , computer object sits severl levels in ou.
security group in; domain | software ou.
computer object sitis in; domain | computers | computer x64 | computer win7 x64.
gpo sits right under domain level. tried putting gpo in software , computer ous.
when gpupdate /force on test machine feed me line software policy can installed @ boot, reboot , there still no software. when perform gpresult /r can see "chrome_browser" gpo has been assigned @ machine level. seems computer can see , apply policy. not pushing software though.
one other thing note users on domain have local admin computers.
any ideas or suggestions?
can you:
1. run gpresult /h report.htm /f. save report.htm file , paste here
2. verify had read/execute file permission on share , read on share permission.
Windows Server > Group Policy
Comments
Post a Comment