 




<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>If it has a plug, it&#039;s IT stuff &#187; Group Policy</title>
	<atom:link href="http://itknowledgeexchange.techtarget.com/it-support/tag/group-policy/feed/" rel="self" type="application/rss+xml" />
	<link>http://itknowledgeexchange.techtarget.com/it-support</link>
	<description></description>
	<lastBuildDate>Wed, 26 Nov 2008 09:46:05 +0000</lastBuildDate>
	<language>en-US</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	
		<item>
		<title>Group Policy scripts, what are they doing on my PC?</title>
		<link>http://itknowledgeexchange.techtarget.com/it-support/group-policy-scripts-what-are-they-doing-on-my-pc/</link>
		<comments>http://itknowledgeexchange.techtarget.com/it-support/group-policy-scripts-what-are-they-doing-on-my-pc/#comments</comments>
		<pubDate>Mon, 10 Nov 2008 10:48:03 +0000</pubDate>
		<dc:creator>alessandro.panzetta</dc:creator>
				<category><![CDATA[Group Policy]]></category>
		<category><![CDATA[IT support]]></category>

		<guid isPermaLink="false">http://itknowledgeexchange.techtarget.com/it-support/group-policy-scripts-what-are-they-doing-on-my-pc/</guid>
		<description><![CDATA[Even if I&#8217;m not anymore in the direct IT Department, some manager have asked me this question when they noticed that there were some shutdown/startup scripts running on their client machines so I thought that writing a post that explains how to find this information could be a good idea. Let&#8217;s start from the concept: [...]]]></description>
				<content:encoded><![CDATA[<p>Even if I&#8217;m not anymore in the direct IT Department, some manager have asked me this question when they noticed that there were some shutdown/startup scripts running on their client machines so I thought that writing a post that explains how to find this information could be a good idea.</p>
<p>Let&#8217;s start from the concept: in an Active Directory based domain Administrators can write Group Policies that can satisfy many needs in IT Administration, including which scripts a computer or user has to run while starting up or logging to a computer. These scripts are of two main kinds:</p>
<ul>
<li>COMPUTER: we can have a script for startup and one for shutdown</li>
<li>USER: we can have a script for login and one for logoff</li>
</ul>
<p>So an Admin can provide some scripts and be sure that these are running accordingly but how can you understand what are the scripts doing? Simply perform these steps</p>
<p><!--[if gte mso 9]&amp;gt;     Normal   0               false   false   false      EN-US   X-NONE   X-NONE                                                     MicrosoftInternetExplorer4                                                   --><!--[if gte mso 9]&amp;gt;                                                                                                                                                                                                                                                                                                                                                                                                                                --> <!--  /* Font Definitions */  @font-face 	{font-family:"Cambria Math"; 	panose-1:2 4 5 3 5 4 6 3 2 4; 	mso-font-alt:"Calisto MT"; 	mso-font-charset:0; 	mso-generic-font-family:roman; 	mso-font-pitch:variable; 	mso-font-signature:-1610611985 1107304683 0 0 159 0;} @font-face 	{font-family:Calibri; 	panose-1:2 15 5 2 2 2 4 3 2 4; 	mso-font-alt:"Arial Rounded MT Bold"; 	mso-font-charset:0; 	mso-generic-font-family:swiss; 	mso-font-pitch:variable; 	mso-font-signature:-1610611985 1073750139 0 0 159 0;}  /* Style Definitions */  p.MsoNormal, li.MsoNormal, div.MsoNormal 	{mso-style-unhide:no; 	mso-style-qformat:yes; 	mso-style-parent:""; 	margin:0cm; 	margin-bottom:.0001pt; 	mso-pagination:widow-orphan; 	font-size:11.0pt; 	font-family:"Calibri","sans-serif"; 	mso-fareast-font-family:Calibri; 	mso-fareast-theme-font:minor-latin; 	mso-bidi-font-family:"Times New Roman";} a:link, span.MsoHyperlink 	{mso-style-priority:99; 	color:blue; 	text-decoration:underline; 	text-underline:single;} a:visited, span.MsoHyperlinkFollowed 	{mso-style-noshow:yes; 	mso-style-priority:99; 	color:purple; 	mso-themecolor:followedhyperlink; 	text-decoration:underline; 	text-underline:single;} p.MsoListParagraph, li.MsoListParagraph, div.MsoListParagraph 	{mso-style-priority:34; 	mso-style-unhide:no; 	mso-style-qformat:yes; 	margin-top:0cm; 	margin-right:0cm; 	margin-bottom:0cm; 	margin-left:36.0pt; 	margin-bottom:.0001pt; 	mso-pagination:widow-orphan; 	font-size:11.0pt; 	font-family:"Calibri","sans-serif"; 	mso-fareast-font-family:Calibri; 	mso-fareast-theme-font:minor-latin; 	mso-bidi-font-family:"Times New Roman";} .MsoChpDefault 	{mso-style-type:export-only; 	mso-default-props:yes; 	font-size:10.0pt; 	mso-ansi-font-size:10.0pt; 	mso-bidi-font-size:10.0pt;} @page Section1 	{size:612.0pt 792.0pt; 	margin:72.0pt 72.0pt 72.0pt 72.0pt; 	mso-header-margin:36.0pt; 	mso-footer-margin:36.0pt; 	mso-paper-source:0;} div.Section1 	{page:Section1;}  /* List Definitions */  @list l0 	{mso-list-id:2099062559; 	mso-list-type:hybrid; 	mso-list-template-ids:562078168 67698703 67698713 67698715 67698703 67698713 67698715 67698703 67698713 67698715;} @list l0:level1 	{mso-level-tab-stop:none; 	mso-level-number-position:left; 	text-indent:-18.0pt;} @list l0:level2 	{mso-level-number-format:alpha-lower; 	mso-level-tab-stop:none; 	mso-level-number-position:left; 	text-indent:-18.0pt;} @list l0:level3 	{mso-level-tab-stop:108.0pt; 	mso-level-number-position:left; 	text-indent:-18.0pt;} @list l0:level4 	{mso-level-tab-stop:144.0pt; 	mso-level-number-position:left; 	text-indent:-18.0pt;} @list l0:level5 	{mso-level-tab-stop:180.0pt; 	mso-level-number-position:left; 	text-indent:-18.0pt;} @list l0:level6 	{mso-level-tab-stop:216.0pt; 	mso-level-number-position:left; 	text-indent:-18.0pt;} @list l0:level7 	{mso-level-tab-stop:252.0pt; 	mso-level-number-position:left; 	text-indent:-18.0pt;} @list l0:level8 	{mso-level-tab-stop:288.0pt; 	mso-level-number-position:left; 	text-indent:-18.0pt;} @list l0:level9 	{mso-level-tab-stop:324.0pt; 	mso-level-number-position:left; 	text-indent:-18.0pt;} ol 	{margin-bottom:0cm;} ul 	{margin-bottom:0cm;} --> <!--[if gte mso 10]&amp;gt;   /* Style Definitions */  table.MsoNormalTable 	{mso-style-name:"Table Normal"; 	mso-tstyle-rowband-size:0; 	mso-tstyle-colband-size:0; 	mso-style-noshow:yes; 	mso-style-priority:99; 	mso-style-qformat:yes; 	mso-style-parent:""; 	mso-padding-alt:0cm 5.4pt 0cm 5.4pt; 	mso-para-margin:0cm; 	mso-para-margin-bottom:.0001pt; 	mso-pagination:widow-orphan; 	font-size:10.0pt; 	font-family:"Times New Roman","serif";}  --></p>
<ol>
<li><!--[if !supportLists]--><span><span><span></span></span></span>Click <strong><em>START/RUN</em></strong> type <strong><em>MMC</em></strong> and press <strong><em>ENTER</em></strong></li>
<li><!--[if !supportLists]--><span><span></span></span>Press <strong><em>CTRL+M (Add/Remove Snap-in)</em></strong> and click the <strong><em>ADD</em></strong> button</li>
<li><!--[if !supportLists]--><span><span></span></span>Select <strong><em>Resultant Set Of Policy</em></strong>, click the <strong><em>ADD</em></strong> button and then <strong><em>CLOSE</em></strong></li>
<li><!--[if !supportLists]--><span><span></span></span>Click <strong><em>OK</em></strong></li>
<li><!--[if !supportLists]--><span><span></span></span>Right click the <strong><em>Resultant Set Of Policy</em></strong> node and choose “<strong><em>Generate RSOP data</em></strong>”</li>
<li><!--[if !supportLists]--><span><span></span></span>Click <strong><em>NEXT</em></strong> until you reach the <strong><em>USER SELECTION</em></strong> window</li>
<li><!--[if !supportLists]--><span><span></span></span>Check the lower radio button “<strong><em>Do not display user policy…</em></strong>” and click <strong><em>NEXT</em></strong> twice</li>
<li><!--[if !supportLists]--><span><span></span></span>Click <strong><em>FINISH</em></strong></li>
<li><!--[if !supportLists]--><strong><em><span><span></span></span></em></strong>Expand the tree <strong><em>Computer Configuration/Windows Settings/Scripts/Startup</em></strong></li>
<li><span>Now browse your closest domain controller to something like <strong>\\DOMAINCONTROLLER\SYSVOL\DOMAINNAME\Policies\{XXXXXXXXXXXXXXXXXXXXXXXXXXXX}\Machine\Scripts\Startup</strong>; in this folder you should find the</span> scripts that are run on your computer</li>
</ol>
<p>At this point you can copy these files and read their content and, if they are clear enough, remove any doubt on what your SysAdmin is trying to do with these scripts.</p>
<!-- wpms-network-global-inserts -->]]></content:encoded>
			<wfw:commentRss>http://itknowledgeexchange.techtarget.com/it-support/group-policy-scripts-what-are-they-doing-on-my-pc/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>[TLBAT] Keep patches and updates under control with WSUS</title>
		<link>http://itknowledgeexchange.techtarget.com/it-support/tlbat-keep-patches-and-updates-under-control-with-wsus/</link>
		<comments>http://itknowledgeexchange.techtarget.com/it-support/tlbat-keep-patches-and-updates-under-control-with-wsus/#comments</comments>
		<pubDate>Thu, 26 Jun 2008 13:07:07 +0000</pubDate>
		<dc:creator>alessandro.panzetta</dc:creator>
				<category><![CDATA[Group Policy]]></category>
		<category><![CDATA[IT support]]></category>
		<category><![CDATA[Patch management]]></category>
		<category><![CDATA[TLBAT]]></category>
		<category><![CDATA[WSUS]]></category>

		<guid isPermaLink="false">http://itknowledgeexchange.techtarget.com/it-support/tlbat-keep-patches-and-updates-under-control-with-wsus/</guid>
		<description><![CDATA[In my previous articles I&#8217;ve described the process to allow several services and servers to be installed for free or at low cost in your network; this post continues with &#8220;I want it but I have no budget&#8221; philosophy and enables you to have an update and patching system for your network where you can [...]]]></description>
				<content:encoded><![CDATA[<p>In my previous articles I&#8217;ve described the process to allow several services and servers to be installed for free or at low cost in your network; this post continues with &#8220;<em>I want it but I have no budget</em>&#8221; philosophy and enables you to have an update and patching system for your network where you can control who, what, when is updated/upgraded.</p>
<p>In order to have a server/infrastructure of servers for the updates in your network, you will need to install the Microsoft Windows Update Services Server 3.0 (a.k.a. WSUS).</p>
<p>Basically with WSUS you can create a local update server where you can control all the updating process for your client&#8217;s network. You may choose to download the updates and patches from the Microsoft Update site and store a copy of the files locally in order to save bandwidth; you may only choose to control the approval/denial of the updates and have the clients connect to Microsoft to download the files; you may also create a tier based WSUS structure where a child server receives updates and approvals from the above server and so on.</p>
<p>Once you have designed, planned and installed your WSUS structure you can then use Group Policies, or any other method (e.g. VBScript) to have your clients connect to the WSUS servers in your structure.</p>
<p>First start by <a href="http://www.microsoft.com/downloads/details.aspx?FamilyId=C8FA2FD1-72F6-4F19-A1B0-F689DAE14BE6&amp;displaylang=en" target="_blank">downloading this document</a> that describes the process for deploying the WSUS; then you may consider <a href="http://technet2.microsoft.com/windowsserver/en/library/b4ff7f56-45b5-4f2b-82e7-283903d23c261033.mspx?mfr=true">having a look at this site</a> that explains how to implement GPO for the use of WSUS or consider using either <a href="http://www.microsoft.com/technet/scriptcenter/scripts/sus/default.mspx?mfr=true">VBScript</a> or this <a href="http://www.planet-source-code.com/vb/scripts/ShowCode.asp?txtCodeId=55435&amp;lngWId=1">Visual Basic 6.0 tool</a> I released some years ago.</p>
<p>This time we have to thank Microsoft for providing another money-saver tool that won&#8217;t impact your low budget!!!</p>
<p>Keep on reading my blog and in the end you will have saved lots of buck$ that you may consider to send me via PayPal!! <span><img src="http://gaming.ngi.it/images/ngismiles/asd.gif" alt="ASD" height="15" width="15" /></span></p>
<!-- wpms-network-global-inserts -->]]></content:encoded>
			<wfw:commentRss>http://itknowledgeexchange.techtarget.com/it-support/tlbat-keep-patches-and-updates-under-control-with-wsus/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>
