NETWORK PRESENCE ABOUT SERVICES PRODUCTS TRAINING CONTACT US SEARCH SUPPORT
 


Search
display results
words begin  exact words  any words part 

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

[FW-1] SecuRemote NG FP2 Issue with Microsoft Group Policy


  • To: [email protected]
  • Subject: [FW-1] SecuRemote NG FP2 Issue with Microsoft Group Policy
  • From: Patrick Baird <[email protected]>
  • Date: Wed, 7 Aug 2002 08:30:00 -0400
  • Reply-to: Mailing list for discussion of Firewall-1 <[email protected]>
  • Sender: Mailing list for discussion of Firewall-1 <[email protected]>
  • Thread-index: AcI+DiYuKf2iN4sGQUKtfLaqy9Dmaw==
  • Thread-topic: SecuRemote NG FP2 Issue with Microsoft Group Policy

Title: SecuRemote NG FP2 Issue with Microsoft Group Policy

Firewall Version:       4.1 SP5
OS Version:             Windows XP
SecuRemote:             4.1 SP5 (Build 4199), NG FP2 (52057)
Machine Hardware:       Dell Latitude C800, Dell Latitude C840 w/ Docking Stations

We have packaged and assigned certain applications (MS Office, WinZip, Adobe Reader, Netscape) to corporate computers.  So when a machine is built these appications are automatically installed on the device.  These are selected to be 'Removed when machine falls out of scope of management'

We then have created a simple ZAP package for SecuRemote NG FP2, customized the .ini file to remove most of the configuration options during setup as such:

[Version]
AppName=SecuRemote

ShowWelcome=0
ShowLic=0
OverwriteConfiguration=1
ShowUpdateOverwrite=1
PathAskUser=1
DesktopSecurityDefault=0
DesktopSecurityAskUser=0
InstallDialupOnly=0
ShowNetworkBindings=1
ShowReadmeFile=0
EnableSDL=1
SupportFWZ=0
OverwriteEntINI=0
IncludeBrandingFiles=1
Support3rdPartyGina=1
MajorVersion=5
MinorVersion=0
EnablePolicyView=1
EnableLogView=1
EnableDiagnosticsView=1
ShowDriverSignatureWarning=0

Only selected users have access to the ZAP package through a VPN Access group.  When users install from Add/Remove after 1-3 reboots (I know this is the number XP takes to modify some installation policies), all assigned applications are automatically removed.  In the eventvwr, it says no DC can be found, and therefore the out-of-scope setting applies as above.  Also, some services fail to start occasionaly such as Browser and Secondary Logon.

The user can still log into the domain, but this software is gone.

We have taken the following steps:
        1. At the end of installation, go into the NIC properties (Dial-Up Adapters only was checked), and remove the binding for       SecuRemote

        2. Set all SecuRemote services to Manual

This appears to only happen with NG FP2 and not if I deploy 4.1 SP5 Build 4199 to the same machine.  Removing the NG FP2 SecuRemote and rebooting, the machine is once again supplied with the assigned software above.

Any one else see this?



 
----------------------------------

ABOUT SERVICES PRODUCTS TRAINING CONTACT US SEARCH SUPPORT SITE MAP LEGAL
   All contents © 2004 Network Presence, LLC. All rights reserved.