Solved

Is there a way to setup up Permissions so regular users can update antivirus daily but not be able to install stuff?

Posted on 2008-10-11
5
277 Views
Last Modified: 2012-05-05
I have workstations and vpn remote users with laptops. They can't update their virus protection software or other installed software on their machines. The remotes and local workstations are on a windows 2003 server domain with active directory. Can these users still be restricted so they don't delete or cause havoc to their machines the way they are currently, and somehow give them permisssions to update existing software on the machine? (Such as Anti virus, etc..) The workstations are all windows xp.
0
Comment
Question by:FTGE
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
5 Comments
 

Expert Comment

by:flipmedia
ID: 22696661
Hi,
Could you please explain what type of antivirus you are using there.If its a corporate antivirus,i am sure that you can update the clients centrally by pushing the updates form the server itself,without changing the access restrictions of the users.
0
 
LVL 20

Expert Comment

by:wolfcamel
ID: 22696662
the antivirus services should run as local administrator, and hence be able to self update
0
 

Author Comment

by:FTGE
ID: 22698191
does this mean assign the user as an administrator on their local machine not through active directory? Doesn't this give them rights to install foreign software as well? Isn't their some sort of group policy setting that could be made instead?
0
 
LVL 7

Accepted Solution

by:
enzogoy earned 500 total points
ID: 22699930
No, you don't need to allow the user as an administrator.  Antivirus software suppose to be push out to all machine in your organisation through AD (I assume).  Update will be push out from the Central Server through GPO (at my workplace) base on computer not user therefore it has nothing to do with user rights.  The user doesn't need to do anything, they don't even know when will the update install on their PC.  And the best way is push out these update to desktop during night time.
enz
0

Featured Post

PeopleSoft Has Never Been Easier

PeopleSoft Adoption Made Smooth & Simple!

On-The-Job Training Is made Intuitive & Easy With WalkMe's On-Screen Guidance Tool.  Claim Your Free WalkMe Account Now

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

When you start your Windows 10 PC and got an "Operating system not found" error or just saw  "Auto repair for startup" or a blinking cursor with black screen. A loop for Auto repair will start but fix nothing.  You will be panic as there are no back…
Use of TCL script on Cisco devices:  - create file and merge it with running configuration to apply configuration changes
Here's a very brief overview of the methods PRTG Network Monitor (https://www.paessler.com/prtg) offers for monitoring bandwidth, to help you decide which methods you´d like to investigate in more detail.  The methods are covered in more detail in o…
There's a multitude of different network monitoring solutions out there, and you're probably wondering what makes NetCrunch so special. It's completely agentless, but does let you create an agent, if you desire. It offers powerful scalability …

719 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question