Have created a Group Policy to push out Microsoft Forefront to certain users contained within an Active Directory Organization Unit (OU). However, Forefront never gets installed on these user's comput

Have created a Group Policy to push out Microsoft Forefront to certain users contained within an Active Directory Organization Unit (OU). However, Forefront never gets installed on these user's computers.

We are using Group Policy and Active Directory to assign this policy which will install Forefront on the computers in this particular Organization Unit via Windows Software Update Services.

I have run gpupdate/force on these computers and have logged off, had them log back in, and have restarted the computer, but Forefront never gets installed.

I have also made sure that these computers don't have Microsoft Security Essentials installed and have disabled the Windows Defender service.

Furthermore, when users click on Windows Updates, the Windows updates are being pulled directly from the Microsoft website and aren't being pulled from the Windows Server Update Services server.

What can I do to fix this so that Forefront will install on these computers via Group Policy?
IT GuyNetwork EngineerAsked:
Who is Participating?
I wear a lot of hats...

"The solutions and answers provided on Experts Exchange have been extremely helpful to me over the last few years. I wear a lot of hats - Developer, Database Administrator, Help Desk, etc., so I know a lot of things but not a lot about one thing. Experts Exchange gives me answers from people who do know a lot about one thing, in a easy to use platform." -Todd S.

Joseph DalyCommented:
Ok this question is kind of confusing.

1. You mention you are trying to install forefront using a GPO. Are you trying to use an MSI and the group policy software installation?

2. You mention WSUS where does this come in?
Mohamed KhairyEnterprise Solutions ArchitectCommented:
You need to create and deploy a client policy from the FCS console to those systems. Policies are where you decide centrally what the scan schedules and configuration will be. Once the client system has a policy, the computer will download the client software from the distribution ( WSUS )server. After deployment, the client systems need to be approved in MOM before they are able to report data.Typically this happens within an hour.

For more help on creating the mentioned policy, please follow the instructions mentioned on the attached document starting from page 9.

Hope this may helps.

Regards,
MKhairy
FCS-Configuration.pdf

Experts Exchange Solution brought to you by

Your issues matter to us.

Facing a tech roadblock? Get the help and guidance you need from experienced professionals who care. Ask your question anytime, anywhere, with no hassle.

Start your 7-day free trial
IT GuyNetwork EngineerAuthor Commented:
Discovered that the issue was being caused because someone else made it so that this Group Policy would not be enforced.
It's more than this solution.Get answers and train to solve all your tech problems - anytime, anywhere.Try it for free Edge Out The Competitionfor your dream job with proven skills and certifications.Get started today Stand Outas the employee with proven skills.Start learning today for free Move Your Career Forwardwith certification training in the latest technologies.Start your trial today
Microsoft Forefront ISA Server

From novice to tech pro — start learning today.