Solved

Help Installing FIM Password Reset Client

Posted on 2013-06-20
5
1,322 Views
Last Modified: 2013-06-30
We are in the process of implementing FIM, and we need to install the password reset client on several machines. I have tried to use Config Mgr to push it out, but it comes back with the following error message:

An error occurred while preparing to run the program for advertisement "2172008B" ("21700047" - "FIM Client X86"). The operating system reported error 2147942405: Access is denied.

Additional program properties:
Command line: msiexec.exe /q /i "\\servername\updates\fim\PswdClient\x86\Add-ins and extensions.msi" ADDLOCAL="PasswordClient" RMS_LOCATION=server REGISTRATION_PORTAL_URL=https://server:port number
Working directory: \\servername\updates\FIM\PswdClient\x86
Drive letter (? = any):

Possible cause: This message most commonly occurs when the program's command-line executable file could not be found, when a required drive letter connection to a distribution point could not be established, or when the program is configured to use the SMS Software Installation Account but the account is not specified, could not be found, or does not have the appropriate permissions.
Solution: Check each of the items listed above. This program will be retried
.

The software will install when i run the command not using the /quiet command on one test machine. So, i know the command is correct. I also checked the folder permissions and they seem ok as well.

Any suggestions or assistance would be appreciated as we do not want to go around to 500+ machines to install the software manually.

Thanks!
0
Comment
Question by:jwcchelpdesk
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
  • 3
  • 2
5 Comments
 
LVL 19

Expert Comment

by:strivoli
ID: 39264997
I understand that you would like to use ConfigMgr because you have it and are used with it, but, since there's a problem either with it (at least in this specific situation) or with the FIM client, why not trying using the AD/GPO simple approach?

BTW, please let us know the ConfigMgr version. Thank you.
0
 

Author Comment

by:jwcchelpdesk
ID: 39271315
We are using Config Mgr 2007, sorry about that.

As for using a GPO, i haven't looked at that much since we are higher ed and most of the machines this would be installed on, are frozen machines using Depp Freeze. We would have to un-freeze them first, then install, then freeze the machine again. I wasn't for sure if the GPO option allows us to install at a certain time\date because we would have to probably do the install overnight.
0
 
LVL 19

Expert Comment

by:strivoli
ID: 39274016
GPO is very "basic" compared to your actual solution but I think a test is worth it since it will request 20-30' to get the result. No, GPO will not allow to unfreeze/install/freeze. GPO will install the software at boot time if the software isn't already installed. The time taken to install depends on the software itself. If it takes 10-20" it might be acceptable.
The GPO way is very simple:
a. Create a test OU,
b. Put a client in the OU,
c. Create (and link it to the test OU) a GPO that installs the software,
d. Reboot the client in order to install the software (you might need to reboot more than once at least the very first time the policy is applied),
e. Check client's Windows Application/System logs if the software doesn't install.

Let me know.
0
 

Accepted Solution

by:
jwcchelpdesk earned 0 total points
ID: 39276407
I figured out the problem to why SCCM was giving me an access denied error message. It was using an account, and the password for that account was not updated to the current one. So, once we updated the password, i was able to push out the FIM password reset client successfully.

Plus now we can set the install to be pushed out at a particular time of day, and we can check the logs to see if it was successful. Those are two things about software installs using GPO does not have, and we needed to have that.
0
 

Author Closing Comment

by:jwcchelpdesk
ID: 39287928
Did some more research on why i was getting the error and realized the account that config mgr was using, the password was out of date, and needed to be updated. Once i updated the password, no more error message and client was pushed out successfully.
0

Featured Post

Salesforce Made Easy to Use

On-screen guidance at the moment of need enables you & your employees to focus on the core, you can now boost your adoption rates swiftly and simply with one easy tool.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Invest in your employees with these five simple steps to improve employee engagement and retention.
For anyone that has accidentally used newSID with Server 2008 R2 (like I did) and hasn't been able to get the server running again because you were unlucky (as I was) and had no backups - I was able to get things working by doing a Registry Hive rec…
This tutorial will give a short introduction and overview of Backup Exec 2012 and how to navigate and perform basic functions. Click on the Backup Exec button in the upper left corner. From here, are global settings for the application such as conne…
This tutorial will walk an individual through the steps necessary to install and configure the Windows Server Backup Utility. Directly connect an external storage device such as a USB drive, or CD\DVD burner: If the device is a USB drive, ensure i…
Suggested Courses

615 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question