Group Policy for configuring SNMP service

HI,
I want to configure SNMP service on HP Physical server for communicating with HP SIM server through GPO as need to congifure it on 100 servers.
Though I have configure a policy but its not working.
When I configured manually on HP Physical server its working fine but when I tried to implement through GPO, SNMP stops responding to SNMP requests.
I need a working GPO.
-- Sandeep Gupta

Hi Sandeep Gupta,
Based on my understanding, there were something wrong when you configured the SNMP service via GPO. As Martin said, please provide us the policy you configured to get more help. In addition, please also tell us your OS information.
I would like to introduce you some knowledge on SNMP settings:
Based on my experience and research, the
SNMP settings (including permissions) are stored in the following registry:
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SNMP
Therefore, we can configure a sample computer and then propagate the registry settings to other computers via scripts. Note that, the default ADM file can only
 be used to configure "Read only" settings.
Regards,
Lany Zhang

Similar Messages

  • Configuring group policy for user profiles in Windows Server 2012 R2 Domain

    Requesting some experts advise on configuring group policy for user profiles.
    We will be building new Windows Server 2012 R2 Domain Controllers (Domain of 400 users).
    The settings which I am concerned:
    1. Folder Redirection: Desktop, Documents, Favorites.
    2. Quota for Folder Redirection - 1 GB per user.
    3. Map a networked drive - 1 GB per user.
    4. Roaming profile - (Will ignore if it does not suit our requirement). 
    The question is how outlook profile will be retained / automatically moved if the users move from once computer to other?
    FYI, E-mails hosted on MS Office365 and OST file size of few users more than 25GB. So, in case the user moves from one computer to other, the entire mailbox will be downloaded via internet. This consumes high bandwidth if more than 3-4 users shift per day.
    Thanks a lot for your valuable time and efforts.

    Hi,
    >>The question is how outlook profile will be retained / automatically moved if the users move from once computer to other?
    This depends on where our outlook data files are stored. If these data files are stored under
    drive:\Users\<username>\AppData\Local, then these files can’t be redirected, for folder redirection can’t redirect appdata local or locallow.
    However, regarding your question, we can refer to the following thread to find the solution.
    Roam outlook profiles without roaming profiles
    http://social.technet.microsoft.com/Forums/office/en-US/3908b8e0-8f44-4a34-8eb5-5a024df3463e/roam-outlook-profiles-without-roaming-profiles
    In addition, regarding how to configure folder redirection, the following article can be referred to for more information.
    Configuring Folder Redirection
    http://technet.microsoft.com/library/cc786749.aspx
    Hope it helps.
    Best regards,
    Frank Shen

  • SBL and Windows group policy user configuration preference

    We would like to have user connects to VPN via SBL and then login to the AD domain.  Ideally, the group policy user configuration preference, such as drive mapping, should be applied after successful AD login.  However, we are running into issue where the preferences are not being applied.  It appears the AnyConnect VPN tunnel is not completely established after the user login to AD; and hence the GPO preference was not able to apply.  It takes about 1 min.after the user's AD login before the VPN tunnel is completely established.
    Just want to find out if anyone is able to get SBL and AD GPO preference working successfully.

    Originally Posted by twiggy
    Tbreeden - thanks for ur note, yes I am aware of the apply button - but u r right, it's not really noticeable unless u know to look for it
    Rroncme - I am using 32bit. We don't have any vita machines but win7 is supposed to be supported. I've created other policies using win7 and the saved just fine/applied fine too. Thanks for ur thoughts, I appreciate it.
    Any one else haven success w 32 bit win7 -building ie policy?
    Well there is a TID 7005804 about IE policy failures but don't know if the bug applies to your situation...
    Policy failures in Terminal Sessions on Windows Server 2003 and Windows Server 2008
    Thomas

  • Group Policy for Windows Ten

    http://community.spiceworks.com/topic/1104098-windows-10-gpos

    Does anyone know if you need to have Server 2012 domain controller in order to setup group policy for windows ten?  Currently we are running Server 2008 R2 but I am starting to get devices with windows ten that I will need to control from group policy.  
    @CreativeTechie
    This topic first appeared in the Spiceworks Community

  • Group policy for SNMP configuration

    Experts,
    We have mix of 2003 and 2008 servers. Some of the servers already have SNMP settings configured through registry etc. We want to populate traps information, community name and accepted community name etc on all servers. How can we do this through group policy
    or any other automated way?

    Administrative Templates for Group Policy exist for these settings:
    Computer Configuration / Policies / Administrative Templates / Network / SNMP
     Policy Setting Name 
     Scope 
     Policy Path 
     Specify communities 
     Machine 
     Network\SNMP 
     Specify permitted managers 
     Machine 
     Network\SNMP 
     Specify traps for public community 
     Machine 
     Network\SNMP 
    Don
    (Please take a moment to "Vote as Helpful" and/or "Mark as Answer", where applicable.
    This helps the community, keeps the forums tidy, and recognises useful contributions. Thanks!)

  • Windows Server 2008 - Group policy for domain client to start/stop services installed on it

    Hello Experts
    I am a newbie to windows server administration , though did a Google  , but ended up with these question with my requirements
    I have created a new domain and 2 client/computer (A & B namely) to domain . Now A & B has tomcat server running with port 8080 , 9090 which i have installed
    domain ADMIN account .
    && now i am want to start/stop/restart services enabled for domain users  !! How do i achieve this !!
    basic question : How can i access A & B tomcat services on DOMAIN CONTROLLER server to create a GPO and that are on (A & B)
    what is the easiest way to achieve the same , (if not using GPO)???
    similarly I am looking for many features : where I want to control the permission to user on (A & B ) like : If the binaries of tomcat is available on machine say : A , if the user can install (now
    it ask for ADMIN credentials) 
    Thanks
    Mike~Ed

    Controlling services with Group Policy is done under Computer Configuration\Policies\Windows Settings\Security Settings\System Services.
    The limitation is that system services can only see the services the computer running the Group Policy management console. To access other services, you will either need to create the services on your computer (install the software the adds the service)
    or install the remote server administration toolkit (RSAT) on the computer with the service already on it.
    If my answer helped you, check out my blog:
    Deploy Happiness

  • Allow log on through Remote Desktop Services Group Policy for Domain Controllers

    Hello,
    We want to allow our Helpdesk Operators to be able to connect to Domain Controllers with the Remote Desktop Services. This is by default not allowed but according to many sites, it should be able to configure by using a Group Policy.
    We made a new Group Policy with the setting 'Allow log on through Remote Desktop Services' and 'Allow log on locally' (as an extra for testing) and applied Security Filtering to only use it for a specific Security Group. Our test user is a member of this
    security group and should be able to access the Domain Controllers now. However this isn't working.
    The error message we receive upon trying to connect:
    The connection was denied because the user account is not authorized for remote login.
    For troubleshooting, we also applied the Security Group for that setting in the Default Domain Controllers Policy but that doesn't seem to work either. We want to avoid customization on our Default Domain Controllers Policy but this was just a test case
    for solving our problem.
    What should we do to solve our problem?
    I hope to hear from you soon.
    Thanks in advance.

    Hi, I just found out what the problem was. This site helped me alot:
    http://blogs.technet.com/b/askperf/archive/2011/09/09/allow-logon-through-terminal-services-group-policy-and-remote-desktop-users-group.aspx
    In my case, I had the group added to the Allow Logon Through Remote Desktop Services but was not added to the Builtin\Remote Desktop Users group. After knowing this I made some changes to our situation and are now using the builtin\Remote Desktop Users group
    rather than a new self made Security Group. I also added the Remote Desktop Users to the Allow Logon Through Remote Desktop Service in the Default Domain Controllers Policy as this is not done by default. By default only the Domain Administrators are able
    to logon through remote desktop services.
    You do not need the 'Log on Locally' permission within the Group Policies.
    In short:
    Add the desired users/groups to the 'Builtin\Remote Desktop Users' security group.
    Add the 'Builtin\Remote Desktop Users' security group to the 'Allow Logon Through Remote Desktop Services' within the 'Default Domain Controllers Policy'.
    Thank you anyway for the fast reply.
    Have a nice day!

  • How to configure group policy for emet via a command line

    I have been tasked with installing emet on 50 servers that I only have access to with our patching server (so I can't remote in and open the gpedit gui). I can get it to install, but now the problem that I'm facing is I need to enable 6 of the group policies
    for emet. Is there a way to do this while installing it? or a way to do it after the install?

    cmd line you need to deal with is in the C:\Program Files (x86)\EMET 4.1 folder
    specifically emet_conf --refresh would tell the systems to pull in the settings from a GPO they have already applied.
    In a non - SCCM environment I would probably recommend using group policy preferences and create a task scheduler item on your servers that runs emet_conf --import
    \\fileserver\settingsfile.xml on some sort of automated basis. Then you can just configure a client like you need and run the emet_conf --export
    \\fileserver\settingsfile.xml whenever you need to change a mitigation etc and the clients will pick up on the change on their next run of the task scheduler item.
    In general installing on servers isn't a great idea and is not the intended use case for emet however if you are DoD/Gov then DISA has mandated it so won't argue there.  There's also the people that still have Internet access from servers so then it
    would make sense in that environment as well.
    CSS Security Support Engineer (FCS/MBSA/WUA/Incident Response/FOPE) Check out my blog http://blogs.technet.com/kfalde or better yet check out http://technet.com/wiki and start contributing :)

  • Need help in setting up Group Policy for same user in local system and Terminal server

    Hi All,
    Currently our remote users are using our network using VPN client over internet.
    They are generally at their home computer and doing VPN as they have to work only in one RDP server for application.
    We actually have a OU created for these RDP users and assign then some strict policy like they can not use any other .exe,they can not user any explorer ,they can not even use windows explorer when they are on RDP they just use one exe of their application.
    Now what my management want is they want their home computers in Domain and want them to login via their same credentials they are using for RDP but they don't want them to restrict in their home computers with any strict policy.
    Now my confusion is how can I configure different policies for same users or same OU.
    Can any one guide me please...

    you can achieve this fairly easily with group policy.
    create an OU and put your remote desktop servers in that OU.
    configure both user and computer policies in a group policy and link it to that ou.
    you need to enable loopback mode - you may want it in merge or replace depending on your other policies you have. Probably replace though I would guess. this is set in the computer configuration > admin templates > system / group policy section.
    now remove the policy you have currently setup for your users on the users OU containing the rdp users. If you want you can move these users back to your main users OU.
    when your users login to the RDP server the settings in the user section of the GPO linked to the RDP Servers OU will apply.
    when the user logs in to their own computer the policies from the user OU and computer OU will apply - but not the more restrictive RDP OU.
    hope that makes sense.
    Regards,
    Denis Cooper
    MCITP EA - MCT
    Help keep the forums tidy, if this has helped please mark it as an answer
    My Blog
    LinkedIn:

  • Group Policy for IE security option

    Hello
    I have a problem with group policy.
    I wanted to add intranet site to IE properties in security tab and I did research and found one link which saying
    go to group policy management -> user configuration -> windows settings -> internet explorer maintenance ->
    security -> right click on security zones and and click on properties and make changes. 
    (I was able to find this option running GPMC in DC. If I add GPMC in MMC in my computer, i was not able to see this option)
    so I clicked on"import the current security zones and privacy settings in security zones and privacy and added the site.
    on my PC, I did gpupdate /force and it seemed working since the site was added and in my computer IE settings, it said "some settings are managed by your system administrator" and I updated the GP on other PC which did not work and
    I realized that the link was for windows 2003 server and I have windows 2008. so I reverted what I did and on my PC, I updated the GP but the settings in IE was not changed back to what it was.
    my questions are
    - how to change the settings on my computer?
    - why the GP was working on my computer but now the other computers?
    - how to add intranet site thru GP for all the users?
    Thanks

    Hi,   
    I agree with Zanderol24, which IE version is installed on the other PCs? The settings of Internet explorer maintenance can’t apply to IE 10 and later version.
    Besides, on the troubled clients, we could use the
    gpresult /h GPReport.html command to generate a Resultant Set of Policy (RSoP) report. We could check if the policy applied from the report.
    Moreover, aside from using IEM to add the sites, we can also use policy setting
    Site to Zone Assignment List or GPP Registry extension to do this.
    For more information, we could refer to the following articles.
    How to configure Internet Explorer security zone sites using group polices
    http://blogs.msdn.com/b/askie/archive/2012/06/05/how-to-configure-internet-explorer-security-zone-sites-using-group-polices.aspx
    How to Add Trust Sites into IE before IE10 through Group Policy
    http://blogs.msdn.com/b/asiatech/archive/2013/01/04/how-to-add-trust-sites-into-ie-before-ie10-through-group-policy.aspx
    Best Regards,
    Erin

  • OWSM user name token service policy for a proxy service at OSB

    Hi Friends,
    I am facing an issue while trying for the OWSM user name token service policy Authentication for a proxy service at OSB. I am using the PS4 SOA suite with AIA foundation pack. very first I am login into the EM console and choose the domain<soaosb_domain> form web logic domain I moved to security->security provide configuration. Inside the security provide configuration we have to key store section and I expand that and we have a configure button inside the keys tore. I click that button and it open a new page. In that page I got the Java key store (JKS) as the default key store and in the access Attributes I keep the default key store path and fill password and confirm password fields. Then in Identity certificates I fill the signature key and Encryption key with key Alias as 'orakey' and same password which I am mentioned at access Attributes. I got the message like the key store is created successfully. Then I restarted the server and again I am login into the EM console and choose the domain<soaosb_domain> form web logic domain I moved to security. In security I choose the credentials. In credentials we have create key. In the create key I add the key as hari-key and provide the hari as a user and his password.
    While trying to test the proxy service i am getting the [OSB Security - OWSM: 387253] Failed to initialize OWSM Credential Manager. Please validate the Key store Configuration.
    can anyone please look at this and suggest me how can I proceed for this.
    Thanks
    Hari

    anyone please respond to the above request.
    Thanks
    Hari

  • OneDrive Pro Group Policy & Centralised Configuration Options

    Hi there,
    I would like to guidance as to the available options for controlling and configuring the Office 365 Pro Plus 'OneDrive Pro' application within Group Policy?  What is the most streamlined way of centrally configuring the desktop application on sync'ing
    online OneDrive content from Office 365 to the desktop?  It all seems rather manual and based around individual user subscriptions initially.
    Responses appreciated, with any reference links / guides.
    Thank you.
    MSEBlogger (Technet)

    This might be Group Policy object what you need:
    http://blogs.msdn.com/b/denotation/archive/2013/11/01/disable-windows-skydrive-app-using-group-policy.aspx
    Tony Chen
    TechNet Community Support

  • Group Policy for Outlook Option: "Mark Messages as expired after this many days"

    In Outlook, there is a option where you can have Outlook "Mark Messages as expired after this many days".  If you enable this option, you fill in a number of days when Outlook will mark the message as expired.  The default is 180 days.
    The option is located under FILE -> Options -> Mail -> Send Messages.
    Does anyone know how to enable this setting via Group Policy? I can't find it.
    Thanks!

    Hi,
    Do you have the
    Office 2010 Administrative Templates loaded? If so, we can find the GPO setting under:
    Administrative Templates > Microsoft Outlook 2010 > Outlook Options > Preferences > E-mail Options > Advanced E-mail Options
    Double click "When sending a message" setting, select Enable bullet. Now, you can specify the "Messages expire after (days):" option.
    Regards,
    Steve Fan
    TechNet Community Support
    It's recommended to download and install
    Configuration Analyzer Tool (OffCAT), which is developed by Microsoft Support teams. Once the tool is installed, you can run it at any time to scan for hundreds of known issues in Office
    programs.

  • Group policy for Silent Java updates

    Hi,
    all users in my network getting popup messages for Java updates which is king of annoying when they are working on something. none of them got admin rights so they can not update java. 
    i don't want to go to every computer when they  got the popup and enter my credentials to allow update.
    is there any easy method (may be GP) to allow java updates to install with out asking admin details and with out giving popup.
    if i have to use scripting can some one assist me with the script ( i am a beginner with scripting).
    thank you,
    krishna 
    Krishna Gummadapu

    Hi,
    you have a few options.
    a) give the users the admin rights, so they can update Java.
    b) suppress the auto-update behaviour, so that Java never updates itself
    c) deploy the updated Java software to your computers (optionally also suppress the auto-update behaviour), and maintain deploying Java updates to your computers, forever.
    d) remove Java if it is not needed. Windows doesn't need Java, maybe some of your applications do need it.
    For (c), there are many options available to you, including Group Policy Software Installation, Startup scripts, System Center Configuration Manager, and many non-MS products which can perform software distribution for you.
    It can be a very similar challenge, for Adobe products, like FlashPlayer, AdobeReader, etc.
    There are many examples on www.itninja.com (formerly known as appdeploy.com), and many scripts on gallery/codeplex and in various deployment-focused blogs.
    Don
    (Please take a moment to "Vote as Helpful" and/or "Mark as Answer", where applicable.
    This helps the community, keeps the forums tidy, and recognises useful contributions. Thanks!)

  • Very specific group policy for IE 11

    Got a very interesting GPO I need created. I need a GPO that forces all users on a certain machine to use InPrivate browsing at all times while they are using IE. Or even for a specific website. 
    I have an application that has a bug that is fixed by using private browsing, weirdly enough. To limit problems with users saying "But I did use private browsing" I would ideally like to force the use of it while they are on the machine. If I have
    to apply it to a specific group, that will be fine too, but the end result needs to be private browsing they cannot turn off at all. 
    Any suggestions? Open to Powershell solutions, or creative options. 

    Hi Noah ,
    The only group policy I have found related to the InPrivateBrowsing is this :
    User Configuration, Administrative Templates, Windows Components, Internet Explorer, Privacy and Turn off InPrivate Browsing
    But it is used to turn on /off the Inprivate Browsing feature and it can not be used to force the Inprivate Browsing .
    I am afraid the only good option is to create a shortcut for the user if you want the user to open the Internet Explorer in private browsing mode every time .
    Best regards
    Please remember to mark the replies as answers if they help, and unmark the answers if they provide no help. If you have feedback for TechNet Support, contact [email protected]

Maybe you are looking for

  • HT1430 mail is not behaving the way it should after updating to ios 6.1.2

    after updating to ios6.1.2 on Saturday March 9, 2013 the mail is not operating the way it should. What can i do to try and fix it?

  • Ipad mini keeps shuting down randomly

    my ipad mini keeps rebooting itself is there a way to fix it? i have try restoring it but that didn't work. its also keeps shutting down after 15 or 20 mins sometimes its freezes on the passcode screen and then it shutsdown with the apple logo showin

  • Cannot get a pdf disc to open and download documents

    I have a cd that has pdf documents on it. This was made in 2006. In 2010, my hard drive crashed. I have the latest version of adobe reader on my hard drive and it will still not open. Is there any way to retreive the pdf documents and save them to an

  • Class Expected error - HELP

    Hi I've been workin on a project, and it seems something is wrong with this code... i honestly cannot figure it out... here it is : Uses the following methods: public static boolean areEquivalent (String word1, String word2) This method reutrns true

  • Open applet in Linux

    I want to use my EBS running on linux. The html forms like "Suppliers", "Customers" e.t.c are running normal but applets like "Invoice form", "Security:User" form are not bein open on linux. Please help me workround for that. Thanks!