Re: Easy question on the local admin passwords



With a Group Policy "startup" script users do not need read access to the
script in sysvol. You can remove authenticated users and add domain
computers with read/list/execute instead. You will also have a potential
problem in that the startup script will not be run until the computer is
restarted on the domain. You might want to use different local administrator
password on the laptops than the workstations. --- Steve


<boomboom999@xxxxxxxxx> wrote in message
news:1152305658.872352.40770@xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx

Windows XP/2003, Active Directory, SMS 2003

How can I change regularly the local administrator's password on 4000
workstations?

GPO? SMS?

Option 1 - Use SMS or GPO for that purpose

In that case, I will need to place the password in SMS packages or in
GPO scripts which is not good because the SMS packages and GPO scripts
can be read by users and the password can be easily discovered.

Option 2 - Use some script that goes thru AD and changes the password
remotely on all PCs, one by one

That seems to be a good idea but not all workstations are static. There
are laptops. So, sometimes they are absent so they will miss the
password change quite often.

Any idea or advice?



.



Relevant Pages

  • Re: Problems with Computers discovered
    ... MVP Windows Server System - SMS ... I saw something very weird today with my SMS, I have almost 2500 computers ... the client of sms i'm using a script, but, i only assigned this script to a ... advanced client. ...
    (microsoft.public.sms.admin)
  • Re: Making sure Office apps are closed
    ... you need to make sure that for dependent programs SMS doesn't ... package that had two programs in it. ... Popup-n-kill-Office script and the second one would be the actual Office ... and the actual Office 2003 install script to run whether logged on or not. ...
    (microsoft.public.sms.swdist)
  • Re: Distributing Software "Quickly" to Bare Metal Installs
    ... >> Nope, never seen any script like it, I just tought it would be a feasible ... >> ' Script By Kim Oppalfens - MVP SMS ... >> Dim objSWbemServices ... Set objCollection = objSWbemServices.ExecQuery _ ...
    (microsoft.public.sms.swdist)
  • Re: OSD: get mac address of network cards
    ... Windows Server System MVP - SMS ... think) the ZTIGather script. ... 2004/2005 build that includes WMI support. ... > I have a problem automating the installation process with OSD. ...
    (microsoft.public.sms.tools)
  • Re: Pushing a file
    ... To copy a file to your computers using SMS you will need to write some sort ... The script can be written in just about ... source directory and the file to update on a Share). ...
    (microsoft.public.sms.swdist)