<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Shariq Sheikh &#124; Port 389 &#187; Group Policy</title>
	<atom:link href="http://www.shariqsheikh.com/blog/index.php/category/group-policy/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.shariqsheikh.com/blog</link>
	<description>- activity of Active Directory and the rest</description>
	<lastBuildDate>Thu, 22 Jul 2010 17:01:56 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.0</generator>
		<item>
		<title>Time Synchronization for Virtualized DCs</title>
		<link>http://www.shariqsheikh.com/blog/index.php/200912/time-synchronization-for-virtualized-dcs/</link>
		<comments>http://www.shariqsheikh.com/blog/index.php/200912/time-synchronization-for-virtualized-dcs/#comments</comments>
		<pubDate>Wed, 09 Dec 2009 21:48:03 +0000</pubDate>
		<dc:creator>Rick</dc:creator>
				<category><![CDATA[Active Directory]]></category>
		<category><![CDATA[Group Policy]]></category>
		<category><![CDATA[VMware]]></category>
		<category><![CDATA[Hyper-V]]></category>

		<guid isPermaLink="false">http://www.shariqsheikh.com/blog/index.php/200912/time-synchronization-for-virtualized-dcs/</guid>
		<description><![CDATA[As usual a good conversation spurred on ActiveDir on a much discussed scenario of virtualizing your DCs while be varied of the known pitfalls. While virtualized DCs are fully supported on either competing virtualization solution by Microsoft, one known subject I would like to highlight here is the proper time synchronization. You must make sure [...]]]></description>
			<content:encoded><![CDATA[<p>As usual a good conversation spurred on ActiveDir on a much discussed scenario of virtualizing your DCs while be varied of the known pitfalls. While virtualized DCs are fully supported on either competing virtualization solution by Microsoft, one known subject I would like to highlight here is the proper time synchronization. You must make sure that your PDCe gets its time from an external time source and other DCs follow the PDCe. All DCs (including PDCe) must not sync their time with the virtualization host, whether its VMware ESX or that of Hyper-V. It was discussed how by default the VMware’s VM settting does not have the time synchronization enabled by default, and my brief look at the Hyper-V’s VM suggested that it is. In any case, you must make sure that setting is disabled, thus VM does sync its time with its host.</p>
<p>VMware time setting from the VMware tools within the VM:</p>
<p><a href="http://www.shariqsheikh.com/blog/wp-content/uploads/2009/12/VMwareTS.png"><img style="border-right: 0px; border-top: 0px; display: inline; border-left: 0px; border-bottom: 0px" title="VMwareTS" src="http://www.shariqsheikh.com/blog/wp-content/uploads/2009/12/VMwareTS_thumb.png" border="0" alt="VMwareTS" width="383" height="339" /></a></p>
<p>Or under the VM settings from VIC :</p>
<p><a href="http://www.shariqsheikh.com/blog/wp-content/uploads/2009/12/VMwareTS2.png"><img style="border-right: 0px; border-top: 0px; display: inline; border-left: 0px; border-bottom: 0px" title="VMwareTS2" src="http://www.shariqsheikh.com/blog/wp-content/uploads/2009/12/VMwareTS2_thumb.png" border="0" alt="VMwareTS2" width="632" height="384" /></a></p>
<p>Hyper-V setting from the VM settings :</p>
<p><a href="http://www.shariqsheikh.com/blog/wp-content/uploads/2009/12/HyperVTS.png"><img style="border-right: 0px; border-top: 0px; display: inline; border-left: 0px; border-bottom: 0px" title="HyperV-TS" src="http://www.shariqsheikh.com/blog/wp-content/uploads/2009/12/HyperVTS_thumb.png" border="0" alt="HyperV-TS" width="682" height="363" /></a></p>
<p>A great resource to refer to, to learn how to configure an authoritative time source for your DCs – see this KB <a title="http://support.microsoft.com/kb/816042" href="http://support.microsoft.com/kb/816042">http://support.microsoft.com/kb/816042</a></p>
<p><a class="a2a_dd addtoany_share_save" href="http://www.addtoany.com/share_save?linkurl=http%3A%2F%2Fwww.shariqsheikh.com%2Fblog%2Findex.php%2F200912%2Ftime-synchronization-for-virtualized-dcs%2F&amp;linkname=Time%20Synchronization%20for%20Virtualized%20DCs">Share/Bookmark</a> </p>]]></content:encoded>
			<wfw:commentRss>http://www.shariqsheikh.com/blog/index.php/200912/time-synchronization-for-virtualized-dcs/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>Is there an Active Directory Visual Illustration/Diagram ?</title>
		<link>http://www.shariqsheikh.com/blog/index.php/200909/is-there-an-active-directory-visual-illustrationdiagram/</link>
		<comments>http://www.shariqsheikh.com/blog/index.php/200909/is-there-an-active-directory-visual-illustrationdiagram/#comments</comments>
		<pubDate>Tue, 01 Sep 2009 16:18:43 +0000</pubDate>
		<dc:creator>Rick</dc:creator>
				<category><![CDATA[Active Directory]]></category>
		<category><![CDATA[General]]></category>
		<category><![CDATA[Group Policy]]></category>
		<category><![CDATA[Hyper-V]]></category>
		<category><![CDATA[IIS]]></category>
		<category><![CDATA[RODC]]></category>
		<category><![CDATA[Server Core]]></category>
		<category><![CDATA[Windows Server 2008]]></category>
		<category><![CDATA[Posters]]></category>

		<guid isPermaLink="false">http://www.shariqsheikh.com/blog/index.php/200909/is-there-an-active-directory-visual-illustrationdiagram/</guid>
		<description><![CDATA[A question was raised on ActiveDir, and I learned about an old TechNet Jigsaw on AD’s interworking. &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; &#160; Along with that, there was a new Windows Server 2008 AD Feature Components which [...]]]></description>
			<content:encoded><![CDATA[<p>A question was raised on ActiveDir, and I learned about an old TechNet Jigsaw on AD’s interworking.</p>
<p style="text-align: center"><a href="http://www.shariqsheikh.com/blog/wp-content/uploads/2009/09/adjigsaw.png"><img style="border-bottom: 0pt; border-left: 0pt; display: inline; margin-left: 0px; border-top: 0pt; margin-right: 0px; border-right: 0pt" class="aligncenter" title="ADjigsaw" border="0" alt="ADjigsaw" align="left" src="http://www.shariqsheikh.com/blog/wp-content/uploads/2009/09/adjigsaw-thumb.png" width="709" height="772"/></a></p>
<p>&nbsp;</p>
<p>&nbsp;</p>
<p>&nbsp;</p>
<p>&nbsp;</p>
<p>&nbsp;</p>
<p>&nbsp;</p>
<p>&nbsp;</p>
<p>&nbsp;</p>
<p>&nbsp;</p>
<p>&nbsp;</p>
<p>&nbsp;</p>
<p>&nbsp;</p>
<p>&nbsp;</p>
<p>&nbsp;</p>
<p>&nbsp;</p>
<p>&nbsp;</p>
<p>&nbsp;</p>
<p>&nbsp;</p>
<p>&nbsp;</p>
<p>&nbsp;</p>
<p>&nbsp;</p>
<p>&nbsp;</p>
<p>&nbsp;</p>
<p>&nbsp;</p>
<p>Along with that, there was a new Windows Server 2008 AD Feature Components which I received at Tech-Ed 2007 and it illustrates the new and improved AD pieces introduced with Windows Server 2008. This poster covers ADLDS, ADFS, ADRMS, and RODCs.</p>
<p>&nbsp;</p>
<p><a href="http://www.shariqsheikh.com/blog/wp-content/uploads/2009/09/ad08features.png"><img style="border-right-width: 0px; display: inline; border-top-width: 0px; border-bottom-width: 0px; border-left-width: 0px" title="AD08features" border="0" alt="AD08features" src="http://www.shariqsheikh.com/blog/wp-content/uploads/2009/09/ad08features-thumb.png" width="944" height="613"/></a></p>
<p>And an additional poster on general new Windows Server 2008 Feature Components that covers TS, NAP, IIS 7.0, Virtualization, Server Core and BitLocker.</p>
<p><a href="http://www.shariqsheikh.com/blog/wp-content/uploads/2009/09/08features.png"><img style="border-right-width: 0px; display: inline; border-top-width: 0px; border-bottom-width: 0px; border-left-width: 0px" title="08features" border="0" alt="08features" src="http://www.shariqsheikh.com/blog/wp-content/uploads/2009/09/08features-thumb.png" width="943" height="610"/></a></p>
<p>Both of the above illustrations and very good quality large size posters (30x20in) and are good to hang in your office/cube. Printing them on regular printer may distort the quality, so you may try the plotter <img src='http://www.shariqsheikh.com/blog/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' /> . All three can be downloaded from the following links :</p>
<h3><span style="font-size: x-small"><a href="http://www.microsoft.com/downloads/details.aspx?FamilyID=C236336D-AB43-44B1-AD6F-A2F668FB8C02&amp;displaylang=en" target="_blank">TechNet Magazine Active Directory Component Jigsaw Poster</a></span></h3>
<h3><span style="font-size: x-small"><a href="http://www.microsoft.com/downloads/details.aspx?FamilyID=c2b9e44e-0bbd-47cb-bc09-b3d48be7f867&amp;displaylang=en" target="_blank">Windows Server 2008 Component Posters (both)</a></span></h3>
<p>P.S This is my first test post using <a href="http://download.live.com/writer" target="_blank">WLW</a>.</p>
<p><a class="a2a_dd addtoany_share_save" href="http://www.addtoany.com/share_save?linkurl=http%3A%2F%2Fwww.shariqsheikh.com%2Fblog%2Findex.php%2F200909%2Fis-there-an-active-directory-visual-illustrationdiagram%2F&amp;linkname=Is%20there%20an%20Active%20Directory%20Visual%20Illustration%2FDiagram%20%3F">Share/Bookmark</a> </p>]]></content:encoded>
			<wfw:commentRss>http://www.shariqsheikh.com/blog/index.php/200909/is-there-an-active-directory-visual-illustrationdiagram/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>Exchange 2010 goes Release Candidate today !</title>
		<link>http://www.shariqsheikh.com/blog/index.php/200908/exchange-2010-goes-release-candidate-today/</link>
		<comments>http://www.shariqsheikh.com/blog/index.php/200908/exchange-2010-goes-release-candidate-today/#comments</comments>
		<pubDate>Tue, 18 Aug 2009 12:56:29 +0000</pubDate>
		<dc:creator>Rick</dc:creator>
				<category><![CDATA[Exchange]]></category>
		<category><![CDATA[Group Policy]]></category>
		<category><![CDATA[Windows Server 2008]]></category>
		<category><![CDATA[Windows Server 2008 R2]]></category>
		<category><![CDATA[Exchange 2010]]></category>

		<guid isPermaLink="false">http://www.shariqsheikh.com/blog/?p=558</guid>
		<description><![CDATA[You can get an evaluation copy here. &#160; &#160; &#160; Scott Schnoll had a great post on how to install the beta, with all the gotchas and a long list of pre-reqs. http://blogs.technet.com/scottschnoll/archive/2009/04/15/how-to-install-exchange-server-2010.aspx As Exchange 2010 will only run on Windows Server 2008 (64bit only), there were some known issues with the beta version with [...]]]></description>
			<content:encoded><![CDATA[<p>You can get an evaluation copy here.</p>
<p><a href="http://technet.microsoft.com/en-us/evalcenter/dd185495.aspx"><img class="alignleft size-full wp-image-563" title="exum131" alt="exum131" src="http://www.shariqsheikh.com/blog/wp-content/uploads/2009/08/exum131.png" width="252" height="64"/></a></p>
<p>&nbsp;</p>
<p>&nbsp;</p>
<p>&nbsp;</p>
<p>Scott Schnoll had a great post on how to install the beta, with all the gotchas and a long list of pre-reqs.</p>
<p><a href="http://blogs.technet.com/scottschnoll/archive/2009/04/15/how-to-install-exchange-server-2010.aspx">http://blogs.technet.com/scottschnoll/archive/2009/04/15/how-to-install-exchange-server-2010.aspx</a></p>
<p>As Exchange 2010 will only run on Windows Server 2008 (64bit only), there were some known issues with the beta version with the Windows Server 2008 R2 (mainly newer builds than 7000), due to PowerShell and WinRM stacks being incompatible. That issues is well discussed here and hopefully those issues are now resolved with the RC.</p>
<p><a href="http://social.technet.microsoft.com/Forums/en-US/exchange2010/thread/e73ec63f-d5f6-4c2d-8d96-51537493a0ff">http://social.technet.microsoft.com/Forums/en-US/exchange2010/thread/e73ec63f-d5f6-4c2d-8d96-51537493a0ff</a></p>
<p>And here is the system requirements list.</p>
<p><a href="http://technet.microsoft.com/en-us//library/aa996719(EXCHG.140).aspx">http://technet.microsoft.com/en-us//library/aa996719(EXCHG.140).aspx</a></p>
<p><a class="a2a_dd addtoany_share_save" href="http://www.addtoany.com/share_save?linkurl=http%3A%2F%2Fwww.shariqsheikh.com%2Fblog%2Findex.php%2F200908%2Fexchange-2010-goes-release-candidate-today%2F&amp;linkname=Exchange%202010%20goes%20Release%20Candidate%20today%20%21">Share/Bookmark</a> </p>]]></content:encoded>
			<wfw:commentRss>http://www.shariqsheikh.com/blog/index.php/200908/exchange-2010-goes-release-candidate-today/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Find out where and why an Account Lockout happened</title>
		<link>http://www.shariqsheikh.com/blog/index.php/200803/find-out-where-and-why-an-account-lockout-happened/</link>
		<comments>http://www.shariqsheikh.com/blog/index.php/200803/find-out-where-and-why-an-account-lockout-happened/#comments</comments>
		<pubDate>Sat, 29 Mar 2008 14:08:24 +0000</pubDate>
		<dc:creator>Rick</dc:creator>
				<category><![CDATA[Active Directory]]></category>
		<category><![CDATA[Group Policy]]></category>
		<category><![CDATA[Windows]]></category>

		<guid isPermaLink="false">http://www.shariqsheikh.com/blog/index.php/2008/03/29/find-out-where-and-why-an-account-lockout-happened/</guid>
		<description><![CDATA[Where Account Lockouts save us from brute force password attacks and help us standardize our environment for password policies, sometimes it can be painful to troubleshoot and find out why and where it happened. Microsoft does provide us with the &#8216;Account Lockout Management Tools&#8217; suite which can be very handy to diagnose the root cause [...]]]></description>
			<content:encoded><![CDATA[<p>Where Account Lockouts save us from brute force password attacks and help us standardize our environment for password policies, sometimes it can be painful to troubleshoot and find out why and where it happened. Microsoft does provide us with the &#8216;Account Lockout Management Tools&#8217; suite which can be very handy to diagnose the root cause of an account lockout.</p>
<blockquote>
<p class="MsoNormal"><span style="font-family: Symbol;">·</span><span> </span><strong>AcctInfo.dll</strong>. Helps isolate and troubleshoot account lockouts and to change a user&#8217;s password on a domain controller in that user&#8217;s site. It works by adding new property pages to user objects in the Active Directory Users and Computers Microsoft Management Console (MMC).</p>
<p class="MsoNormal"><span style="font-family: Symbol;">·</span><span> </span><strong>ALockout.dll</strong>. On the client computer, helps determine a process or application that is sending wrong credentials.</p>
<p class="MsoNormal"><span style="font-family: Symbol;">·</span><span> </span><strong>ALoInfo.exe</strong>. Displays all user account names and the age of their passwords.</p>
<p class="MsoNormal"><span style="font-family: Symbol;">·</span><span> </span><strong>EnableKerbLog.vbs</strong>. Used as a startup script, allows Kerberos to log on to all your clients that run Windows 2000 and later.</p>
<p class="MsoNormal"><span style="font-family: Symbol;">·</span><span> </span><strong>EventCombMT.exe</strong>. Gathers specific events from event logs of several different machines to one central location.</p>
<p class="MsoNormal"><span style="font-family: Symbol;">·</span><span> </span><strong>LockoutStatus.exe</strong>. Determines all the domain controllers that are involved in a lockout of a user in order to assist in gathering the logs. LockoutStatus.exe uses the NLParse.exe tool to parse Netlogon logs for specific Netlogon return status codes. It directs the output to a comma-separated value (.csv) file that you can sort further, if needed. The latest version available is 1.0.0.60.</p>
<p class="MsoNormal"><span style="font-family: Symbol;">·</span><span> </span><strong>NLParse.exe</strong>. Used to extract and display desired entries from the Netlogon log files.</p>
</blockquote>
<p>Unfortunately, I didn&#8217;t find good documentation of how to quickly make good use of these tools when my domain admin account started getting mysteriously locked out after I had changed my password due to the policy in place. From my experience I found <em>Lockout Status</em> and <em>EventComb MT</em> to be most useful from the suite.</p>
<p>I knew the common causes why my account would get locked out due to one of the reasons listed here : <a href="http://www.mail.nih.gov/user/faq/AccountLockouts.htm" target="_blank">See this</a> but I needed to figure out what is the offending machine or service thats providing my old credentials to a DC thats causing the account to be locked out.</p>
<p>I started out launching Lockout Status tool and selected my domain admin account as &#8216;target&#8217; from the file menu and running it. It gave me list of all the DCs with the status of my account and more importantly the DC the lockout happened on in the &#8216;Orig Lock&#8217; tab towards the right of the program screen. I then launched the Event CombMT piece and right clicked in the white space in the search area and added the DC the lockout originated at. I choose from &#8216;Option&#8217; menu where I wanted to output the file as txt or CSV. I chose &#8216;Security&#8217; as log files search option for all event types and then putting &#8217;644&#8242; as the event id and clicked on search.</p>
<p>It outputted the CSV file in the area I had specified and I was able to see that it found the event 644 for my ID on 6 different machines across the domain, it was listed under &#8216;Caller Machines Name&#8217; column, (I know its bad administration on my part to sometimes disconnect my terminal sessions instead of logging off). Sure enough when I logged on to those machines I immediately saw the following notifications.</p>
<p><a href="http://www.shariqsheikh.com/blog/wp-content/uploads/2008/03/alock.JPG"><img src="http://www.shariqsheikh.com/blog/wp-content/uploads/2008/03/alock.JPG" alt="alock.JPG" /></a></p>
<p><a title="alock2.JPG" href="http://www.shariqsheikh.com/blog/wp-content/uploads/2008/03/alock2.JPG"><img src="http://www.shariqsheikh.com/blog/wp-content/uploads/2008/03/alock2.JPG" alt="alock2.JPG" /></a></p>
<p>I had to log off and log back in to clear out the error. After that, I ran the Lockout Status tool again and noticed the lock status for my domain admin account had been cleared out.</p>
<p>Conclusion: Never leave your account logged on somewhere (or have a service run under your user context) and lock the machines or disconnect the remote session without logging off, and when using tools like Remote Desktops (which can be useful and allow you to have a list of machines you remote in frequently during the day), make sure you don&#8217;t save your passwords in the session configurations.</p>
<p>More Resources:</p>
<p><a href="https://www.microsoft.com/downloads/details.aspx?FamilyID=7AF2E69C-91F3-4E63-8629-B999ADDE0B9E&amp;displaylang=en" target="_blank">Download the Microsoft Account Management Tools</a></p>
<p><a href="http://technet2.microsoft.com/windowsserver/en/library/546c841f-d3c8-427a-837c-1cbb2f204de01033.mspx?mfr=true" target="_blank">Technet Resource on how to maintain and manage the account lockout</a></p>
<p><a href="http://www.windowsecurity.com/articles/Implementing-Troubleshooting-Account-Lockout.html" target="_blank">WindowsSecuirty.com-Implementing and Troubleshooting Account lockout </a></p>
<p><a class="a2a_dd addtoany_share_save" href="http://www.addtoany.com/share_save?linkurl=http%3A%2F%2Fwww.shariqsheikh.com%2Fblog%2Findex.php%2F200803%2Ffind-out-where-and-why-an-account-lockout-happened%2F&amp;linkname=Find%20out%20where%20and%20why%20an%20Account%20Lockout%20happened">Share/Bookmark</a> </p>]]></content:encoded>
			<wfw:commentRss>http://www.shariqsheikh.com/blog/index.php/200803/find-out-where-and-why-an-account-lockout-happened/feed/</wfw:commentRss>
		<slash:comments>2</slash:comments>
		</item>
		<item>
		<title>Group Policy Basics</title>
		<link>http://www.shariqsheikh.com/blog/index.php/200802/group-policy-basics/</link>
		<comments>http://www.shariqsheikh.com/blog/index.php/200802/group-policy-basics/#comments</comments>
		<pubDate>Thu, 21 Feb 2008 21:09:00 +0000</pubDate>
		<dc:creator>Rick</dc:creator>
				<category><![CDATA[Group Policy]]></category>

		<guid isPermaLink="false">http://www.shariqsheikh.com/blog/index.php/2008/02/21/group-policy-basics/</guid>
		<description><![CDATA[Group Policy has been an extremly handy tool for last few years for System Admins, yet an equally complex topic to digest and you need to know it inside-out in order to effectively troubleshoot the problems that occur from time to time in your environment. Lets start with the basics of Group Policy Mechanism. A GPO is a virtual [...]]]></description>
			<content:encoded><![CDATA[<p>Group Policy has been an extremly handy tool for last few years for System Admins, yet an equally complex topic to digest and you need to know it inside-out in order to effectively troubleshoot the problems that occur from time to time in your environment. Lets start with the basics of Group Policy Mechanism.</p>
<p>A GPO is a virtual object. The policy setting information of a GPO is actually stored in two locations: the Group Policy container (GPC) and the Group Policy template (GPT). The Group Policy container is an Active Directory container that stores GPO properties, including information about version, GPO status, and a list of components that have settings in the GPO. The Group Policy template is a directory structure within the file system that stores Administrative Template-based policy settings, security settings, script files, and information regarding applications that are available for Software Installation. The Group Policy template is located in Sysvol in the \Policies sub-directory for its domain. GPOs are identified by their globally unique identifiers (GUIDs) and stored at the domain level. Replication of a GPO to other domain controllers happens through two different mechanisms. The Group Policy container is replicated by using Active Directory replication (RPC), whereas the Group Policy template is replicated using File Replication service (FRS) in Windows Server 2003 and for Windows Server 2008 (native domain) <a href="http://www.windowsitpro.com/Article/ArticleID/95223/95223.html" target="_blank">DFSR</a>. The settings from a GPO are only applied when the Group Policy container and Group Policy template are synchronized.</p>
<p> More on Group Policy later.</p>
<p><a class="a2a_dd addtoany_share_save" href="http://www.addtoany.com/share_save?linkurl=http%3A%2F%2Fwww.shariqsheikh.com%2Fblog%2Findex.php%2F200802%2Fgroup-policy-basics%2F&amp;linkname=Group%20Policy%20Basics">Share/Bookmark</a> </p>]]></content:encoded>
			<wfw:commentRss>http://www.shariqsheikh.com/blog/index.php/200802/group-policy-basics/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>WSUS 3.0 SP1 gets released</title>
		<link>http://www.shariqsheikh.com/blog/index.php/200802/wsus-30-sp1-gets-released/</link>
		<comments>http://www.shariqsheikh.com/blog/index.php/200802/wsus-30-sp1-gets-released/#comments</comments>
		<pubDate>Fri, 08 Feb 2008 20:50:36 +0000</pubDate>
		<dc:creator>Rick</dc:creator>
				<category><![CDATA[Group Policy]]></category>
		<category><![CDATA[Windows]]></category>
		<category><![CDATA[RODC]]></category>

		<guid isPermaLink="false">http://www.shariqsheikh.com/blog/?p=15</guid>
		<description><![CDATA[WSUS 3.0 SP1 was released yesterday, following are the improvements that have been made from Version 3.0.6 The improvements that SP1 offers include: • Support for Windows Server 2008. • New Client Servicing API. • Support client registration. • Filter of updates by category and classification. • Provide applicability rule extension mechanism. • Obtain package [...]]]></description>
			<content:encoded><![CDATA[<p>WSUS 3.0 SP1 was released yesterday, following are the improvements that have been made from Version 3.0.6</p>
<p>The improvements that SP1 offers include:</p>
<p class="MsoNormal">• Support for Windows Server 2008.<br />
• New Client Servicing API.<br />
• Support client registration.<br />
• Filter of updates by category and classification.<br />
• Provide applicability rule extension mechanism.<br />
• Obtain package metadata and report update status for each client.</p>
<p>• Improvements for local publishing: supports publishing of drivers within the enterprise by using vendor provided catalogs. API include support for bundles and prerequisites.<br />
• All hotfixes: WSUS 3.0 SP1 includes all the changes and hotfixes that have been issued since the release of WSUS 3.0.<br />
• Support for Microsoft SQL Server 2005: WSUS 3.0 SP1 lets you use SQL Server 2005.</p>
<p><a title="WSUS SP1" href="http://www.microsoft.com/downloads/details.aspx?FamilyId=F87B4C5E-4161-48AF-9FF8-A96993C688DF&amp;displaylang=en" target="_blank">You can get it here.. </a></p>
<p><a class="a2a_dd addtoany_share_save" href="http://www.addtoany.com/share_save?linkurl=http%3A%2F%2Fwww.shariqsheikh.com%2Fblog%2Findex.php%2F200802%2Fwsus-30-sp1-gets-released%2F&amp;linkname=WSUS%203.0%20SP1%20gets%20released">Share/Bookmark</a> </p>]]></content:encoded>
			<wfw:commentRss>http://www.shariqsheikh.com/blog/index.php/200802/wsus-30-sp1-gets-released/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>
