• We’re currently investigating an issue related to the forum theme and styling that is impacting page layout and visual formatting. The problem has been identified, and we are actively working on a resolution. There is no impact to user data or functionality, this is strictly a front-end display issue. We’ll post an update once the fix has been deployed. Thanks for your patience while we get this sorted.

Windows Defender and my network...

multiband8303

Senior member
so...WSUS is installed and is managing my windows updates - I went into the admin utility - and also added windows defender to my list of products to update...however - in order for it to work it is my understanding that an existing client of windows defender must exist on the computer (or computer group) before it actually installs after the approval....

What is the best way of me rolling out windows defender without me having to stop by each and ever computer (or rdping) and installing it? Some kind of MSI I can host out there and will auto run down to each of the computers via a scheduled task? or what? Sorry I've been kind of thrown into the position here...so I am learning..
 
Download the windows defender msi file from microsoft. But it on a network share that everyone has read access to. Create a group policy (on the computers OU) to push out the software to PCs.

Read up on software deployment via group policy.

PS: Are you sure you want to deploy windows defender ? It is still in BETA at the moment.
 
...Not my authority here.... I do what I'm told.... Is the GPO under computer configuration - administrative templates - windows update - would I find that there? Or what is the specific I need to push out the software on the PC's (I already have a GP for the WSUS itself, I will just add it to that)
 
It is computer configuration, software settings, software installation

Right click it, new package and go from there.

I like creating an new policy for every app I deploy. I then create a group and assign the appropriate permissions to read the policy. I then add the computers I want to install the software on to the group. Makes it easier to manage in the long run.
 
Also - I did that - left it assigned, how will this roll out for my users - I check marked @ log in - thinking that this then will prompt my users once they log in to install. Is this the case or am I misinformed here?
 
Are the powers that be aware that this may block legitimate management functions in Active Directory/scripting? There is no central management of Windows Defender, so this sounds like a really Bad Idea.

Did you assign it as a Computer or User policy?
 
It will not prompt thatm at all. When XP is starting up, it will show installing managed software (before you get to the login promt i beleive)
 
Back
Top