Share: Home
Using ConfigMgr 2007 to Control Automated Teller Machines - Asem Alhourani - VirManSec Community
VirManSec Community

Announcements

Using ConfigMgr 2007 to Control Automated Teller Machines
Asem Alhourani

Syndication

News

  • When you’re going to deploy a new package with SCCM 2007, there are a few steps you need to follow. The easiest way to deploy a package is to follow the next steps: [Y] 1.) Collection 2.) Package 3.) Program 4.) Distribution Point 5.) Advertisement Before we are going to deploy Office 2007, we’ve to create a MSP file for customize the Office 2007 installation. You can start the Office Customization Tool using the following command: Run ---> setup.exe /admin. Save the file in the updates folder on your Office 2007 source directory Step 1, creating a collection: 1.) Create a new collection, to specify the computers where Office must be installed. 2.) Navigate to System Center Configuration Manager, Site Database, Computer Management, New Collection 3.) Give your new collection a name, for example “Office 2007 Enterprise” 4.) On the Membership Rules dialog box, Create a collection Packages can only be distributed to members of a collection. A collection can contain multiple computers, a single computer, a single user and members of a security group. Configuration Manager 2007 operates with two different types of collections. · Direct membership based. ü Click the computer icon, which opens the Create Direct Membership Rule Wizard. Click Next ü On the Search for Resources dialog box, click the Resource class drop-down menu and select System Resource. Then, click the Attribute name drop-down menu and select Name. In the Value field enter %, and then click Next ü On the Search for Resources dialog box, click the Resource class drop-down menu and select System Resource. Then, click the Attribute name drop-down menu and select Name. In the Value field enter %, and then click Next ü On the Collection Limiting dialog box, click the Browse button, select All Windows Workstation or Professional Systems, and then click Next ü Select the computer(s) you want to deploy Office 2007 and click Next.,, Finish · Query Based collections are use full when distributing software to a larger group of resources based on specific criteria’s Example, all workstations in Copenhagen or computers belonging to an Active Directory security group. Direct membership collections are use full when distributing software to a narrow group of resources e.g. 5 test pc’s. Step 2, creating a package: 1.) Navigate to System Center Configuration Manager, Site Database, Computer Management, Software Distribution, Package, New Package 2.) On the General dialog box of the New Package Wizard, enter the Name, Version, Manufacturer, and Language. For example, Office, 2007, Microsoft, English (US) 3.) On the Data Source dialog box, select This package contains source files. Click the Set button, and then enter the path for the location of the source files in the Source directory field. For example E:\Software\Office 2007\, which contains a copy of the 2007 Office Enterprise installation CD. 4.) Click OK, and then continue to click Next and accept the default settings on all of the following dialog boxes: Data Access, Distribution Settings, Reporting, and Security. On the Wizard Completed dialog box. Step 3, creating a Program: 1.) Navigate to System Center Configuration Manager, Site Database, Computer Management, Software Distribution, Packages, Office 2007, Programs, New, Program 2.) Give the new program a Name 3.) On the Command-line box, type in setup.exe 4.) On the Environment dialog box, click the Program can run drop-down box and select Whether or not a user is logged on. This will enable Run with administrative rights for the Run mode. Leave the default for Drive mode to Runs with UNC name, and then click Next (Because the customization file, CustomOffice.MSP, was placed in the \Updates folder, a command line option is not needed to reference its location) 5.) On the Advanced dialog box, select the check box for Suppress program notifications, and then click Next Step 4, Copy to Distibution points: 1.) Navigate to System Center Configuration Manager, Site Database, Computer Management, Software Distribution, Packages, Office 2007, Distribution points 2.) Manage Distribution Points 3.) Select “Copy the package to new distribution points” 4.) Select the distribution points 5.) Click finish and wait a copple of minutes 6.) Check the status changing from Install Pending to Installed Step 5, creating the advertisement 1.) Navigate to System Center Configuration Manager, Site Database, Computer Management, Software Distribution, Advertisements 2.) New Advertisement 3.) Give the advertisement a Name 4.) Select the package, Program and Collection 5.) Click finish and wait a copple of minutes 6.) On the client wait for the next Machine Policy Retrievel & Evaluation Cycle After the setup is finished, Office 2007 is deployed to your client(s) and is ready to use!

Using ConfigMgr 2007 to Control Automated Teller Machines

In this article, I will try to summarize the main points that you might want to consider if you decided to use Microsoft System Center Configuration Manager 2007 (ConfigMgr 2007) to control & manage Automated Teller Machines (ATM) in a banking corporation. ConfigMgr 2007 cannot be used with its full capabilities when it comes to ATM environment, this is due to several reasons, and some of them are listed below: o Absence of Microsoft Active Directory Infrastructure: Usually, banks never connect their ATMs with a Microsoft Active Directory environment for security & connectivity reasons. I’ve seen in that in some banking environments. o Connectivity Perspective: ATMs are connected to the bank main hub or other branches with a very low speed connections like 4.8 Kbps & 9.6 Kbps! Discussing this with the banking IT officers, they’ve told me that a single financial transaction done by a customer on an ATM in the street doesn’t require more than 1.5 Kbps! Thus, they consider a 9.6 Kbps link a wasted resource for example. So we will not be able to use the full functionalities of ConfigMgr 2007 because we will be working on a Non Active Directory environment. Nevertheless, this article assumes that the installation and configuration of the ConfigMgr 2007 will be in a Workgroup environment. The main features that usually are used by ConfigMgr 2007 in an ATM environment are: o Software Distribution o Security Update Management o Asset Management, Inventory Collection & Reporting From the ATM side, you will have to consider update the current banking corporation’s computer image with the below: BITS: The local policy of the image should be edited to allow the BITS communication. In addition to local policy of the ATMs HOSTS & LMHOSTS files: The hosts and lmhosts files should be both edited to allow the communication in the absence of WINS and DNS structure between the ATMs (as ConfigMgr Clients) and the site server. Service Pack 2 of Windows XP: The image should have at least Service Pack 2 of Windows XP. Client Agent Installation: The client agent should be installed on the image, but without any attempt to discover the ConfigMgr site server. Any discovery of the site server should take place in the production environment. Adding Robocopy (Robust File Copy): Robocopy is a command-line directory replication command. It is available as part of the Windows Resource Kit. Robocopy is a reliable mirroring utility of directories & directory trees. Robocopy.exe must be added to the System32 folder under the Windows Directory of the ATM image.


Posted 02-09-2009 1:27 PM by Asem Alhourani
Share:
Sponsors: Ms Logo Rtech Logo Pixel Arabia Logo Effate Univercisty Logo NC Logo
Home | About us | Contact us | Support
VirManSec IT Community, All Rights Reserved 2010