+ Post New Thread
Results 1 to 13 of 13
How do you do....it? Thread, Regular latop returns in Technical; Anyone know of a way to force staff members with laptop to being said laptop back into school every 14 ...
  1. #1

    Gatt's Avatar
    Join Date
    Jan 2006
    Posts
    6,644
    Thank Post
    858
    Thanked 645 Times in 428 Posts
    Rep Power
    498

    Regular latop returns

    Anyone know of a way to force staff members with laptop to being said laptop back into school every 14 days?

    They are all Windows 7 Ent, and using KMS, but the problem with KMS is that the expiry date is 180 days, and I cannot find a way to alter it...

    Is there any other way that I can effectivly "Lock" the laptop until it has been connected to the network?

  2. #2
    gizmo2005's Avatar
    Join Date
    Jun 2010
    Location
    Cornwall
    Posts
    243
    Thank Post
    81
    Thanked 19 Times in 14 Posts
    Rep Power
    17
    you might not be able to complete lock down but you could set the laptop so that it only connects to a certain IP address, they would have to bring them in to work on then unless you have external access set up for them, there must be sofware that locks the laptop after a certain amount of days, if you find one then please let me know


    Giz
    Last edited by gizmo2005; 26th August 2010 at 03:55 PM.

  3. #3

    Join Date
    Feb 2009
    Location
    Norwich
    Posts
    53
    Thank Post
    3
    Thanked 8 Times in 8 Posts
    Rep Power
    12
    1 - make it a condition of their user agreement

    2 - justify it by explaining that if they don't log onto the school network regularly then the laptop won't have the up-to-date MS security patches, anti-virus signitures etc and they are expected as responsible users to comply

    ...... can't see what could possibly go wrong with that - lol!

  4. #4


    Join Date
    Mar 2009
    Location
    Leeds
    Posts
    6,506
    Thank Post
    227
    Thanked 848 Times in 727 Posts
    Rep Power
    287
    could you not add something to task scheduler that disabled their account (or just changed permissions of something) so login failed?

  5. #5

    Gatt's Avatar
    Join Date
    Jan 2006
    Posts
    6,644
    Thank Post
    858
    Thanked 645 Times in 428 Posts
    Rep Power
    498
    @sted - this is what I am thinking:

    A Scheduled task to check for the existence of $share (eg \\server\netlogon)

    If $share has not been contacted within 14 days, do something that forces $user to connect the laptop to the network.

    I was wondering if Reduced Functionality Mode could be manually activated, but I cant find anything on it..

    Any other ideas would be appreciated....

  6. #6

    SYNACK's Avatar
    Join Date
    Oct 2007
    Posts
    10,991
    Thank Post
    851
    Thanked 2,653 Times in 2,253 Posts
    Blog Entries
    9
    Rep Power
    764
    Had a look at the KMS option. dosent look to be an option unfortunatly which is a total oversight on their part Activation Policy Values a script is probably the best way to go.

  7. #7

    Gatt's Avatar
    Join Date
    Jan 2006
    Posts
    6,644
    Thank Post
    858
    Thanked 645 Times in 428 Posts
    Rep Power
    498
    Quote Originally Posted by SYNACK View Post
    Had a look at the KMS option. dosent look to be an option unfortunatly which is a total oversight on their part Activation Policy Values a script is probably the best way to go.
    What a shame, because that could make a nice security feature, if the "KMS Activation Duration" values were configurable..
    i doubt you could even script the KMS client to deactivate the PC by deleting the licensed state without rearming it...

  8. #8

    FN-GM's Avatar
    Join Date
    Jun 2007
    Location
    UK
    Posts
    15,779
    Thank Post
    865
    Thanked 1,665 Times in 1,450 Posts
    Blog Entries
    11
    Rep Power
    442
    I used to use a little script. When you logon connected to the domain in creates a small .txt file. There is another script that runs locally on logon and if the .txt is over 14 days it shuts down the computer.

  9. Thanks to FN-GM from:

    Gatt (26th August 2010)

  10. #9

    Gatt's Avatar
    Join Date
    Jan 2006
    Posts
    6,644
    Thank Post
    858
    Thanked 645 Times in 428 Posts
    Rep Power
    498
    Quote Originally Posted by FN-GM View Post
    I used to use a little script. When you logon connected to the domain in creates a small .txt file. There is another script that runs locally on logon and if the .txt is over 14 days it shuts down the computer.
    Sounds interesting - don't suppose you still have it? Does it work with non-domain machines?

  11. #10

    FN-GM's Avatar
    Join Date
    Jun 2007
    Location
    UK
    Posts
    15,779
    Thank Post
    865
    Thanked 1,665 Times in 1,450 Posts
    Blog Entries
    11
    Rep Power
    442
    The 2 schools that i used it with closed not long ago

    I will see if i can find it.

  12. #11

    SYNACK's Avatar
    Join Date
    Oct 2007
    Posts
    10,991
    Thank Post
    851
    Thanked 2,653 Times in 2,253 Posts
    Blog Entries
    9
    Rep Power
    764
    Quote Originally Posted by Gatt View Post
    What a shame, because that could make a nice security feature, if the "KMS Activation Duration" values were configurable..
    i doubt you could even script the KMS client to deactivate the PC by deleting the licensed state without rearming it...
    You could delete the KMS client key which would drop the activation state on the next reboot, not sure if you could drop it then re-add it in one hit and still have it drop the state. If not you could have it readd the key as part of the logon script if there was no key detected.

    Slmgr.vbs Options
    slmgr.vbs -upk {KMS Client Key}

    there are some useful WMI headers to get the activation information out to check too:
    Windows Product Activation Provider (Windows)
    Win32_WindowsProductActivation Class (Windows)

    The WMI stuff can also be used to add or remove keys

  13. Thanks to SYNACK from:

    Gatt (26th August 2010)

  14. #12

    Join Date
    Aug 2005
    Location
    London
    Posts
    3,154
    Thank Post
    114
    Thanked 527 Times in 450 Posts
    Blog Entries
    2
    Rep Power
    123
    Why do you want them back in so frequently? I don't know how many you've got but getting them in every 2 weeks seems like an awful lot of work you're making for yourself?

  15. #13

    Gatt's Avatar
    Join Date
    Jan 2006
    Posts
    6,644
    Thank Post
    858
    Thanked 645 Times in 428 Posts
    Rep Power
    498
    Quote Originally Posted by SYNACK View Post
    You could delete the KMS client key which would drop the activation state on the next reboot, not sure if you could drop it then re-add it in one hit and still have it drop the state. If not you could have it readd the key as part of the logon script if there was no key detected.

    Slmgr.vbs Options
    slmgr.vbs -upk {KMS Client Key}

    there are some useful WMI headers to get the activation information out to check too:
    Windows Product Activation Provider (Windows)
    Win32_WindowsProductActivation Class (Windows)

    The WMI stuff can also be used to add or remove keys
    Cheers for that, I'll take a look into that

    Quote Originally Posted by srochford View Post
    Why do you want them back in so frequently? I don't know how many you've got but getting them in every 2 weeks seems like an awful lot of work you're making for yourself?
    We have 50 laptops going to the staff, I was for every month, but HT wanted every 2 weeks, it may be time to point out that it will (a) take up a lot of my time, and (b) annoy the hell out of the staff

SHARE:
+ Post New Thread

Similar Threads

  1. How to force regular password change in FMS?
    By nielpeel in forum MIS Systems
    Replies: 3
    Last Post: 3rd November 2009, 11:01 AM
  2. SmoothWall regular expression problem
    By sjatkn in forum Internet Related/Filtering/Firewall
    Replies: 1
    Last Post: 24th June 2009, 09:30 PM
  3. Regular Expression (I think)
    By danIT in forum Coding
    Replies: 4
    Last Post: 15th April 2009, 12:40 PM
  4. HP returns
    By maximus44 in forum Bad Experiences
    Replies: 5
    Last Post: 11th June 2008, 05:29 PM

Thread Information

Users Browsing this Thread

There are currently 1 users browsing this thread. (0 members and 1 guests)

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •