12/14/2009 2056 views
[font="trebuchet ms"]Hello ,
[font="trebuchet ms"]
[font="trebuchet ms"]How can we install the MSI or any exe (Application) for the user having locked permissions
[font="trebuchet ms"]-[font="trebuchet ms"]We can deploy it using any deployment tool so that it runs in system account and do the needful.
[font="trebuchet ms"]-Runas can also be used.
[font="trebuchet ms"]-Startup scripts can also be used.
[font="trebuchet ms"]
[font="trebuchet ms"]Is there any other way?
0 Comments   [ + ] Show comments


Rating comments in this legacy AppDeploy message board thread won't reorder them,
so that the conversation will remain readable.

All Answers

As your deployment tool supports installation in the system contex then there are no limitations and all files and registry keys will be installed correctly. the only issue is that they might be locked when you launch it. Fot that reason use ProcessMonitor and catch the ACCESS DENIED then grant permission to that items over the LockPermissions table

To use RunAs for a shortcut you need to uncheck the advetised shortcut option and move it out of the component that it belogs to and set a key path to HKCU. Then the option RunAs will appear in the context menu. Dont forget to adjust the ActiveSetup.

Did you thinks to use GPO for startup scripts?
Answered 12/14/2009 by: Scazy
Senior Yellow Belt

For MSI's it is also possible to allow users to always install with elevated privileges.

So far I only worked at one company were they actually used this policy.
Answered 12/15/2009 by: yuri
Orange Belt

[font="trebuchet ms"]Thanks Yuri & Scazy
[font="trebuchet ms"]
[font="trebuchet ms"]Thanks for the information.It is really helpful.
[font="trebuchet ms"]
Answered 12/15/2009 by: guy.forum
Orange Belt