Windows Recon Rollout

- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Posted on 09-28-2009 02:49 PM
We are looking to roll out Recon on Windows using group policy.
I found this command through some googling:
PATHRecon.exe -server DOMAIN.COM -username USER -password PASS
But all the command does is launch Recon. Did the command change for Recon on Windows? Or is there another recommended way of doing this? Thanks.
Tony S. Wu
tonyswu at mac.com

- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Posted on 09-30-2009 03:19 PM
Actually I've been wondering about this as well. Used to be able to run
it silently through the command line in version 5 and 6, but I can't get
it to work anymore either.
Chad Bradford | Systems Administrator | Y&R
303 2nd Street, South Tower, 8th floor
San Francisco, CA 94107 USA
T: +1 415 882 0606
F: +1 415 882 0601

- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Posted on 09-30-2009 04:02 PM
After digging around, I think what you are supposed to do now is use
Recon.exe on one of your workstations to create a QuickAdd.msi file. You
can then host the MSI file in a shared folder some place and use Group
Policy to install the MSI file (under Computer Configuration > Policies
Software Settings > Sosftware Installation - doing this will install
it when the computer turns on, before login.) Just make sure the Source
path is a network path that Everyone has read access to.
Chad
Chad Bradford | Systems Administrator | Y&R
303 2nd Street, South Tower, 8th floor
San Francisco, CA 94107 USA
T: +1 415 882 0606
F: +1 415 882 0601

- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Posted on 10-01-2009 10:02 AM
What I did is extract jamf.exe from recon.exe. You can do that by running
recon.exe /x.
Then I run jamf.exe in a .bat file as a startup script via group policy. My .bat files looks like this:
copy /v /y "server.domain.comdistribution$Reconjamf.exe"
c:windows emp
c:windows empjamf.exe recon -overrideJSS https://casper.domain.com:8443
-username imaging -password **

- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Posted on 10-01-2009 07:19 PM
This is exactly what we ended up doing.
Tony S. Wu
tonyswu at mac.com

- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Posted on 10-01-2009 10:42 PM
Since we had 6,000 Macbooks that also ran windows for me to keep track
of which ones that did not run windows I did a dummy package system.
Basically a script ran on every machine invoking the df command and it
grep'd out the NTFS partition and if it was present it exited, if it was
not present it installed a dummy package.
Then I just looked at the policy status of every machine that had the
dummy package installed and could tell what assets did not have windows
on them.
Now that I don't have to run Windows on my Macs I no longer care, but
just thought I would share an alternate method if you are trying to keep
track of Windows installs on your Macs.
Thanks
Tom
Thomas Larkin
TIS Department
KCKPS USD500
tlarki at kckps.org
blackberry: 913-449-7589
office: 913-627-0351
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Posted on 10-05-2009 09:32 AM
I have make a bat for recon using the startup script below. Is there a way
to suppress the authentication after the bat runs?
