Anchor | ||||
---|---|---|---|---|
|
Easy heading | ||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||
---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
|
Install GYTPOL Client Sensor for Windows manually from an elevated CMD.
Please follow this user guide to see manual installation steps.
Once GYTPOL client Sensor is installed, please open mmc from Run and add Certificates Snap-in using the file menu.
...
Follow the Export Wizard with its defaults and save the file somewhere in your network. We will import it to our GPO created in the next steps, so keep in mind it should be accessible to your Domain Controller.
Creating the GPO
Create a folder named gytpol under your domains NETLOGON folder.
...
Copy the MSI files only from GYTPOLs Client Sensor zip file into that folder
...
Go to your Group Policy Management Console (GPMC) → Forest → Domains → yourDomainName → Right click and select “Create a GPO in this domain, and link it here…”
...
Name the GPO as GYTPOL Client Sensor Deployment (or any relevant name) → OK
...
Go to Computer Configuration → Preferences → Control Panel Settings → Scheduled Tasks → New → Immediate Task (At least Windows 7)
...
Task Properties:
General tab: Name the task “GYTPOL Client Sensor deploy”, run it under NT AUTHORITY\SYSTEM, check Run with highest privileges and select the Hidden check boxes.
...
Click OK to close the task scheduler properties
Adding the Certificate to our GPO
Browse to Computer Configuration → Policies → Windows Settings → Security Settings → Public Key Policies → Trusted Publishers
R. click on Trusted Publishers → Import
Browse to the location where the exported certificate is stored and import it to the Certificate Import Wizard
Follow the Wizard with its defaults and the certificate will be shown in the Trusted Publishers folder in GPMC:
...
Close the GPO window and go back to the Group Policy Management Console (GPMC) → right click on the GYTPOL Client Sensor Deployment object → click Enforced and make sure this is what you see:
...