windows-server-2008 – GPO推送安装失败,错误代码为1603

前端之家收集整理的这篇文章主要介绍了windows-server-2008 – GPO推送安装失败,错误代码为1603前端之家小编觉得挺不错的,现在分享给大家,也给大家做个参考。

以下是客户端上的log appmgmt.

07-27 17:14:16:775 
Software installation extension has been called for foreground synchronous policy refresh.
The following policies are to be applied,flags are 1.
    SecureAge Distribute (unique identifier {AE19597D-CBD3-42EF-AEE8-09FBBFA13171})
        System volume path = \\\SysVol\\Policies\{AE19597D-CBD3-42EF-AEE8-09FBBFA13171}\Machine
        Active Directory path = LDAP://CN=Machine,cn={AE19597D-CBD3-42EF-AEE8-09FBBFA13171},cn=policies,cn=system,DC=dev,DC=sa,DC=com
Set the Active Directory path to LDAP://CN=Class Store,CN=Machine,DC=com;.
Enumerating applications in the Active Directory for computer CHENBoxPSP3X32 with flags 5.
CSTORE: Retrieving class store path for the system account.
CSTORE: Retrieved 1 class stores for the user or machine.
CSTORE: Attempting to bind to class store 0 with path LDAP://CN=Class Store,DC=com.
CSTORE: Bind attempt returned error code 0.
CSTORE: Enumerating packages with search filter (&(objectclass=packageRegistration)(|(|(msiScriptName=*A*)(&(canUpgradeScript=*)(msiScriptName=*P*)))(!(msiScriptName=*)))) and flags ce00000.
CSTORE: Examining retrieved package SecureAge.
The following applications were found in policy SecureAge Distribute.
    Assigned application SecureAge (flags a0004c70).
Found 1 applications in policy SecureAge Distribute.
Enumerating the managed applications which are currently applied to this user.
No managed applications are currently applied to this user.
Found 0 applications locally that are not included in the set of applications from the Active Directory.
Application SecureAge from policy SecureAge Distribute is set for installation because it is assigned to this computer policy.
Assigning application SecureAge from policy SecureAge Distribute.
Calling the Windows Installer to advertise application SecureAge from script C:\WINDOWS\system32\appmgmt\MACHINE\{e7b03277-41c7-41b4-8863-cffe4d61237e}.aas with flags 69.
Windows Installer cannot advertise application SecureAge from script C:\WINDOWS\system32\appmgmt\MACHINE\{e7b03277-41c7-41b4-8863-cffe4d61237e}.aas,error 1603..
The assignment of application SecureAge from policy SecureAge Distribute Failed.  The error was : %1603

Removing application SecureAge from the software installation database.
Calling Windows Installer to remove application advertisement for application SecureAge from script C:\WINDOWS\system32\appmgmt\MACHINE\{e7b03277-41c7-41b4-8863-cffe4d61237e}.aas.
Windows Installer cannot remove application advertisement for application SecureAge from script C:\WINDOWS\system32\appmgmt\MACHINE\{e7b03277-41c7-41b4-8863-cffe4d61237e}.aas,error 1603.
The removal of the assignment of application SecureAge from policy SecureAge Distribute Failed.  The error was : %1603

Policy Logging for Software Management is attempting to log application SecureAge from policy SecureAge Distribute.
Failed to apply changes to software installation settings.  Software changes could not be applied.  A prevIoUs log entry with details should exist.  The error was : %1603

Software installation extension returning with final error code 1603.
07-27 17:14:25:665 
Software installation extension has been called for foreground synchronous policy refresh.
The following policies are to be applied,flags are 80.
    SecureAge Distribute (unique identifier {AE19597D-CBD3-42EF-AEE8-09FBBFA13171})
        System volume path = \\\SysVol\\Policies\{AE19597D-CBD3-42EF-AEE8-09FBBFA13171}\User
        Active Directory path = LDAP://CN=User,CN=User,DC=com;.
Policy has not changed.  Only assigned applications will be advertised.
Enumerating the managed applications which are currently applied to this user.
No managed applications are currently applied to this user.
Found 0 applications locally that are not included in the set of applications from the Active Directory.
Software installation extension returning with final error code 0.

我试图搜索诸如“Windows Installer无法通过脚本来宣传应用程序……”之类的内容,但没有得到任何提示.



Event ID: 101 (error)
The assignment of application SecureAge from policy SecureAge Distribute Failed.  The error was : Fatal error during installation. 

Event ID: 103 (error)
The removal of the assignment of application SecureAge from policy SecureAge Distribute Failed.  The error was : Fatal error during installation. 

Event ID: 108 (error)
Failed to apply changes to software installation settings.  Software changes could not be applied.  A prevIoUs log entry with details should exist.  The error was : Fatal error during installation. 

Event ID: 1085 (error)
The Group Policy client-side extension Software Installation Failed to execute. Please look for any errors reported earlier by that extension.


Windows XP和7 32位主机都会出现问题.主机在VMWare中运行.

编辑2:我尝试使用启动脚本来安装软件包,它适用于Windows 7客户端.在Windows 7客户端的启动阶段,弹出的“交互式服务检测”窗口显示已安装的软件要显示某些消息.除此之外,安装工作正常,安装过程中无需输入.请注意,手动安装msi会显示一条消息,表明安装后需要重新启动.


Set WshShell = CreateObject("WScript.Shell")
Set objFso = CreateObject("Scripting.FileSystemObject")
If Not objFso.FileExists("C:\Program Files\SecureAge\bin\SecureAge.exe") Then
    WshShell.Run "\\\DPoint\SecureAge.msi"
End If

注意:启动脚本安装仅适用于Windows 7,但不适用于Windows XP.





当您使用基于计算机的软件安装GPO时,您正在做的是将软件安装为SYSTEM帐户.某些软件安装程序行为不当,需要将数据写入安装用户配置文件. SYSTEM帐户没有像其他用户帐户那样的传统配置文件,这给人一种所需目录不存在的错觉.这可以解释为什么登录脚本或手动安装有效 – 既不以SYSTEM身份运行.


