I am trying to deploy a patch to our network, except to the clients coming through VPN on a selected subnet. Is there a way to create the relevance to check the OS and IP range for relevance and if the VPN subnet is found, make the relevance false?
I would use the Location Property Wizard to tag certain IP ranges as VPN. The wizard will generate all the necessary relevance for you. Then when you target your actions, you can use the ‘Run only when’ option on the constraints tab to set the action to run only when location != VPN.
If you have any problems figuring it out just let us know where you are stuck.
I work with Brian and we have two IP ranges for the VPN subnet, 120.18.144.0 /22 and 120.19.144.0 /22.
We put them into the Location Property Wizard, downloaded and ran the action, and when we go to “By Retrieved Properties” we see that the “By Location by Subnet” results show with all machine results shown. But it does not show us what we want, which is all machines in the IP ranges, and were stuck.
thanks for the info. We have created the Location property and it is identifing the clients correctly. when they are on the listed VPN subnets, they are annotaded with VPN. When we create the action and use the Constraints section to read “only install when Location By subnet via VPN !=VPN” the clients coming over VPN show a status of CONSTRAINED and the application does not run, Just like we want. However, when we place the system back on the local subnet and the Location via VPN is blank the status for the action on the system still shows CONSTRAINED and the package never runs even after a refresh.