In our environment we are running Windows 2003 Terminal Servers. The only ZCM policy we currently have applied is DLU. The DLU is assigned to each terminal server as a device policy. We had been experiencing slow logins, so I implemented the DisablePassiveModeLogin registry fix. For users that had already logged into the terminal server (and therefore had a DLU-created local account), the login time improved dramatically. Unfortunately, the DLU was no longer creating local accounts for users that had not logged into the terminal server before. My understanding was that because the DLU was assigned to the device, I could use the DisablePassiveModeLogin key and not have it affect the DLU. Am I missing something, or is a login to the Zenworks zone required for DLU?

Paul Abbott