How to prevent a publishing refresh storm when configuring App-V client settings via GP and the MDOP Admin Templates

~ Ryan Cobb

ToolsHi everyone, Ryan Cobb here with a tip for scheduling client setting updates when using the MDOP GP Admin Templates.

One of the options that the App-V 5 client has is the ability to configure some of the client settings through a Group Policy template, available here as part of the Microsoft Desktop Optimization Pack Group Policy Administrative Templates:

One of the settings that can be configured is the Publishing Server policy. In the screenshot below I am setting User Publishing Refresh to occur every hours


And on the client, once the policy has been applied it will show the newly created scheduled task as displayed in the screenshot below:


It says “At 1:00pm on 6/22/2008 – After triggered, repeat every 04:00 indefinitely”. OK, sounds good, but if you look closely at ‘Next run time’ you will see it says 1:00:00PM. OK, that sounds good too, unless of course you apply this policy to maybe 10,000 client systems. Have a look at the scheduled task on a few of those. Uh oh, they’re all the same! That would be some sort of Publishing Refresh storm if they all tried syncing at the same time!

To help alleviate this, a scheduled task can have a randomization value added as shown below:


However, the AppV Group Policy template doesn’t give the administrator a method to check that box. Admins do have that option when configuring reporting servers in order to protect against a similar issue with reporting data, but for whatever reason that configuration never made it over to the sync side of things.

To get around this limitation, a custom Scheduled Task can be deployed using Group Policy Preference (see here for more info). The steps are below, and they essentially copy the internals of the template defined task with the modification to add the check for randomization. Note that these instructions create a Scheduled Task for user syncing. If you wanted to create a Scheduled Task for Global or Machine syncing you could target the Computer and allow it to use the System account

Creating Group Policy Preference for custom user syncing of Publishing servers

1. Open GPMC

2. Create a new GPO

3. Edit the GPO and navigate to User Configuration and then expand Control Panel Settings.

NOTE You can also target this as Computer Configuration, you will just need to replace the ‘When running this task, use the following user account:” with something like ‘domain\domain users’ or another group that contains the users that need to sync as Tasks targeted at the computer use the System account.

4. Right-click Scheduled Tasks and choose New ->Scheduled Task (Windows Vista and Later) – maybe Windows 7 and later depending on your DC.

In the New Task window select Create as the Action, add a name and optionally a description, then check the box for Hidden


Select the Triggers tab and ensure the highlighted properties of this tab match the screenshot below, then click OK.


Now select the Actions tab, click New, complete the highlighted items and click OK.


Program/script: SyncAppvPublishingServer.exe
Add arguments(optional): 1 –NetworkCostAware –HidePublishingRefreshUI
Start in(optional): C :\Program Files\Microsoft Application Virtualization\Client\

Now select the Conditions tab and select the highlighted boxes below.


Now select the Settings tab and check these highlighted boxes and click OK.


Once deployed, you should now have the ability to introduce a random delay and avoid a potential Publishing Refresh storm when clients sync their settings.

Ryan Cobb  | Premier Field Engineer | Microsoft

Get the latest System Center news on Facebook and Twitter :

clip_image001 clip_image002

System Center All Up:
System Center – Configuration Manager Support Team blog:
System Center – Data Protection Manager Team blog:
System Center – Orchestrator Support Team blog:
System Center – Operations Manager Team blog:
System Center – Service Manager Team blog:
System Center – Virtual Machine Manager Team blog:

Windows Intune:
WSUS Support Team blog:
The AD RMS blog:

App-V Team blog:
MED-V Team blog:
Server App-V Team blog:

The Forefront Endpoint Protection blog :
The Forefront Identity Manager blog :
The Forefront TMG blog:
The Forefront UAG blog: