Quantcast
Channel: Ivanti User Community : All Content - Endpoint Manager and Endpoint Security (EPM) (Powered by LANDESK)
Viewing all 1714 articles
Browse latest View live

How to update LANDesk agents after core upgrade (Rebuild All)

$
0
0

Issue:

After upgrading the core server, many users will want to make sure their agent version matches the core version for various reasons. The best way to do this, is by using the "Rebuild All" feature.

 

Solution:

While logged into the core console > Tools> Configuration> Agent Configuration> Click the Rebuild all icon (Green circle with a blue gear shape)

A "Rebuild Progress" dialogue box will appear. The process is generally quick.:

 

Once the agent configurations have been rebuilt and says "Done", click Close. The "Scheduled Task" feature can be used to push out the updated agents.


how can I use port 443 instead of port 80 ? [LDMS]

$
0
0

[LDMS 2016]

I want to use port 443 and i don't want to use port 80??

So,Is it possible ? if i use port 443 instead of port 80 in the core server

 

Capture.PNG

 

thank you.

how to start a task on the client

$
0
0

Hi community

 

Here's the starting position:

  1. I created a package
  2. I created a task
  3. I dragged one test client A into that task
  4. I started the task (right mouse click - start now - all)
  5. I dragged another machine B into that task

 

How can I start the task directly on client B:

  1. without waiting for the policy refresh (I assume that's what happens on the client from time to time)
  2. without starting the task again on the server

 

Stopping and starting the cba8 service on the client did NOT do the trick. Neither did a reboot.

How and when does the client pick up that task?

(it's a policy-supported push task, run once, download and execute)

 

Thanks!

OS Provisioning fails at System Configuration

$
0
0

Hello all,

 

I am having trouble imaging my new windows 10 products.

 

I have managed to get the image down onto the machines, however the provisioning process fails at system configuration.

 

Here is the template as it sits now.

templateprovisioning.PNG

 

Nothing happens after the Post-OS installation phase. The machine restarts to the log in screen. On my windows 7 machines, the Landesk provisioning windows appears after login and runs the remaining actions.

The windows 10 machines do nothing after I log in.

The C: drive does have a folder named "ldprovisioning" which contains two executables: Launchldprovisionasuser and ldprovision.exe

 

Clicking on these just deletes the folder.

 

Any ideas?

High Sierra & FileVault

$
0
0

I am having a problem with Mac OS High Sierra reporting back that it is encrypted. I sent the job out and it communicates with the computer and does the encryption process. When I go into the console and look at the computer it is reporting that the drive encryption is off. I have updated the agent on the computer after the core upgrade. Am I missing something or looking in the wrong place. I need this information to prove that the computer is encrypted for auditing purposes. My Sierra machines are working as they should. I thought that with the core upgrade it would work with High Sierra. Any insight would be appreciated.

Chromebook import

$
0
0

Hi everyone,

 

I've been breaking my mind over this one and wondered if anyone had any useful information for me. I followed the directions for setting up the Chromebook import from Gsuite here: How to setup Chromebooks in LDMS 2016

 

I tested this on my dev server, and even though it took a little bit of time (I let it run over night to collect all of our 50,000+ devices) it did eventually pull this information into the console. Since it worked so well in dev, I attempted the exact same steps on my prod server, but it didn't work. I scheduled a run over the weekend, but came back in today and no records were imported. SO I removed everything and started from scratch, walking through the documentation again, even generating a new client cert from Gsuite, removing and re-adding all of the settings in both google and the Ivanti console. I tried restarting my scheduler service, resetting IIS (I saw something about this in a related search regarding certs) and tried rebooting the entire server in case there was some hung process or something that I couldn't identify. Still nothing.

 

When I go look at the Dashboard on the Google API and Services page, I see some sort of "traffic" though there's not much description about what's actually happening during the run. I walked through the test on Google again, on this page: Chromeosdevices: list  |  Directory API  |  Google Developers - And the test completes successfully. I see results from our Google domain, and a short version of our list of Chromebook is displayed. This leads me to believe that all of the stuff on the Google end is configured and working properly, but there's something not connecting from our server and Google.

 

When I go to Configure -> Device Discovery -> Chromebooks, and run the "Test Credentials" the window just times out for a long, long time (it did this on my dev server too) and eventually starts responding again after a minute or two. There are no messages about whether or not the test was successful. If I put in credentials I know to be incorrect, I immediately get a failure message, so I think the credentials and certificate are okay.

 

What else am I missing here? Is there some sort of configuration I've not done? Are there certain rules on the server or in the console that need to be set a certain way? I'm really out of ideas here!

How does inventory gather LDAP information?

$
0
0

We have a 2016.3 deployment on a dark core network.  I have been deploying some software packages using Active Directory groups, and it's been successful so far.  I'm setting up another software package to do the same thing.  The query that polls the security group, and also looks to see if that software has already been installed, found only one system that is in the group, but doesn't have the software.  When I checked, I realized that that system shouldn't be in that security group.  So I removed it from that AD security group.  I then had it run scans for hardware, hardware and software, and full sync.  It still didn't update the fact that it's no longer a member of that security group.  So I left it for a couple of days, hoping that some other process would update the status.  But the query is still showing that system is in that AD security group.

 

How do I troubleshoot this?  I tried to figure out what process is polling LDAP for new status, but couldn't figure it out.  It doesn't appear we have the LDAP Enumeration registry key set, but the inventory for each system includes LDAP Groups/Machine, and it appears to be accurate most of the time.  I'm not seeing any errors (that I know of) with the scans on this system, but it still has the outdated LDAP Group membership.  Where do I start in troubleshooting this?

Cannot update latest microsoft vulnerability patches

$
0
0

Hello to all,

 

I'm completely new to Landesk so I apologise if the question may be trivial.

I need to check the situation of a customer's environment who uses Landesk 9.6 and recently renewed the license.

He was using Landesk for patching Windows clients only.

 

First of all I need to understand if the license is correct, and I think yes:

 

 

I tried to download the latest Microsoft patches, since for what I know they were still stuck at 2015...

The download process seems to go well, but then I have this situation:

 

1 - on Patch and Compliance tool, I can see that some of the updates after 2015 have an icon with a question mark, some others with a red cross:

 

(example)

What do these icons mean?

 

2 - in the Patches folder, even deleting all what it was inside and re-launching the update task, the "new" downloaded patches arrive to the same date (more or less 7/2015).

 

I can't understand if it's a matter of license or configuration, I need to download all the new patches in order to deploy them.

 

Can you help me?

Thanks


can't select computer component in request, since updating landesk 9.6 to ivanti 2017

$
0
0

Good morning,

 

as you can see in the image below, i can no longer select any computer component, since i updated landesk 9.6 to ivanti 2017.

Is someone have and idea, how to fix this issue ?

 

Sincerely

2017.3 client not updating AD location

$
0
0

We have a new Endpoint manager implementation and I'm trying to understand how/how often the AD location is updated for a client.  We want to use AD OUs as targets for tasks.  When I move a machine from one OU to another it doesn't seem to update after a patch or inventory scan.  I'm assuming that agent is pulling this information from the client, because there doesn't seem to be a task to update EM with AD information directly.  Is the problem the delay between times that the client logs into AD and refreshes its locations information?

How to update client after changing a setting under Real-Time Inventory and Monitoring?

$
0
0

Currently running LANDesk 2017 service update 1. We are disabling baseline components and extended components in Real-time Inventory and Monitoring. Now, after updating for new agents, is there any way to update the agent on client machines without having to redeploy the agent.

 

Already have tried "schedule update to agent" but that appears to have failed, and under agent settings - change settings, not seeing anywhere in there to change that either.

 

Has anyone else run into this? Not really finding any current articles on this, everything I am getting is from 2012.

Windows 10 remote control extremely sluggish/slow/unresponsive

$
0
0

When remote controlling windows 10 machines, the response to a click can take 2-3 seconds before anything on the screen changes.  Sometimes longer and sometimes it doesn't' do anything at all.  Is there a way to fix this?

Permissions to allow admins to edit Portal Manager

$
0
0

I am trying to allow one of my admins the ability to create and edit Portal Settings under Agent Settings. They are now able to create a new portal setting, but they don't seem to have the permissions to edit them. I can't seem to find any information as to what permissions are needed to allow them to modify it. In fact, I can't even find a list explaining what all of the permissions are associated with either.

 

Does anyone have this information by any chance?

How to access Ivanti Endpoint Manager(Landesk Management Suite) without taking remote of core server

$
0
0

How to access Ivanti Endpoint Manager(Landesk Management Suite) without taking remote of core server?

 

Like if any Service desk user with limited access wants to access the management console, how can he access ?

Cannot re-image a laptop

$
0
0

So this has been happening quite a bit here for us.  At this point we are testing new builds and having to re image the same laptops.

The problem we're running into is, once the machine has been imaged.  If we try to image it again, it won't get to the Landesk screens. 

 

It goes from...

 

checking media presence

media present

start pxe over ipv4

 

to

 

Press F1 key to retry boot

Press F2 key to reboot into setup

Press F3 key to run onboard diagnostics

 

These happen with all our Dell models.  Has anyone run into this?  What's the underlying cause?  Fix?  Thanks!


Need Info On Installing Ivanti Endpoint Manager (Only Inventory/Asset Intelligence)

$
0
0

Hi,
I have few queries in installing Ivanti Endpoint manager.Will be glad if someone can help?. I have planned to install only inventory/asset intelligence components. Will be managing 8000+ clients
Shall we create a Database instance on an existing SQL Server or it requires Dedicated SQL Server?
How to limit Agent installation only to client OS?
Limit Agent-less Scan only to Client Windows OS?
What is the Minimum Hardware requirement for installing only Inventory Component?
Any other best practices guide available?

 

Thanks in Advance

Updatetrustedsites.exe is broken post Ivanti agent install on a server

$
0
0

Problem signature:

P1: UpdateTrustedSites.exe

P2: 5.0.8239.1000

P3: 552cf46b

P4: MSVCP120.dll

P5: 6.3.9600.18007

P6: 55c4c16b

P7: c0000135

P8: 00000000000ec4e0

Uninstall all versions of Java before patching to a new Version

$
0
0

i found this that allows all versions of java to be uninstalled before you patch to the latest version using patch management

 

wmic product where "name like 'Java%%'" call uninstall /nointeractive

 

at Uninstall all Java versions – Jocha

Maintain Scheduled Tasks if Services Stop/Core Reboots

$
0
0

I've started creating more scheduled tasks on the LDMS core... a task to download my Antivirus and Patch information every day at 1 AM, one to gather my Path and historical information, a weekly report on Mondays of machines with Inventory scans older than 15 days old delivered by e-mail, etc. So far about 7 regularly scheduled tasks in all but I want to do a lot more, especially reports.

 

The core server is virtualized but doesn't have failover protection unfortunately, and there have been a few times my server admins have had to take all the VMs down in order to service the physical host. When the OS comes back up, all of the scheduled tasks are stopped, with the caution sign on the icon and their status column reading "Service stopped". Is there a way to set a task to be persistent so that I don't have to go reschedule it every time this happens? Right now it's a manageable number of tasks but I'd like to get to the point where a lot of things are running automatically, and I don't really want to have to go reschedule 200 tasks every single time the OS has to be restarted.

 

Thanks!

Query Based Scope returns duplicate results

$
0
0

EPM 2017.3

I found this: Scope returns duplicate results

However my scope is based on a query, the query itself looks fine (no duplicates) but the scope show 1 device multiple times.

I tried changing the columns but still the same no matter which column set I use.

 

Any ideas?

Best.

Viewing all 1714 articles
Browse latest View live


<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>