Quantcast
Channel: Ivanti User Community : Discussion List - Cloud Services Appliance
Viewing all 134 articles
Browse latest View live

msec errors being sent via email to root account

$
0
0

Ok, admittedly I'm on the old Management Gateway, but I'm hoping to get some help here.

 

This is my Gateway version info:

LANDesk Management Gateway release: 4.0-1.48

Web console version: 1.0-1.63

Gateway service version: 8.7.0.3

OS: LDLinux PE 4.0-1.48 10/04/07 06:23 - (scrappy)

 

2 days ago I started getting hourly cron.hourly run-parts messages that say

 

msec: User bin in shadow but not in passwd file

msec: group name bin not found

 

I have logged in to the command line via putty and have checked both the shadow and passwd file, neither one has a user bin in it.  Also, the group file does have a group name bin.  These are the files in the /etc directory.

 

I am suspecting my LDMG has been hacked/compromised although I don't see any other signs of problems.  It doesn't have any rogue processes running and it is functioning as it always has.

 

I've checked disk usage, still have plenty of space on all the drives.

 

Anyone have any ideas?

 

Thanks,

Dan


Export list of client reporting to CSA

$
0
0

We have moved our Macs over to Casper for the Filevault features, but there are many that are still reporting to the CSA and show up in the available clients list.

 

Is there any way for me to export this list so that I can have our Mac admins run the agent uninstall script?  (CSA 4.3 all current updates, 9.6 LDMS SP2 core)

 

Thanks.

Workspace software distribution through CSA, how fast?

$
0
0

I have been fighting an issue with the speed of software distribution through the CSA.  LD support says it is our network and our network guys say that it is an issue with how Workspace handles pulling the software through the CSA. Also, it seems like I get lock ups after about 30 seconds consistently when remote controlling through the CSA (the keyboard and mouse become unresponsive on the controller side while the controller can still see movements initiated by the controllee).  

 

What I have been seeing is that it will take about 6 - 8 minutes to install a ~30 MB package such as VLC.  When the download starts, I look at the sdmcache and it will download the file as though it is being throttled to only use a quarter of the bandwidth, 2 seconds of downloading followed by 6 seconds of wait time before the next burst of downloading.  I have confirmed that the task settings are not throttling it, it is set to use the full available pipe.

 

I have put a 48 MB file on the CSA itself and can download that from the internet between 1 - 1.5 MB/s at a consistent rate.  I have set an internal client to route its software distributions through the CSA and it is much faster and comes down at a consistent pace.  All the signs, to me, point to there being an issue on our network from the CSA out to the internet with the https traffic that Workspace uses and not http traffic that is used when pulling the 48 MB file straight from the CSA.

 

I am curious as to work sorts of speeds other people are seeing.  We are rolling out 9.6 SP2 now with the CSA being a VM on 4.3 with all current patches.  The CSA will be taking on a greater roll with Workspace and we would like to promote this extensively, but don't feel comfortable with the speeds we are seeing now.

 

Could you let me know what kind of speeds you are seeing so I can get a feel for what the CSA is capable of doing?

 

Thanks.

Installing VMWare Tools in LANDESK CSA

$
0
0

Does anyone have any experience with this?  We deployed the CSA appliance in our VMWare environment and are in a bind because VMware Tools did not come installed in the appliance.  Without VMware Tools we must schedule downtime for the CSA when maintenance is required on the host server and we can't count on DRS to protect this guest in the event there is an issue on the host.  I can't imagine why VMWare Tools wasn't installed. 

 

Anyway, as best as I can tell there is no way via backend access to the CSA to execute the commands needed to install VMWare Tools.  Is there a way?  How did you do it?

 

Thanks,

 

MJ

Landesk Cloud Service Appliance 100% CPU usage

$
0
0

Landesk 9.6

Cloud Services Appliance release: 4.3.1-171.20150406.0539


Our CSA is using 100% CPU. This is a new behavior. There seems to be a lot of "state mismatch" errors. Can't seem to find any info online. Any help or insights would be appreciated.

what causes a landesk 9.6sp2 client to lose its csa certificate?

$
0
0

This is for a Windows 8.1 tablet that has a few connection possibilities - network and broadband. It was configured at our headquarters where the Core and CSA reside. Landesk communications via network and broadband were verified and the CSA certificate was installed on the tablet. The tablet was not in a domain at HQ. Once it was shipped to its remote office, we were able to remotely manage via Landesk Remote and then placed the tablet into an AD Domain. We are pretty sure we were able to reconnect with the tablet after adding into the AD Domain and help the final user setup their desktop. At a subsequent restart, firewall settings were enabled that blocked many communications. We were able to disable the firewall settings and gain a Remote Control connection, but the tablet lost its CSA certificate. Running Brokerconfig again, it cannot retrieve the CSA certificate. The remote office has desktop computers that are happily communicating with the CSA. The tablet is able to connect with the CSA's website.

 

What causes a Landesk 9.6sp2 client to lose its brokerconfig / csa certificate?

virtual CSA how to

$
0
0

Are there any documents that explain how to upload and install a virtual CSA?

 

Best

CSA Custom Identifier

$
0
0

Does anyone knows how to assign or choose a different identifier2 in the CSA?

555.png

Thank you.


How to unlock a AD users account in the CSA

$
0
0

By default the CSA will lock out a user account for 15 min after 5 failed attempts.

Is there a way to unlock this user form the admin console, a script, something?

CSA DMZ firewall configuration

$
0
0

Hello, I'm not a Network expert, If someone could take a look at this firewall configuration that would be great.

I'm trying to secure as much as possible the connections to the CSA. I have a CSA located in vCloud.

This is the configuration as I have it right now (and is working)

Is there anything else that I need to change to solidify the firewall?

1.png

As per documentation

2.png

 

Thank you!

How to remove the CSA from core?

$
0
0

When I try to do this, I keep getting the error: Unable to delete default CSA

I have clicked edit, uncheck the default, apply, delete, same error.

 

Thanks.

Can't use AD Credentials to connect to the RC page on CSA after applying SSL certificate.

$
0
0

Is anyone able to use AD credentials with the CSA (RC page) after applying SSL certificate?

The regular users in the CSA work, the AD used to work before SSL.

 

Regards

CSA main landing page

$
0
0

Does anyone knows where the main xml? file is for the CSA and its name?

I did a ssh search but couldn't find it.

Any help is appreciated.

 

<HTML>
<head>
  <meta http-equiv="Content-Type" content="text/html; charset=iso-8859-1">
  <title>LANDESK(R) Cloud Services Appliance</title>
  <style type="text/css">
  <!--
  body {
   margin: 0;
  }

  div.header {
   padding: 0;
   border-top: 5px solid #505d95;
   background-image: url(allowed/hdr_lsdk.gif); background-repeat:no-repeat;
   background-position: 300px 1px;
   border-bottom: 1px solid #505d95;
   height: 105px;
  }
  span.title {
   font-family:Geneva, Arial, Helvetica, sans-serif;
   font-size: 24pt;
   color: #003060;
  }
  .super {
   font-family:Geneva, Arial, Helvetica, sans-serif;
   font-size: 8.25pt;
   color: #003060;
   vertical-align: super;
  }
  table.linklist {
   border: none;
   font-weight: bold;
  }
  a { text-decoration: none; color: #003060; }
  a:visited { color: #003060; }
  a:hover { text-decoration: underline;  }

  -->
  </style>
</head>
<body>
  <div class="header"><img src="allowed/landesk-logo.png" align="absmiddle"><span class="title">      LANDESK<span class="super">&reg;</span>Cloud Services Appliance</span></div>
  <table class="linklist" width="100%" border="0" cellspacing="0" cellpadding="5"><TR><TD><a href="https://csaus.packsize.com/gsb/">Cloud Services Appliance Console</a></TD></TR><TR><TD><a href="https://csaus.packsize.com/upload/">Software Package Upload</a></TD></TR><TR><TD><a href="https://csaus.packsize.com/rc/">Remote Control Agents</a></TD></TR><TR><TD>
  <a href="http://csaus.packsize.com/client/">Cloud Services Appliance Utilities</a>
                <br>
                <a href="http://csaus.packsize.com/client/LDMGdeploy.pdf">User's Guide</a>
</TD></TR></table>
</BODY>
</HTML>

 

44.png

Managing DMZ servers using CSA

$
0
0

What are the steps that I need to take to manage a server in the DMZ with the CSA? Any special agent settings?

 

We already have a CSA in place and we used to manually patch servers in the DMZ and we want to start using LANDesk to do the patching.  The current DMZ servers don't have an agent installed on them so that will need to be done.

How to change CSA backup location?

$
0
0

Hello, Is there a way to change the CSA backup location?

As I understand, the backups are stored within the CSA itself, it something happen to it and I can not access it..I'm toast!

 

Any help is appreciated.

Best.


Different IP when brokering new CSA cert

$
0
0

As part of my provisioning template, I have an action to broker the CSA cert.  All is successful and the .crt, .csr and .key files show up in the client's cbaroot\broker folder. 

 

I took a freshly configured laptop home with me and tried running an inventory scan which failed.  I brought up the brokerconfig utility and tested it which failed.  When I checked the CSA information in the brokerconfig utility, I noticed that the IP address was not correct for the publicly facing IP of the CSA.  I corrected the address and was successful when testing the CSA connectivity through brokerconfig.

 

On the core server, Configure - Manage Cloud  Services Appliances tab shows the correct IP address for the CSA.  The client connectivity settings show the FQDN of the CSA.  Any ideas as to why this is happening and how I can correct this on the clients?

 

LANDESK 9.6 SP2  CSA v4.3 with latest patches

How to submit new security issues

$
0
0

Hello All,

 

I just wanted to know how and where to submit new security vulnerabilities identified on LANDESK.

 

Regards,

AbhiMomed

Distribution through a CSA

$
0
0

This is probably a stupid question, sorry im kind of new.

     Im setting up a sandbox agent to practice pressing out patches and software without messing up anyone's clients. The problem is my sandbox agent does not exist on the same network as the Landesk server itself. I was able to retreive the broker certificate using BrokerConfig, so i know that there is a bit of communication between the agent and the server. In the server, i can also see my new agent listed under All devices, but it's saying there is a communication error with my workstation. (it's got the little red circle icon next to it, i assume it's an error cause by the restricting of communication through the CSA?)

 

The main problem is that whenever i try to press an update or software to the sandbox agent; it fails. Usually leaving behind error code 1110 or just making the policy availible. What do i need to fix so that I can practice Patching and software distribution?  Thanks, and sorry if this is a dumb question.

Loading Branding to the LANDesk CSA

$
0
0

I was hunting around for how to change the branding on the CSA and found a bit of info here: https://community.ivanti.com/thread/28464

But figured I'd share a quick write up I made for my self:

 

First enable SSH on the CSA, detailed info here: https://community.ivanti.com/docs/DOC-2818

 

Open Putty and WinSCP to you CSA address/FQDN

 

Log in as admin in both WinSCP and Putty

 

Using WinSCP load the logos you need to change to /tmp

 

Then in Putty run the following 5 commands:

 

sudo cp /tmp/landesk-banner.png /opt/landesk/broker/webroot/allowed

 

sudo cp /tmp/landesk-banner.png /opt/landesk/broker/webroot/gsb/images

 

sudo cp /tmp/landesk-logo.png /opt/landesk/broker/webroot/allowed

 

sudo cp /tmp/landesk-logo.png /opt/landesk/broker/webroot/gsb/images

 

sudo cp /tmp/logodk.gif /opt/landesk/broker/webroot/allowed

 

Refresh the CSA webpage to confirm they have loaded, if they have not loaded reboot the CSA.

 

You may not need to change all those logos but I wanted to. The "landesk-banner.png" is the one that I would this most people would want to change.

 

I just did a quick and dirty MS paint remake of the logos for my needs, not sure if you could use larger ones or not.

 

This is the first time I have applied this to our CSA but from what Carlos said in his post you will need to do this when you update your CSA as well.

 

Props to carlos for the thread I found and Sebastien.Felix for the direction, as Sebastien said this is not supported but doable.

Where to submit new security issues

$
0
0

Hello All,

 

I just wanted to know how and where to submit new security vulnerabilities identified on LANDESK.

 

Regards,

AbhiMomed

Viewing all 134 articles
Browse latest View live


<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>