Jump to content

Arekn

Members
  • Posts

    14
  • Joined

  • Last visited

Posts posted by Arekn

  1. 20 minutes ago, MartinK said:

    In order to recover connectivity of already installed clients, it would require you to restore ESET PROTECT certificate and respective CA certificate - where both of them are store in PROTECT's database - so it depends on what means "crashed" .

    RAID where our instance of ESET PROTECT was is unrecoverable.

    Anyway, it seems I have found a .bat file that I exported from the server before it crashed. Does it contain the certificates? Is it possible to restore the connection without reinstalling the agents if I have this file?

  2. Our server with ESET PROTECT has crashed and we weren't able to recover it. Unfortunately we didn't have certificates backed up. We have setup a new server but obviously agents aren't connecting. Is there a way to change certificates on all agents without walking up to each computer individually and going through the installer steps? Is it in a file somewhere that we could change with Powershell?

  3. 14 hours ago, MartinK said:
    1. You do not need to create new certificate in case old one contains "asterix" in common name, i.e. in case it was signed in a way that it can be used on new hostname. If this is confirmed, you can re-use existing SERVER certificate without creating new one. Once client are migrated, I would recommend to create new certificate on new ESMC, to be sure it has latest possible parameters and validity is extended.

    By SERVER certificate you mean peer server certificate? Or CA? Because I can't find a way to import a server peer certificate that I exported from the old server. I can only import CA.

  4. I'm following this guide:

    https://help.eset.com/esmc_install/70/en-US/clean_installation_different_ip.html

    However when I try to create a new certificate on an old server, it doesn't let me. I get an error:

    Quote

    Failed to create certificate: Creating and signing peer certificate failed. Check input parameters for invalid or reserved characters, check certification authority pfx/pkcs12 signing certificate and corresponding password.: Trace info: CreatePeerCertificate: PFXImportCertStore failed with The specified network password is not correct. Error code: 0x56

    Does it mean CA requires a password? What if I don't remember my CA password?

  5. I want to group all computers in our network by their name. They all are named according to a set scheme. I currently manually create a Dynamic Group Template for every group, the templates only differ by their prefix (Device identifiers . Identifier value). Is there a way of importing a list of prefixes to create a list of Dynamic Group Templates so I don't have to create every single one of them manually?

    In the attached file you can see the example setting I have.

    template_prefix.PNG

×
×
  • Create New...