Jump to content

kvngselassie

Members
  • Posts

    27
  • Joined

  • Last visited

Posts posted by kvngselassie

  1. On 7/22/2022 at 4:52 PM, Marcos said:

    Please refer to https://help.eset.com/protect_admin/91/en-US/update_third_party_components.html as to what version of components is considered outdated.

    @Marcos I see the 3rd party components mentioned above, but what about users who don't have the means to immediately upgrade their other components to the stated components regarded as up-to-date components my case for example; i don't the means to purchase a new Windows Server 2016 or 2019 License...

  2. Hello All, I recently upgraded my ESET Protect to the latest version 9.1, after the upgrade I keep getting the alert in the image attached below.

    I have the following components as follows: Windows Server 2021 R2 and Microsoft SQL Server 2017 Express. what is the best fix to this error... I also cross-checked with your KB for supported OSes and Windows Server 2012 and 2012 R2 are listed as supported and are not yet in EOL.

    Also, Microsoft SQL Server 2017 Express is as recent as MSSQL Server 2019 Express and higher than MSSQL Server 2014 Express.. so why do I keep receiving alerts that my 3rd Party components are outdated.

    Kindly give me a solid fix to this issue.

    Note: I can't upgrade my Windows Server 2012 R2 to Windows Server 2016 or 2019 for now...

    @Marcos and team kindly support.

    image.png

  3. Hello @Marcos and Team,

     

    I will want to know how to configure the Micro Program Component Update (MicroPCU) in an environment which is completely closed to the internet with 2 update servers acting as ESET Update Servers On-Prem for load balancing and Bandwidth saving purposes. 

    1. Do I have to use the {hxxp://IP_Address:2221} method in the Component Update Section

    2. Do I have to use the auto-select feature in achieving the required outcome.

     

    Note: the environment is completely closed to the internet.

  4. @Marcos can u please clarify for me the actual ports ESET RD Sensor uses to scan for Rogue devices, we currently have issues of our On-Prem ESET Protect Server initiates SSH Connection to other Hosts on our network and we are currently investigating this incident.

     

    Can you please give me a little insight on this?

     

    Is it possible for the server to automatically initiate such a connection and is it ESET related? 

  5. 7 minutes ago, Miami said:

    I understand your situation, but to me this really looks like some policy interfere with the default policy/configuration. What I would do is to check group membership of that problematic computer. Maybe it is a member of some dynamic group and gets special agent policy. If first connection is ok, it means something is doing a configuration change and if you have more Agent policies deployed it can happen that they interfere. 

    I am guessing that info about last applied policies can be still seen in client details, same as its group membership. 

    Related to agent connection issue, I experienced a, more servers in the server list configuration b, policy interference c, DNS configuration

    well noted @Miami, I will comb through the policies to see if there are any interferences there.... but the only policy currently applied is the agent policies with connection interval of 10secs... I will do my checks and get back to you... 

  6. 11 minutes ago, Miami said:

    I am sure you have already double checked your policies, but this looks like Agent is being reconfigured after some time. Maybe after first connection to the server is the default policy overwritten by a forced one or the one which is closer to the computer in you structure. Is there only one server listed in Agent server list configuration? 

    For testing purposes you could create a group where no policies would be applied. Add a computer into that group and manually apply all policies that are applied to these problematic computers.

     

    @Miami

    the issue is same policies are applied to devices in the console however some devices are experiencing this issue. they reset to localhost after some few minutes of connecting to the server.

    i raised the issue with our area support and they claim its because the database size is up to limit... but currently the total size of the DB is not up to 1GB. 

  7. On 11/9/2020 at 1:21 PM, MartinK said:

    Please double check that there is no configuration policy in your console that would do this. Also check that there is no remote deployment task, or any other deployment mechanisms actively used, as installation repair is another method how AGENT might be redirected.

    @MartinK

    There are no configuration policies in the console, all agent related policies are applied to separate groups... Also the only remote deployment task running is the agent upgrade and endpoint upgrade task... please not this also happens to devices with the latest version of the agent (7.2.1266).

  8. Hello @Marcos,

    I am currently running ESMC from my cloud environment, unfortunately my SSL certificate that allows me to view the web-console will expire in two days.

    Can you please assist with how to replace an existing SSL certificate with a New one be it that we wouldn't want to renew with our current 3rd Party SSL Certification Authority.

    Thank You.

  9. Thank You @Marcos, but my main problem is I want to understand what the New Windows 10 21H1 comes with. I have been trying to get a hold around it but no useful resource is available to talk about the features in the upcoming Windows 10 21H1. Most of our users/clients will most definitely ask questions in this regard.

    Thank You.

  10. On 7/21/2020 at 5:50 PM, Marcos said:

    We have not released an uPCU application update for Endpoint yet. It should be ready for release after the upcoming update of ESMC in Q4/20. It's possible that the mirror tool will require an update to support uPCU. 

    @Marcos

    unfortunately my clients do not use the Mirror Tool for their mirror updates, they use the inbuilt mirror function in the security products to implement the mirror update for their endpoints. 

     

    Reasons I am asking this is because, traditionally ESET Home products can upgrade to latest versions when it's available without having to download from the ESET website to upgrade to latest versions.

  11. Hi Marcos,

    I have a little concern, can PCU files be distributed over mirror update which will in turn automatically update program versions when new versions are available.

    And also how long will it take for version updates reflect on nodes in an Apache Http Proxy environment?

  12. 4 minutes ago, Marcos said:

    If users connect through a proxy in the office and directly at home, you could use a single update profile. In the adv. setup -> Tools -> Proxy server, set up the proxy server and enable the following option:

    image.png

    In that case if connection through the configured proxy fails, the product will attempt to connect directly (at home).

    well noted, but in this case clients update directly from the mirror path without going through a proxy and would want to be able to update from the internet when at home... 

    followed the process from KB6880 but wasn't successful.

     

  13. 1 minute ago, Marcos said:

    1, First make sure that networks are configured in the network protection setup:

    image.png

    2, Create desired update profiles with different settings.

    3, Use the automatic profile switching feature where you can bind an update profile to particular networks:

    image.png

    What about centralized management where you can't do this for all clients roughly about 3000 endusers

  14. Hi Team,

    I am currently trying to configure a dual update mode for a client who is using mirror update but also want to be able do updates when his users are off the enterprise network.

    I have followed the manual from the KB and it keeps failing when the user switches from the enterprise network to his personal internet.

    Its very urgent and I will need help with that.

    Thank You.

  15. 1 hour ago, Marcos said:

    For 6000 clients I would recommend using a dedicated server running the http proxy, especially if you would like to extend your license and take advantage of ESET Dynamic Threat Defense to substantially improve protection of your endpoints against ransomware and other malware.

    well noted... 

     

    Thanks for your support. 

  16. 15 minutes ago, Marcos said:

    1, Automatic program update will be supported. While the differential so-called uPCU update has been implemented in our security products for a long time, ESMC is not prepared for it 100% yet. It is one of our top priorities to have this in the next version of ESMC also with regard to Windows 10 21H1 update which will require Endpoint 7.3 or newer.

    2, Sending a software install task to clients and getting Endpoint updated shouldn't take long as long as you use a http proxy to cache updates and installers. What could happen is that you didn't use an http proxy and you sent a software install task to many clients at once. Then agent on each client started to download installers which congested your Internet bandwidth.

    3, Http proxy generally helps with caching update files and installers. It helps save traffic when you send a software install task, when clients download updates and will also help minimize the traffic when we will release a uPCU program updates in the future as well.

    Thanks for your response. 

    My last question;

    Is it possible to have a high availability Apache Http Proxy in the ESMC environment to help reduce traffic to just one dedicated Apache Http Proxy with endpoints of over 6000 nodes?

    If there is a possibility, what are the requirements and configurations to get it done. 

×
×
  • Create New...