Jump to content

bbraunstein

Members
  • Posts

    135
  • Joined

  • Last visited

  • Days Won

    5

Everything posted by bbraunstein

  1. Have you tried following this: hxxp://help.eset.com/era_deploy_va/62/en-US/index.html?introduction.htm? The MDM Appliance Configuration steps can also be found there too
  2. Here are my installed packages for QtWebKit: [root@vm-eset ~]# rpm -qa | grep qt qt-devel-4.6.2-28.el6_5.x86_64 qt-sqlite-4.6.2-28.el6_5.x86_64 qtwebkit-2.1.1-1.el6.x86_64 qtwebkit-devel-2.1.1-1.el6.x86_64 qt-mobility-1.1.3-2.el6.x86_64 qt-4.6.2-28.el6_5.x86_64 qt-x11-4.6.2-28.el6_5.x86_64
  3. I also want to add that SMTP is definitely correctly configured, since I was able to receive the 'SMTP Test Configuration' email.
  4. Hey Marcos, I had some free time today and went ahead to configure SMTP on the ERAS. I ran into a bunch of errors on ReportPrinterTool when rendering the report because libQtWebkit.so.4 was not found. I was able to download Qt Webkit from EPEL repos and move away from this error, but now I'm stuck at this error: 2015-11-05 20:12:53 Error: CReportPrinterModule [Thread 7f2ce7fff700]: ReportPrinter: ReportPrinterTool exited with: loaded the Generic plugin <EOL>can't make "generic.orientation" because no QAccelerometer sensors exist <EOL>can't make "generic.orientation" because no QAccelerometer sensors exist <EOL>can't make "generic.orientation" because no QAccelerometer sensors exist <EOL>Failed to print report with: QtReportPrinter: Operation timeout [code:20] 2015-11-05 20:12:53 Error: CReportsModule [Thread 7f2d011f4700]: ReportPrinter: ReportPrinterTool exited with: loaded the Generic plugin <EOL>can't make "generic.orientation" because no QAccelerometer sensors exist <EOL>can't make "generic.orientation" because no QAccelerometer sensors exist <EOL>can't make "generic.orientation" because no QAccelerometer sensors exist <EOL>Failed to print report with: QtReportPrinter: Operation timeout [code:20] I'm having trouble locating what QAccelerometer is and moving past this error. My ERAS is 6.1.33 installed on a CentOS 6.6 x86_64 VM.
  5. Hey Guys, Strange issue developed here today. I have a new user who uses a Macbook Pro with El Capitan installed. I installed EEA 6.1.16 and ERA Agent 6.2.166 on the client computer. After a few days, he reported to me that a random amount of websites fail to load for him, but only when he connected to the Internet via Thunderbolt-to-Ethernet adapter. While he was connected to WiFi, the issue did not exist. I tried all browsers (Safari/Chrome/Firefox) and the issue persisted. I did a tcpdump and it shows all GET requests were successfully loaded, but the actual visuals (HTML/CSS/JS) of the webpages did not load. It was a blank page. The ESET logs also did not show any errors or records of sites being blocked. I even tried swapping the Thunderbolt-to-Ethernet adapter thinking maybe it was just faulty, but nothing changed. It took me most of the morning, but I discovered that the root cause was Web Access Protection on EEA. As soon as I disabled this, the sites loaded up fine. For example, one of the sites was codepen.io Even though I more or less figured out the root cause, I want to know why this is occurring. I have other OS X users with El Capitan installed and the same versions of EEA and Agent that do not have issues hitting that site. And more confusingly, why would this issue only show itself on the WIRED connection and not WiFi? The WiFi is a different network than my internal LAN, but it's obviously not a firewall issue on the network since after disabling Web Access Protection, the device can access the site. The policies are the same for my OS X users, so it also makes no sense why my other users can hit the site, but not this particular one. More info on the device: 15-inch MacBook Pro with Retina Display 2.5GHz Quad-core Intel Core i7 16GB DDR3L SDRAM 512GB Flash Storage Intel Iris Pro Graphics Thanks.
  6. Hmm... 11 months and I was never aware of such a feature. I think this is telling of the User Friendliness of the Web Interface for us. I was I easily spend 1-2 active hours a day on ESET and never saw this. It should totally be made clearer that this is a binary intended for other ERAS only. It's more confusing when it's generated as a .txt file and people like me lead to think something is wonky. I wonder how many people are also unaware. So, I went to generate a Report but I also noticed that there is only 'Email' or 'Save to File' option. I don't have my email settings configured yet, but it would be nice to be able to generate a file and send it directly through the ERAS, rather than needing to log in remotely to the server to pull the file (or log into my Email Web Interface). Extra steps seem kind of pointless IMO. Either way, it's still a neat feature. Thanks for clarifying it Marcos.
  7. This is something that has annoyed me since ESET 6.x was released in December of last year. There is no functional way to export generated reports. Many times I would like to present a report of infected computers with the path and their infection type to those users. Every time I attempt to export, the report is corrupted and outputs a mixture of Chinese and unknown characters. My server is CentOS 6.5 and ERAS is 6.1.33. I've been able to replicate this on the latest versions of Chrome/Firefox/IE on Linux and Windows 7. It would be really great to have this functionality. I even attached the file in question below. Report Templates export 2015-11-03 13-06-42.txt
  8. Thanks for the fast reply. What solution do you have in place?
  9. ERAS 6.2 has lot of bells and whistles that seem really great. I'd fully upgrade 6.1 to 6.2 if there weren't concerns of performance instability on client devices. Installation of the hotfix is not an option at this time. 1. Would it be possible to upgrade ERAS and EEA products to 6.2, but continue using 6.1 ERA Agents on client devices? 2. Are there any known issues with 6.1 Agents working with EEA and ERA 6.2? 3. Would any new/old features fail to work properly because of the version mismatch? My ERAS is deployed on a CentOS 6.5 VM. Client devices are a mixture of Windows, OS X, Linux workstations and Linux servers. Thanks.
  10. I gotta tell you, this makes me really happy to hear. The only way this can be implemented properly if the ERAS pulls the logs like it did in previous versions. That way we can review which files were deleted and what threats are floating around on our networks. Also, it gives file accountability so that Susan in HR can't blame ESET for deleting a file when she just simply forgot to save the damn file.
  11. Your only options are to have the clients send you the logs or you physically walk over to the computer.
  12. Nope. Client logs are not fetched at all by the server. Same goes for the actual Remote Administration server as well: the Web Console does not pull the logs, even if the Web Console is installed on the same server as the ERAS. It makes troubleshooting from either end, client-side and server-side, a pain in the .
  13. I upgraded from version 5 to 6.1 back in December for the North American release and that was before it was February Global release most of you are familiar with. I don't need to describe the endless issues and hurdles we've had to overcome since then. Even though the new release looks shiny and new, I've held back from upgrading to 6.2 for a variety of reasons. I won't go into detail because they've all been said numerous times across these forums since version 6 was initially released. And quite frankly, I'm glad I held back. The growing thread on 6.2 agents causing freezes is a major red flag. To think that client computers will be freezing and having performance drops randomly from this product is crazy. Even more crazy is the fact that ESET is pushing the blame from their buggy product to a missing optional Windows update. So now we need to create and deploy a GPO to install this optional KB? Why would this need to be required? Shouldn't the product be tested and functional on a fully up-to-date system ? I have my current build of ERAS running without any issues and I know how to quickly resolve any errors that may arise. I don't want to have to put myself back to square one again by upgrading. To the others who have not upgraded yet, how long do you plan on running the latest build of ERAS 6.1 before upgrading, if at all? To those who have already upgraded, thanks for your bravery and perseverance.
  14. Hey dlaporte, I never had a scenario where I needed to start from scratch, but whenever I updated the Agent on clients, I just deployed it normally. If you look at the source code of the installers, you'll see that they check for an existing instance of the Agent. If it does, it will update/upgrade/repair depending on the state of the Agent. Before you stress yourself out trying to figure out how to uninstall, I'd suggest deploying directly. I believe the clients should immediately point to your *new* ERA server.
  15. Have you begun deploying Agents to your clients? By default, the Agent Policy is to check in with the server at 20 minute intervals. Sometimes depending on the task, you may need to wait two intervals in order to get a fully complete update. What do you mean the clients are not being seen? What have you done already?
  16. Well steps 2 and 3 are easy enough: Installed software . Application Name == ESET Remote Administrator Agent Installed software . Application Name =/= ESET Endpoint Antivirus (or whichever product you use) I don't know if there is anyway to test the online/offline status of computers. If a computer is offline, it reports fine without any errors. The 'Last Updated Time' shows when it last checked in with the server. Until the Agent talks to the Server, there's no way the Server will know if it's offline, virus sig db out of date, OS is up to date, etc. What are you trying to accomplish through this dynamic group? Maybe there's an alternate method.
  17. I may not have the answer you're looking for. I basically took the all_in_one.iso and configured/installed each module individually. My ERA server is installed on a CentOS 6.5. It wasn't easy or simple and required a lot of debugging. When I originally set it up, I was using the earliest version, the North American version released in December. There was hardly any documentation at the time, so your process could be easier or different due to the later version.
  18. So I found out that you can manage the clients through the ELA, so thanks everyone for the help. +1 Also, the checkboxes are missing so I can't deactivate any computer?? I tried multiple different browsers: Chrome, FF, IE and nothing changes on each. Did the developers seriously put out the ELA without the checkboxes? Good going guys!
  19. Hey guys, It's been a while since I posted anything but I got a strange issue on my end. In License Management, the total 'Online Activated Seats' lists 72, but when I tally the number of devices in all of the dynamic and static groups, I only count 70. So there are two devices that are unaccounted for or ERA forgot how to count . We recently went through a merger and there was a lot of shifting around, so I'm sure the miscount could be due to a licensed computer that was unplugged from the network. Is there a way for me to see a list or generate a report of all the licensed devices, rather than a number? Thanks!
  20. I believe the only way to "clear" the logs is to rescan the devices. In your case, you may need to create an exclusion for the false positive, wait for the policy to update across your devices, and then do another scan.
  21. Hey ingo! This is a big complaint that's been said many times here on the forums. This was a feature that was available in previous versions of ERA. We've managed to come up with a workaround to generate a report that provides all the information we're looking for and more. I'd show you a screenshot of my setup, but the upload feature is being weird.\ Just create a new Report Template and under Data, add these columns: Computer name Object URI - this shows the path of the infected or problematic file(s) Antivirus Threat - the actual threat type you already see (e.g. Win32/Trojan.Q) You can add additional columns if you wish or require, but I prefer those three because it gives the information that I need. Also, you can't modify the sizes of the columns so if a threat has a long path, it gets truncated as more columns are added.
  22. Hmm.. Which browser are you using? Is it fully up to date? I'd try using a different browser first and seeing if that resolves. Also, what's your environment? Server OS and version? What version of ERA server? etc.
  23. I've never heard of anyone complain about this since 6.1.365.0 was released. Correct me if I'm wrong, but isn't that the global release that rolled out in February-ish? ESET has new updates for all of its components, version 6.1.530.0 for the Server. You can try looking there.
  24. Hey Megachip, in regards to your last question about restarting the Agent on OS X: sudo stop com.eset.remoteadministrator.agent sudo launchctl start com.eset.remoteadministrator.agent I've had success in the past pushing those commands as a 'Run Command' task to OS X clients.
  25. Are you using version 6.x? Unfortunately, the ERA Agent does not push logs to the ERAS. You'd need to check the client manually (or have them send the logs to you). Windows logs: C:\ProgramData\ESET\RemoteAdministrator\Agent\EraAgentApplicationData\Logs OS X logs: /Library/Application\ Support/com.eset.remoteadministrator.agent/
×
×
  • Create New...