Jump to content

eornate

Members
  • Posts

    149
  • Joined

  • Last visited

Posts posted by eornate

  1. 18 hours ago, MHRSFI said:

    Hey guys
    I want to make an update policy for my clients so if the local update server was available they update from that server but when it was not available (like outside of network) they get updated from ESET servers.
    How should I create this policy?

    As i know, by default, clients will update database via proxy of the Eset protect server, which called Eset Bridge via port 3128. If it was disabled, you can create the new policy to use.

    image.thumb.png.3e58b2349d99813eebf07649a4d36456.png

    If clients can not communicate with Eset protect server, it will update direct with internet ( out side of network).

    Hope it will help.

     

  2. 14 hours ago, Marcos said:

    It appears there are no errors logged in the Event log. Could you provide a screenshot of the error?

    Also please enable advanced network protection logging under Tool -> Diagnostics prior to rebooting the server. After the error has occurred after a reboot, disable logging and collect fresh logs with ESET Log Collector. There should be some etl files created in C:\ProgramData\ESET\ESET Security\Diagnostics.

    Hi @Marcos,

    The customer removed version 10 and installed version 11.I'll note this case for in the future.

    Thanks your support.

    z5429464752539_7a1701c6f125581fd55e5a68fc8fa41e.jpg

  3. 11 hours ago, Marcos said:

    It is a license for ESET Server Security. Couldn't it be that it was installing during an RDP session? In such case the firewall remains disabled until you configure the trusted zone and re-enable it. If that's not the case, olease carry on as follows:

    1. Enable advanced logging under Help and support -> Technical support
    2. Reboot the machine
    3. Reproduce the issue
    4. Stop logging
    5. Collect logs with ESET Log Collector and upload the generated archive here (only the ESET staff can access attachments).

    Hi @Marcos ,

    Thanks your reply.

    However, the customer installed the version 10 ( as i know it has no firewall) so what the reason with "Firewall is non functional" ?

  4. Hi everyone,

    As far as i know, with the product "ESET Server Security for Microsoft Windows Server" will have no feature "FIREWALL" on version 10, and with the version 11 , this feature have to active with the license "The Firewall is available only if you have an active ESET PROTECT Entry Tier subscription and above"

    image.png.210e1533cac6db86c0098c3f88a6483a.png

    My customer just bought the license standalone ( 1 license for file server, it called Eset small business security) and install with the version 10.0.12015.2, however it alerted the "Firewall is non  functional. " I don't know this license will match to what the Tier in Eset protect Essential/Entry or above. Could any one please explain for this one ?

    Thanks in advanced.

     

  5. 2 minutes ago, Kstainton said:

    I would advise reporting this issue via https://www.eset.com/int/support/contact/ with these logs: https://support.eset.com/en/kb7123-eset-encryption-diagnostics-tool as we have not had this reported in the past, nor have we encountered this during any internal usage or testing of EFDE.

    However, I would suggest that they setup a Workstation with the default policy with EFDE (Which they likely have done since decrypting it after they were unable to use the Recovery Password) and simply attempt to use the Recovery Password 5 times to see if they can replicate this issue now.

    Thank you.

    Thanks your reply, i will inform customer.

  6. On 3/1/2024 at 9:13 PM, Kstainton said:

    Once you decrypt this machine and re-encrypt it with the policy you have shown, it should be take on the policy you have shown and thus be using "Automatically generate new recovery password" as enabled. I haven't seen an issue before whereby it is set before FDE and not automatically regenerated unless it hasn't been able to communicate with the ESET Protect Console.

    Thank you.

    Hi @Kstainton ,

    How can we know the root cause on this ? My customer has the same issue but he said he just use the Recover password one time . Now he have to decrpyt and want to know the root cause ?

    Thanks,

  7. On 5/2/2024 at 12:00 AM, Marcos said:

    Since this is an English forum, we kindly ask you to post in English.

    Please carry on as follows to resolve the issue:

    1. stop the PROTECT Server service

    systemctl stop eraserver
    
    • check if the service has been stopped
    systemctl status eraserver
    

    2. install the MariaDB ODBC driver

    yum install mariadb-connector-odbc
    
    • check if the driver has been correctly installed
      yum list installed | grep mariadb
      mariadb-connector-c.x86_64                3.2.6-1.el9_0                       @appstream
      mariadb-connector-odbc.x86_64             3.1.12-3.el9                        @appstream
      

    3. check the alias of the ODBC driver and search for the following section:

    less /etc/odbcinst.ini
    
    [MariaDB]
    Description=ODBC for MariaDB
    Driver=/usr/lib/libmaodbc.so
    Driver64=/usr/lib64/libmaodbc.so
    FileUsage=1
    
    • verify if such file is present
    ls -la /usr/lib64 | grep -I libmaod*
    
    -rwxr-xr-x.  1 root root    326688 May 25  2022 libmaodbc.so
    

    4. modify the "StartupConfiguration.ini" - replace the "MySQL ODBC 8.3 Unicode Driver" with "MariaDB" so the final configuration file will look like follows:

    vi /etc/opt/eset/RemoteAdministrator/Server/StartupConfiguration.ini
    
    DatabaseType=MySqlOdbc
     DatabaseConnectionString=Driver=MariaDB;Server=127.0.0.1;Port=****;User=***;Password={****};CharSet=utf8;NO_LOCALE=1;NO_SSPS=1;Database=era_db;
    

    5. start the PROTECT server service

    systemctl start eraserver
    

    Hi @Marcos, i tried to deploy again with this VM ( i snapshot this VM and backup database before) but it was not successful and appear the error :image.thumb.png.ae836e4e27f22056c06c9517a3cdc4d1.png

    image.png.4afddff3f1ae262011cb0d069e281826.png

    How to i can restore my server ?

     

    image.png

  8. On 5/2/2024 at 6:59 PM, CNNS said:

    Might be Off-Topic but the provided Steps from Marcos also helped to get the Webconsole Login working again after an OS-Update of the Rocky VA.

    Error Message upon Login was:

    Login failed: Connection has failed with state "loginConnectionStateNotConnected"

     

    I have the same issue after done those steps from Marcos.Now i can not log in the webconsole. 

    image.thumb.png.b0c5f4290a84efff68c3815e9842891b.png

  9. Hi everyone,

    I have the issue with URL list management.

    I have the rule block all :  rule block with *

    image.png.ca0a89cb422a8da79417e2a0b46dd96c.png

    And rule allow with :

    image.png.81c714072cff610afe580d56c4b5c4b0.png

    However, when i access the url, which was allowed , the content in this site was not load pictures :

    image.thumb.png.79541a3b4f5d30924826c7b3a719a966.png

    Anybody can help me ?

  10. 4 hours ago, eornate said:

    Hi everyone,

    On my cloud, the feature "Network isolation" is not available

    image.png.459fe8f074f3a73455d80c6fdf55eda3.png

    I have to into the ESET INSPECT to use this feature.

    On the on-prem, i can use this one 

    image.thumb.png.b25487f6ff08942dc5d3e3f73e916e7c.png

    How to i can use this one on cloud ?

    At current time, i've used this feature on cloud. Is there problem and it've fixed ?

    image.thumb.png.81cf44f33db7bae508ed029b8ba9af85.png

  11. 2 minutes ago, Marcos said:

    The answer is in the article you have quoted, ie. the maximum size of submitted files is 64 MB. Larger files are not analyzed by ESET LiveGuard.

    Hi @Marcos,

    Thank your reply.

    Yes, I know.I mean that which the file > 64MB -> how to ESET would protect endpoint with this file (unkown before) ?

  12. Hi every one,

    I have a question about Eset live guard.

    What is the maximum size of a file which can be sent?

    ESET Security products can submit files up to 64 MB in size. You can define a maximum size to send in your policy for ESET LiveGuard Advanced.

    So if with the file greater than 64MB, how to ESET analysis this file before use ?

    Thanks in advanced.

  13. Hi everyone,

    Today, after migrate Eset from OVA centos 7 to new OVA rocky 9, i experienced the issue : the client was appear duplicate on the portal, i just have only one this client and have no clone machine. Have you been ever experiencing with this ?

    And i have a question with task "Reset Cloned Agent ", i was not use the task before and i don't know when use this task although i read the guide.Anybody can explain to me  for the scenario ?

    Thanks in advanced.

    image.thumb.png.dd7b2e84448471dcd9aca5e3c2dd7a4d.png

    image.thumb.png.e5de2e421d93585be51ce1cec2d31b3d.png

  14. 1 hour ago, kurco said:

    Hi eornate,

    it look like enhanced security is enabled and package manager is unable to check GPG keys. Our package isn't signed and therefore installation is failing. You should be able to install efs manually, but you need to skip gpg check. 
     

    sudo dnf install --nogpgcheck ./efs-10.2.41.0.x86_64.rpm

    Regards,
    Kurco

    Thanks your reply. 

    It worked.

     

  15. Hi everyone,

    Today , i tried to install the efs-10.2.41.0x86_64.rpm on my server however it can not.

    I used task on eset protect server and tried install manually on server but the both have the same issue with error :

    image.png.35acb9a3e4818f3fc2b1f901080b9d6d.png

    I tried use "dnf clean packages" and reinstall but it same the error.

    How to i can install efs for my server ?

    Thanks in advanced.

×
×
  • Create New...