Jump to content

Search the Community

Showing results for tags 'groups'.

  • Search By Tags

    Type tags separated by commas.
  • Search By Author

Content Type


  • ESET General Forums
    • ESET Announcements
    • General Discussion
    • Forum FAQ's and Rules
    • Submit a virus, website or potential false positive sample to the ESET lab
    • Quick questions by guests (registration not required)
    • WeLiveSecurity.com
  • ESET Home User Products
    • ESET Internet Security & ESET Smart Security Premium
    • ESET NOD32 Antivirus
    • ESET Cyber Security (for Mac)
    • ESET Cyber Security Pro (for Mac)
    • ESET NOD32 Antivirus for Linux Desktop
    • ESET Products for Mobile Devices
    • Web portals
  • Malware Detection and Cleaning
    • Malware Finding and Cleaning
    • ESET Standalone Malware Removal Tools
  • ESET Business User Products
    • Customer Research Opportunity
    • Gartner Peer Insights review invitation
    • ESET Cloud solutions
    • ESET Endpoint Products
    • ESET Products for Windows Servers
    • ESET Products for Linux Servers
    • ESET Products for Mobile Devices
    • Remote Management
    • ESET INSPECT (Detection and Response)
    • ESET Products for Virtualized Environments
    • Encryption
    • ESET Licensing for Business
    • Other ESET business products
  • ESET Beta Products
    • ESET Beta Products for Home Users
    • ESET Beta Products for Business Users
  • Slovak and Czech forums
    • ESET NOD32 Antivirus, ESET Internet Security a ESET Smart Security Premium
    • Produkty pre mobilné zariadenia
    • Vírusy a iné hrozby
    • Ostatné


  • Files
    • Early Access
    • EES / EEA 9 BETA
    • Miscellaneous
    • Outlook plugin BETA

Find results in...

Find results that contain...

Date Created

  • Start


Last Updated

  • Start


Filter by number of...


  • Start





Website URL






User type

  1. Hello, With ERA 6.2, I added a mapped domain security group based on the SID and it is working fine (I can browse my AD to find the group). This group is enabled in ERA. But when I want to log on in the console with a member of the AD group, the credentials are not recognized. What am I missing? Thanks.
  2. I'm currently stuck with a v5 remote admin console (it has to support endpoint 4 for a win 2000 server) and I'm trying to find a way of assigning update policies based on a parametric group. I've created the group and this is populated with the correct clients and I have created and saved the update policy under the Windows Desktop v5 folder of the configuration editor but I can;t find a way of applying the policy to the group automatically. The end result that I am trying to achieve is to have all laptops (all clients whose hostname matches *LT*) get an update profile that points it directly to the ESET servers whilst everything else points to the local ESET admin server. Am i going about this the correct way? Is this actually possible in v5? Thanks Matt
  3. Hi all, I've just managed to upgrade ERA Server and agent on linux server to the latest 6.x version by a client task (Debian server has got his agent, so i could update all via web console), but i'm not able to manage lan clients outdated products. I'd like to create a dynamic group like that one from the dashboard (Eset applications - Outdated products) and attach it a trigger (something link "when you get computer with product outdated install new version of eset agent and eset enpoint antivirus), but if i check for dynamic groups I can only create a trigger looking for a specific version: this mean that every time Eset release a new version of endpoint products I'd have to manually change version if statment. Any suggestion or proposal for ERA dynamic group to behave link dashboard outdated products report?? (go and check online for the latest available version, if greater that one installed, do updates) Attached to this: dashboard screenshot showing outdated products dynamic groups screenshot, not showing outdated products in "problematic computers" BR Mirko
  4. We just switched over to ERA 6 + Endpoint Security 6.x, and I'm having some issues with the new Policy Manager. I simply want to set up a configuration default which is reasonable for our company, but still allow end-clients to modify their settings. The problem is, if I create my own policy, tweak the settings, then apply it to the Static Group "All", the configuration is applied, but those settings are also turned to "Read-Only" on the client side. How do I make the ERA apply policies on clients without turning the setting read-only? The built-in policies don't seem to make their settings Read-Only? Unfortunately hxxp://help.eset.com/test/era_admin/6/en-US/index.html?admin_pol_policies_wizard.htm hxxp://help.eset.com/test/era_admin/6/en-US/index.html?amin_pol_assign_policy_to_group.htm hxxp://help.eset.com/test/era_admin/6/en-US/index.html?admin_pol_flags.htm don't mention anything about Read-Only settings. Any ideas? I need to set Trusted Zones, Excluded Paths, a few firewall rules without locking it all down. Thanks! -- .marius
  5. Hi All, We're currently on ERA v6.4 and starting to roll out the Web Control feature in one of our policies. During the creation of a rule, I click to edit the "user" list and it asks for user SID. I click the link to search for SID, and navigate to the correct user by name. However, once the user is selected, the user is again listed as the SID. Here's the problem: If I want to go back into the rule to remove a user or make any sort of a change to a user, I have to know their SID. Is something configured incorrectly or is this by design? Is my User Sync Task configured incorrectly? The very very odd twist to all of this is, I cannot get a custom report for web control logs to produce any information, but the Endpoint install is logging all blocks as they should (I have tried using each logging severity level, and still the same result). The one thing that is working correctly, is the blocking of websites. No problems there at all. Anyone have any input on this? Thanks in advance.
  6. Dear all! I saw this was on topic, but i still do not understand. I attach a picture to see my problem. We have so many duplicate entrys. We are using AD for computers synchronization. Sometimes, i ran Static group synchronization to make new computers appear in erac. This task collision handling is set to move. I saw i can make a task to delete not connecting/ not managed computers, but in my case, not sure how to proceed. If i understand correctly the "not connecting computer" means if the "last connected" column date is old and the not managed computer means the "status" column is a circle . If i go by the task not connecting, i have to pick a date, but look the picture, last connected time (pc-001) only in 10 day 3 entrys! My question would be how can i delete the duplicates, and why are they appearing? Because i ran the sync task? We do installs ONLY from erac, no manual installs. Additional info: we are using eras v6 just not updated these clients yet.
  7. Hello Team I have some clients installed with eea 6.4 and era 6.4 manage so i see some lock it say read only but i have some clients who dosent have any read only lock so how to remove this read only lock i attach image of lock symbol. Regards Vimarsh P.
  8. Hello I have a question to Eset crew about splitting write/execute attribute at access rights section. Our company thinks about central console for lots of smaller organizations which eploy many local admins and this feature is critical. Is there any chance to make it possible in near future ? Thx for reply
  9. Report Query- Can you create reports based alerts handled/marked as resolved over either a time period or since start of time? Most reports I can see is basically metrics on unresolved issues but I would like to see reolved issues and even time/date marked as resolved for metric purposes. Any help would be greatly appreciated.
  10. Hello, Is there any way how to move clients from group "Lost & found" to another static group by task? I know that, there is a server task "Static Group Synchronization", which have a 3 Synchronization modes. But I would like to create task, that move clients by another way, for example by computer name pattern. Thank for your help
  11. Is that possible to create a task - for example an Agent Deployment task - that gets executed automatically only on machines that newly added to a dynamic group? I know there is a trigger named Dynamic Group Members Changed. But it is my understanding it is invoked on all members when the contents of a Dynamic Group change. Am I correct? Any help would be really appreciated.
  12. Hi everyone We are using EES 6.4 on W10 64b, remotely administrated with ERA. The point is for a common/normal client(User1/ComputerA), I set up a policy where the GUI is on silent mode. So, User1 can't access or start EES. Now, if our helpdesk(User2) has to achieve some configuration on the computer, he logs in on an other Windows session. On the SAME computer (ComputerA), it's possible to allow User2 to acces the GUI? To resume : Is there any posibility to differenciate policy according the user on one computer? In fact when I asked for this particularity, 2 weeks ago to a member of the integration crew, he confirmed that it was ok to implement. Thank you in advance for your help Best regards
  13. Is that possible to create a task for example an Agent Deployment task that gets executed automatically only on machines that newly added to a dynamic group? I know there is a trigger named Dynamic Group Members Changed. But it is my understanding it is invoked on all members when the contents of a Dynamic Group change. Am I correct? Any reply would be appreciated.
  14. Hi, In earlier versions of ERA, we can set a network rule, based on public IP. Now, with ERA 6, in templates, I just can set a rule based on computer network adapter IP (LAN IP) So, I can't differentiate if a computer is inside or outside my internal network, because it could has the same IP addressing behind the NAT that my internal network. You can say: - Hey, make a different cert for the computers you need to differentiate! -, but that's not the solution, because I want computers to get internal policys if they are inside the network, and get external policys if they are outside. You can say too, that use DNS servers item, but anybody can change it. So, I would like to know, if it's possible to include in the template items (in a future version), the item "IP public". Thanks.
  15. I'm trying to create a dynamic group to run the ERA6.3 triggered uninstaller. I am migrating from Symantec Endpoint Protection 12 on Windows 7 x64 SP1. I've created a Dynamic Group template with AND (All conditions have to be true) Rules Installed software . Application name contains Symantec Endpoint Protection as well as Installed software . Application name contains Symantec. It doesn't seem to ever match and run the uninstaller. I end up with both SEP and EES running on the test computer. I can manually push the uninstall task on a computer and that does seem to work. What am I doing wrong here?
  16. I included an existing AD security group to the remote Administrator and the members can successfull login to era System. a new user was included in this ad group (as a member) last week. This user did not appear in the remote adminstrator as a Domain user in this specific Group. what is needed to get it working ? Best regards Harald Holz
  17. Hi, I want to build a Dynamic group to have all Notebooks in this group. I created a template like this: Device information, Device Model -> contains -> Latitude The devices have details information like this: Device --------- Manufacturer: Dell Inc. Model: Latitude E5440 But if I create a Dynamic group with this template I did't get any results. Where is the error? Maybe some can help me. Serverversion is: 6.3.136 Bye, Clouseau
  18. Hi, We have configured a Dynamic group based on an expressing where the application ESET Endpoint Antivirus = false. But the new clients that have an agent installed always show up in the Lost & Found container. I dont want them there beacause there are no correct policys on that container. The strange thing is that in the container view, wich is recplicated from Active Directory, the client is shown in its AD OU and in the Lost & Found container. In the lost & found container the client is displayed in Red and configurerd with an agent. The client in the origina AD OU is standard, like there in nog agent installed. So why does the Remote Administrator show them twice, one correct and one not correct besides the fact that it is displayed in the lost & Found container. thanks Tim
  19. Hi, I have a problem with era not binding correctly connected agents with computers that were synchronised from AD. I have constant problems with computers ending in lost and foud , even though a few days ago the were correctly assigned. I have tried static ip, dhcp updating dns records, dns scavanging and seriously nothing helps - Era still will put often machines in lost and found. How can i fix it once and for all ? Thanks, Dawid
  20. Hello, I'm trying to do some things with dynamic group but I'm afraid I missed something. Two issues, the solution is similar but I'm afraid it's nor possible in the current ERA version. 1. group with Windows Client OS - without Windows Servers or any other Servers.I guess I need expression with two rules: OS name contains Windows OS name (not contains) Server But not contains is not an option. So I created group of Windows PC and inside this group I make another two for Windows Servers and Windows Clients. But how to do it without inheriting? 2. in the same way I would like to create group with PC without NOD Endpoint or outdated NOD endpoint because in both cases I want to run client task to install new version of NOD Endpoint. Only way is to create two groups? One for "No NOD" and second for "Outdated NOD"? These two groups in the two groups from the previous point... This will end with huge amount of groups. I hope I missed some sollution but after reading manuals and help pages I'm not close to better solution. Thank you for any advics. Martin
  21. Can´t make Dynamic Group (v6) work with subnetwork template. I want to organize my clients with groups with IP subnets, like ou using Network IP addresses . Network IP addresses.IP subnetwork.
  22. Hello, ERA Version 6.1.444.0 installed on Windows Server 2008 R2 SP1 I have 2 issues with the rogue detection service: 1- As far as I can see, some computers in the list of rogue computers don't exist in any DHCP, DNS or AD tables. Where is the rogue information coming from? 2- I have many printers and routers in this list with the wrong name associated with the MAC addresses. When I move them to a Static Folder, they are removed from the rogue entry list (which is good), however as soon as I rename them in my static folder, they appear again in the rogue list. Any suggestion? JP
  23. Where to setup external authentication sources?
  24. What would be the best way to automate deployment to new Active Directory joined computers? Ideally we would like to have ERA configured so that when a new computer is joined to the domain and placed in a specific Computers OU, ERA would notice that new computer after the next AD sync, and then automatically push out the Agent and then the Antivirus to that computer. I cant seem to find any documentation on doing this with an AD OU (Static Group).
  25. Hi all, We are trying to make the ERA server and agents to run as dynamically as possible, by that we mean: We do have several group of users that don't have the right to the same ESET products and do have different policies applyed... Therefore we: Generate a peer certificate per user group Create a new dynamic group template per group Create a new dynamic group (per group) and apply the group's template To finish we generate an agent live installer for each user group That way, each agent live installer has a different certificate for each group, and so: each new agent is directly connected to ERA and computer is set in the correct group (thanks to the dynamic template that is matching the peer certificate serial number). Well the problem is that this is theory and doesn't work ! The problems we encounter: When the peer certificate has a password, the agent live installer setup never ends (we don't know why, we tried it on WIndows 7, 8 and 8.1) When the peer certificate has no password, the agent live installer works but afet er setup the new computers are still in the "Lost & Found" directory of ERA Here is what how we did it: Here we allready have a peer certificate per group ! Create a new dynamic group template: In the Web Console, navigate to Admin > Dynamic Group Templates > Click on "New Template" (down on the left). Click on Basic to roll out the settings page Enter a Name and a Description for the group template [company name - Peer Certificate detection] Click on Expression to roll out the settings page Select "+ Add rule" > click on "Peer Certificate" > "Serial number" and click on "OK" Back in 'Expression', paste the Peer Certificate serial number. Click on finish (down left of the page). Create a new dynamic group: In the Web Console, navigate to Computers and click on "All" (in the left "Computers" menu bar) > New Dynamic Group. Click on Basic to roll out the settings page Enter a Nam and a Description for the group [company name] Click on Template to roll out the settings page Select choose existing and select the template you just created. Click on finish (down left of the page). Create a agent live installer: To generate setup scripts In the Web Console, navigate to Admin > (under in the left menu) "Agent Live Installers": Server hostname: <OUR_SERVER_URL> Peer certificate: ERA certificate ERA certificate: Select the Peer Certificate you just created To finish click on "Get installers" We really need this to work as we cannot go on moving computers in groups and setting policies for hundred or thousand computers manually. PS: It seems to work, but only when the dynamic group is directly under "ALL", bu not when the dynamic group is in a "Static group" Which doesn't fit our needs ! If someone has a clue about the problem, he/she will be welcome... Thank you
  • Create New...