Jump to content

Recommended Posts

Posted

Hi. I'm a new customer setting up ESET and I'm hitting a wall in regards to getting ESET to auto deploy to new desktops. I've been following this guide: https://help.eset.com/esmc_admin/70/en-US/admin_how_to_automate.html but it's not working.

EXAMPLE: automatically deploy ESET products on newly connected Windows desktops

1.Create a Dynamic Group, and name it without security product.

a.Make it a child group of the pre-defined group Windows computers > Windows (desktops).

b.Click New Template.

c.Add the following rule: Computer > Managed products mask.

d.As operator select not equal.

e.Select the mask icon_computer ESET protected: Desktop

f.Click Finish to save the group.

 

So I've done everything in section #1 above, but instead of listing all desktops that do not have ESET, it's just listing all my desktops... Right now I have ESET installed on 4 desktops, and we're planning to do our rollout to the other 200+ desktops on Monday. So with that in mind, I have attached several screenshots to show what I have done. I am 99% confident it is exactly as the guide says.

 

I'm not sure what I'm missing.

Thank you!

 

My ESMC versions:
ESET Security Management Center (Server), Version 7.0 (7.0.577.0)
ESET Security Management Center (Web Console), Version 7.0 (7.0.429.0)
 
 
All desktops:

all_desktops.thumb.png.c4b64837550583a0455ca17190586e18.png

 

The list of desktops in the dynamic group that's supposed to NOT have ESET installations:

all_desktops_withoutESET.thumb.png.91603e3d93123cfb488bd2c92f366584.png

 

The dynamic group (proof that I'm using the correct template):

dynamic_group.PNG.b2d681cfc248805e2f07d3e82df690a2.PNG

 

The dynamic group template (proof that the Rules are set according to the guide):

dynamic_group_template.PNG.f94d2e8339a07cd681cfa33d4fca3c07.PNG

  • ESET Staff
Posted

Try to change conditions in a way, that mask “is one of” and choose agent and then mask is not one of “endpoint”. That should work. 

Posted

Thanks MichalJ.

I don't think that will work though. My goal is to have known computers that do not have ESET protection show up in this list.

Your solution seems to depend on the fact the Agent is installed but the Endpoint is not.

I'm looking for a Dynamic Group (or something) to make me a list of which new computers have been added to my network in AD and do not have ESET installed.

 

Regardless, I attempted to do as you suggested but I do not see "Endpoint" as an option in the list of masks.

image.png.4b9f7a3c1385db45bf29b6415be84b0a.png

 

 

I also went ahead and tried the "Installed Software" category and I set it to NOR, with the rule "application name contains ESET Endpoint Security".

Now I'm getting 0 results in my "Without security product" Dynamic Group, even after doing a new AD synchronization and waiting 10 minutes.

image.png.1a1344ac9d95422d52d85f2a9e009073.png

  • Administrators
Posted

Since dynamic groups are evaluated by agent on clients, without an agent installed a client cannot report in a dynamic group.

Posted
6 minutes ago, Marcos said:

Since dynamic groups are evaluated by agent on clients, without an agent installed a client cannot report in a dynamic group.

Ah! Well then that makes sense why nothing is working.

This guide https://help.eset.com/esmc_admin/70/en-US/admin_how_to_automate.html is what lead me down this rabbit hole.

 

So I'll have to abandon ESMC as a way to manage/alert new computers without ESET. Unless there's another feature in ESMC that I do not yet know of?

Thank you!

  • Administrators
Posted

You can use Rogue Detection Sensor to detect machines without ESMC agent which you can then put to a static group and deploy agent. With agent installed, you will be able to take advantage of dynamic groups.

image.png

image.png

Guest
This topic is now closed to further replies.
  • Recently Browsing   0 members

    • No registered users viewing this page.
×
×
  • Create New...