Jump to content

Auto-deploy ESET not working even after following the help guide


Recommended Posts

Hi. I'm a new customer setting up ESET and I'm hitting a wall in regards to getting ESET to auto deploy to new desktops. I've been following this guide: https://help.eset.com/esmc_admin/70/en-US/admin_how_to_automate.html but it's not working.

EXAMPLE: automatically deploy ESET products on newly connected Windows desktops

1.Create a Dynamic Group, and name it without security product.

a.Make it a child group of the pre-defined group Windows computers > Windows (desktops).

b.Click New Template.

c.Add the following rule: Computer > Managed products mask.

d.As operator select not equal.

e.Select the mask icon_computer ESET protected: Desktop

f.Click Finish to save the group.

 

So I've done everything in section #1 above, but instead of listing all desktops that do not have ESET, it's just listing all my desktops... Right now I have ESET installed on 4 desktops, and we're planning to do our rollout to the other 200+ desktops on Monday. So with that in mind, I have attached several screenshots to show what I have done. I am 99% confident it is exactly as the guide says.

 

I'm not sure what I'm missing.

Thank you!

 

My ESMC versions:
ESET Security Management Center (Server), Version 7.0 (7.0.577.0)
ESET Security Management Center (Web Console), Version 7.0 (7.0.429.0)
 
 
All desktops:

all_desktops.thumb.png.c4b64837550583a0455ca17190586e18.png

 

The list of desktops in the dynamic group that's supposed to NOT have ESET installations:

all_desktops_withoutESET.thumb.png.91603e3d93123cfb488bd2c92f366584.png

 

The dynamic group (proof that I'm using the correct template):

dynamic_group.PNG.b2d681cfc248805e2f07d3e82df690a2.PNG

 

The dynamic group template (proof that the Rules are set according to the guide):

dynamic_group_template.PNG.f94d2e8339a07cd681cfa33d4fca3c07.PNG

Link to comment
Share on other sites

  • ESET Staff

Try to change conditions in a way, that mask “is one of” and choose agent and then mask is not one of “endpoint”. That should work. 

Link to comment
Share on other sites

Thanks MichalJ.

I don't think that will work though. My goal is to have known computers that do not have ESET protection show up in this list.

Your solution seems to depend on the fact the Agent is installed but the Endpoint is not.

I'm looking for a Dynamic Group (or something) to make me a list of which new computers have been added to my network in AD and do not have ESET installed.

 

Regardless, I attempted to do as you suggested but I do not see "Endpoint" as an option in the list of masks.

image.png.4b9f7a3c1385db45bf29b6415be84b0a.png

 

 

I also went ahead and tried the "Installed Software" category and I set it to NOR, with the rule "application name contains ESET Endpoint Security".

Now I'm getting 0 results in my "Without security product" Dynamic Group, even after doing a new AD synchronization and waiting 10 minutes.

image.png.1a1344ac9d95422d52d85f2a9e009073.png

Link to comment
Share on other sites

  • Administrators

Since dynamic groups are evaluated by agent on clients, without an agent installed a client cannot report in a dynamic group.

Link to comment
Share on other sites

6 minutes ago, Marcos said:

Since dynamic groups are evaluated by agent on clients, without an agent installed a client cannot report in a dynamic group.

Ah! Well then that makes sense why nothing is working.

This guide https://help.eset.com/esmc_admin/70/en-US/admin_how_to_automate.html is what lead me down this rabbit hole.

 

So I'll have to abandon ESMC as a way to manage/alert new computers without ESET. Unless there's another feature in ESMC that I do not yet know of?

Thank you!

Link to comment
Share on other sites

  • Administrators

You can use Rogue Detection Sensor to detect machines without ESMC agent which you can then put to a static group and deploy agent. With agent installed, you will be able to take advantage of dynamic groups.

image.png

image.png

Link to comment
Share on other sites

Guest
This topic is now closed to further replies.
  • Recently Browsing   0 members

    • No registered users viewing this page.
×
×
  • Create New...