![]() ![]() To enabled agent-initiated activation, go to Administration > System Settings > Agents and select Allow Agent-Initiated Activation. This is useful when a large number of computers will be added to an installation and you want to write a script to automate the activation process. You can manually activate an Agent from the Manager by right-clicking on the computer in the Computers screen and selecting Actions > Activate/Reactivate.Īgents can initiate the activation process using a locally-run command-line tool. This ensures that only one Manager (or one of its Manager Nodes) can send instructions to and communicate with the Agent. The activation process includes the exchange of unique fingerprints between the Agent and the Manager. The default value is 300.Īgent-initiated activation ("dsa_control -a")Īn Agent installed on a computer needs to be activated before the Manager can assign Rules and Policies to protect the computer. -dsm-retry-interval Approximate delay in seconds between retrying activations.-max-dsm-retries Number of times to retry an activation.-scanForChanges Scan for changes for Integrity Monitoring.-buildBaseline Build baseline for Integrity Monitoring.-y relay_proxy://: If the agent connects through a proxy to a relay for security updates and software, provide the proxy's IP address or FQDN and port number, separated by a colon (:).-x dsm_proxy://: If the agent connects through a proxy to the manager, provide the proxy's IP address or FQDN and port number, separated by a colon (:).If you only want to update the proxy's password without changing the proxy's username, you can use the -w option without -y. To remove the username and password, type an empty string (""). Separate the username and password by a colon (:). -w : Used in conjunction with the -y option to specify the proxy's username and password, if the proxy requires authentication.If you only want to update the proxy's password without changing the proxy's username, you can use the -u option without -x. -u : Used in conjunction with the -x option to specify the proxy's username and password, if the proxy requires authentication.There is a one second pause between retries. -t, -retries= If dsa_control cannot contact the Agent service to carry out accompanying instructions, this parameter instructs dsa_control to retry number of times.In Deep Security 9.0 and earlier, this option was -H, -harden= ![]() Once configured, the password will need to be entered at the command line using the -p or -passwd= option. See Configure self-protection through Deep Security Manager for details. You'll need Deep Security Manager for that. This is a Windows-only feature.Īlthough dsa_control lets you enable self-protection, it does not let you configure an associated authentication password. For details, see Enable or disable agent self-protection. ![]() Self-protection prevents local end-users from uninstalling, stopping, or otherwise controlling the agent. -s, -selfprotect= Enable agent self-protection (1: enable, 0: disable). ![]() On Windows, you can also restore cleaned and deleted files.
0 Comments
Leave a Reply. |
AuthorWrite something about yourself. No need to be fancy, just an overview. ArchivesCategories |