Symantec Management Platform (Notification Server)

 View Only
  • 1.  Configuring Management Platform for laptop users off LAN

    Posted Feb 06, 2012 07:27 AM

    I'm looking to upgrade our Notification server to Management platform 7.1 but I can't seem to find out how to setup the Server and network settings to be able to manage laptops which are not connected to the local network. We use Juniper along with Secure application manager so I want to know how we can get the altiris agent to communicate with the NS server either over juniper but ideally when the laptop is just connected to the internet. My network team at work need information on how this needs to be setup but I can't find anything. Can someone please help me?



  • 2.  RE: Configuring Management Platform for laptop users off LAN

    Posted Feb 08, 2012 01:46 AM

    A forthcoming feature will use a gateway component that resides in the DMZ to create a secure tunnel with managed clients in order to maintain manageability to internet-connected devices that are not located on your LAN, WAN, or VPN.  Currently, however, there is no supported method to manage internet-connected computers.  You can configure the NS in the DMZ to communicate with clients over HTTPS (using an externally-signed certificate, unless you like pain), but this is not supported.  Important functionality, namely task services, will not work, and there are mixed results on getting site services to work for large implementations.



  • 3.  RE: Configuring Management Platform for laptop users off LAN

    Posted Feb 08, 2012 11:15 AM

    Any links to this info. How forthcoming is it ?

    cheers

    Joe.



  • 4.  RE: Configuring Management Platform for laptop users off LAN

    Posted Feb 09, 2012 12:53 AM

    You can find some documentation on your NS, it's called Internet Gateway (or similar).  There's a PDF available.  It may or may not describe the final functionality in the product.  I have not heard anything like dates yet, but I did see it on the session list for Vision 2012.



  • 5.  RE: Configuring Management Platform for laptop users off LAN

    Posted Feb 09, 2012 03:01 AM

    So if for the time being I wanted to get the clients to connect via Juniper or Secure Application manager would this be possible and if so how would I do it? I'm a bit unsure as we connect to a remote portal and connect and so our laptops don't connect to the newtwork. 

    Thanks

    Sarah



  • 6.  RE: Configuring Management Platform for laptop users off LAN

    Posted Feb 09, 2012 07:23 PM

    Ensure DNS is functional, so that clients on VPN can resolve the IP address of the Notification Server, and allow port 80 (or 443 if configured to use SSL) to the Notification Server.  You would also need to ensure other ports are functional, per the Ports and Protocols KB at support.symantec.com.  Ensure sites and subnets is configured so that the clients on VPN are in the same site as the NS.