Jump to content

comgam

Members
  • Posts

    15
  • Joined

  • Last visited

    Never

Posts posted by comgam

  1. Hi

     

    we are using the Active Directory “Protected users group” that restrict, for obvious security matter, NTLM usage https://petri.com/windows-server-protected-privileged-accounts

    Our Admin account for all IT Administrators tasks are member of this group (it a mandatory security for our Auditors) 

    now our Admin account cannot login anymore on KSC console or web. if they are removed from this group they can login … so it seems that if we try to be secure, KAS does not let us do it :) 

     

    thanks for your help on that 

  2. Hi

     

    i have manually disabled “Device control” (enabled by Policy but not locked, password protected) on a computer but there is no status change on the device, no alert on the KSC (just an event in the eventlog) while on my understanding it should be since the policy is different from the one the computer is supposed to have

    Since we authorize our technician to temporary disabled deice control i want to know if a protection component is stopped on a computer

    Also after renabling the “Device Control” the component is still “Stopped”, see screenshot

    thanks

  3. Hi

     

    We have a policy to disable USB port but on certain circonstance we want to allow some technician to disable this specific policy so an end user can plug his key

    For that we added in the policy - General Setting > Interface > Password protection, the technician username to (+) Disable control component

    But when he goes on KAS interface - Device Control and disable, when prompt for the credential they are not working 

     

  4. Hi i have an application "Factset" who need to close some process (like office & adobe) in order to upgrade I thought to launch the package task at startup when KES is launched so before process launched by users but KSC does not have this schedule ... Is there something that can be added in a roadmap ? Anyway, i've created a 1st task to kill process then launch the upgrade automatically after this previous task completed successfully For that i ve just created a basic batch script and it works (process are closed) but it stay at "38% runnning" , then after 10 minutes it finally finished successfully taskkill /IM FDSW32.EXE /F taskkill /IM MARQUEE.EXE /F taskkill /IM EXCEL.EXE /F taskkill /IM MARQUEE.EXE /F taskkill /IM ACRORD32.EXE /F taskkill /IM OUTLOOK.EXE /F taskkill /IM WINWORD.EXE /F exit thanks for your help or if you have a better idea :)
×
×
  • Create New...