Configuring Management Platform for laptop users off LAN
Updated: 06 Feb 2012 | 5 comments
I'm looking to upgrade our Notification server to Management platform 7.1 but I can't seem to find out how to setup the Server and network settings to be able to manage laptops which are not connected to the local network. We use Juniper along with Secure application manager so I want to know how we can get the altiris agent to communicate with the NS server either over juniper but ideally when the laptop is just connected to the internet. My network team at work need information on how this needs to be setup but I can't find anything. Can someone please help me?

Comments
Coming soon, currently possible but unsupported
A forthcoming feature will use a gateway component that resides in the DMZ to create a secure tunnel with managed clients in order to maintain manageability to internet-connected devices that are not located on your LAN, WAN, or VPN. Currently, however, there is no supported method to manage internet-connected computers. You can configure the NS in the DMZ to communicate with clients over HTTPS (using an externally-signed certificate, unless you like pain), but this is not supported. Important functionality, namely task services, will not work, and there are mixed results on getting site services to work for large implementations.
Mike Clemson, Senior Systems Engineer
Intuitive Technology Group -- Symantec Platinum Partner
how forthcoming
Any links to this info. How forthcoming is it ?
cheers
Joe.
You can find some documentation on your SMP
You can find some documentation on your NS, it's called Internet Gateway (or similar). There's a PDF available. It may or may not describe the final functionality in the product. I have not heard anything like dates yet, but I did see it on the session list for Vision 2012.
Mike Clemson, Senior Systems Engineer
Intuitive Technology Group -- Symantec Platinum Partner
Via Juniper
So if for the time being I wanted to get the clients to connect via Juniper or Secure Application manager would this be possible and if so how would I do it? I'm a bit unsure as we connect to a remote portal and connect and so our laptops don't connect to the newtwork.
Thanks
Sarah
Ensure DNS and port 80 or 443
Ensure DNS is functional, so that clients on VPN can resolve the IP address of the Notification Server, and allow port 80 (or 443 if configured to use SSL) to the Notification Server. You would also need to ensure other ports are functional, per the Ports and Protocols KB at support.symantec.com. Ensure sites and subnets is configured so that the clients on VPN are in the same site as the NS.
Mike Clemson, Senior Systems Engineer
Intuitive Technology Group -- Symantec Platinum Partner
Would you like to reply?
Login or Register to post your comment.