top links
top shadow
 
lft_mid
Google logorgt_mid
homeswitchstoreEARTHLINK TOOLSMEMBER CENTERtab_rgt
DIAL UPHIGH SPEEDwirelessbusinessextras

Configuring Management Platform for laptop users off LAN | Symantec Connect Community
Video Screencast Help
Search Video Help Close Back
to help
Not able to make it to Vision this year? Get a sampling of what went on in the Best of Vision on Demand group.

Configuring Management Platform for laptop users off LAN

Updated: 06 Feb 2012 | 5 comments
Sarah Simpson's picture
0 0 Votes
Login to vote

I'm looking to upgrade our Notification server to Management platform 7.1 but I can't seem to find out how to setup the Server and network settings to be able to manage laptops which are not connected to the local network. We use Juniper along with Secure application manager so I want to know how we can get the altiris agent to communicate with the NS server either over juniper but ideally when the laptop is just connected to the internet. My network team at work need information on how this needs to be setup but I can't find anything. Can someone please help me?

Comments

mclemson's picture
07
Feb
2012
0 Votes 0
Login to vote

Coming soon, currently possible but unsupported

A forthcoming feature will use a gateway component that resides in the DMZ to create a secure tunnel with managed clients in order to maintain manageability to internet-connected devices that are not located on your LAN, WAN, or VPN.  Currently, however, there is no supported method to manage internet-connected computers.  You can configure the NS in the DMZ to communicate with clients over HTTPS (using an externally-signed certificate, unless you like pain), but this is not supported.  Important functionality, namely task services, will not work, and there are mixed results on getting site services to work for large implementations.

Mike Clemson, Senior Systems Engineer
Intuitive Technology Group -- Symantec Platinum Partner

JoeShmo's picture
08
Feb
2012
0 Votes 0
Login to vote

how forthcoming

Any links to this info. How forthcoming is it ?

cheers

Joe.

mclemson's picture
08
Feb
2012
0 Votes 0
Login to vote

You can find some documentation on your SMP

You can find some documentation on your NS, it's called Internet Gateway (or similar).  There's a PDF available.  It may or may not describe the final functionality in the product.  I have not heard anything like dates yet, but I did see it on the session list for Vision 2012.

Mike Clemson, Senior Systems Engineer
Intuitive Technology Group -- Symantec Platinum Partner

Sarah Simpson's picture
09
Feb
2012
0 Votes 0
Login to vote

Via Juniper

So if for the time being I wanted to get the clients to connect via Juniper or Secure Application manager would this be possible and if so how would I do it? I'm a bit unsure as we connect to a remote portal and connect and so our laptops don't connect to the newtwork. 

Thanks

Sarah

mclemson's picture
09
Feb
2012
0 Votes 0
Login to vote

Ensure DNS and port 80 or 443

Ensure DNS is functional, so that clients on VPN can resolve the IP address of the Notification Server, and allow port 80 (or 443 if configured to use SSL) to the Notification Server.  You would also need to ensure other ports are functional, per the Ports and Protocols KB at support.symantec.com.  Ensure sites and subnets is configured so that the clients on VPN are in the same site as the NS.

Mike Clemson, Senior Systems Engineer
Intuitive Technology Group -- Symantec Platinum Partner