EasyManua.ls Logo

McAfee EPOLICY ORCHESTRATOR 4.0.2 - User Manual

McAfee EPOLICY ORCHESTRATOR 4.0.2
228 pages
Print Icon
To Next Page IconTo Next Page
To Next Page IconTo Next Page
Loading...
McAfee ePolicy Orchestrator 4.0.2
Product Guide

Table of Contents

Question and Answer IconNeed help?

Do you have a question about the McAfee EPOLICY ORCHESTRATOR 4.0.2 and is the answer not in the manual?

Summary

Introducing ePolicy Orchestrator 4.0.2

ePolicy Orchestrator 4.0.2 components and what they do

Details the core components of ePolicy Orchestrator: ePO server, master repository, distributed repositories, and McAfee Agent.

Using this guide

Provides guidance on how to use the product guide, its structure, and recommended setup order for new administrators.

Configuring ePolicy Orchestrator Servers

ePO user accounts

Explains user accounts and their association with permission sets for accessing the ePO software.

How permission sets work

Describes how permission sets grant rights and access, and how multiple sets aggregate for user accounts.

Server settings and the behaviors they control

Details various server settings that control ePolicy Orchestrator behavior, including email server, event filtering, and ports.

Available server tasks and what they do

Lists and describes the default server tasks available for managing ePolicy Orchestrator.

Working with user accounts

Covers tasks for creating, editing, and deleting user accounts for ePolicy Orchestrator.

Working with permission sets

Explains how to create, duplicate, edit, and delete permission sets for user accounts.

Working with server settings

Details tasks for configuring and maintaining general ePO server settings.

Organizing Systems for Management

The System Tree

Describes the System Tree for organizing managed systems, policies, and tasks.

Considerations when planning your System Tree

Provides factors to consider for structuring an efficient System Tree organization.

Active Directory and NT domain synchronization

Explains how to integrate Active Directory and NT domains for populating and managing the System Tree.

Criteria-based sorting

Details how to use IP address or tag information to automatically sort systems into groups.

Working with tags

Covers creating, applying, and managing tags for systems within the System Tree.

Creating and populating groups

Explains tasks for creating groups and populating them with systems manually or via import.

Importing Active Directory containers

Guides on importing systems from Active Directory containers into the System Tree.

Importing NT domains to an existing group

Details importing systems from an NT domain into a manually created group in the System Tree.

Distributing Agents to Manage Systems

Agents and SuperAgents

Explains the agent and SuperAgent components and their roles in ePolicy Orchestrator.

Agent-server communication

Describes how agents and the ePO server communicate using SPIPE protocol.

Agent policy settings

Details how agent policies determine behavior, including update sources and property collection.

Methods of agent distribution

Compares advantages and disadvantages of various agent distribution methods.

Creating custom agent installation packages

Guides on creating custom agent installation packages with embedded credentials.

Distributing agents

Covers tasks for distributing agents to managed systems via various methods.

Installing the agent with login scripts

Explains using network login scripts to install agents on systems logging onto the network.

Installing the agent manually

Details how to run the agent installer locally on a system.

Removing the agent

Covers tasks for removing agents from systems, including via command line or System Tree deletion.

Maintaining the agent

Describes tasks to ensure agents are up-to-date and functioning correctly.

Creating Repositories

Repository types and what they do

Explains different types of repositories: master, distributed, source, and fallback sites.

Master repository

Describes the master repository as the source for security software and updates.

Distributed repositories

Details distributed repositories for hosting copies of master repository contents to minimize network traffic.

Ensuring access to the source site

Provides tasks to ensure master repository and managed systems can access the Internet for updates.

Working with source and fallback sites

Covers changing, deleting, and switching default source and fallback sites.

Using SuperAgents as distributed repositories

Explains how to create and configure repositories on systems hosting SuperAgents.

Creating and configuring FTP, HTTP, and UNC repositories

Guides on hosting distributed repositories on existing FTP, HTTP servers, or UNC shares.

Working with the repository list files

Details tasks for exporting and using SITELIST.XML and SITEMGR.XML repository list files.

Changing credentials on multiple distributed repositories

Covers changing credentials for multiple distributed repositories of the same type.

Managing Products with Policies and Client Tasks

Policy management

Explains policies as collections of settings to configure and enforce managed security software.

Policy application

Details how policies are applied to systems via inheritance or assignment.

Client tasks and what they do

Describes creating and scheduling client tasks that run on managed systems.

Bringing products under management

Covers installing extension (ZIP) files to enable ePolicy Orchestrator management of products.

Viewing policy information

Explains how to view policy details, assignments, inheritance, and owners.

Working with the Policy Catalog

Details tasks for creating, duplicating, editing, renaming, and deleting policies.

Working with policies

Covers assigning, enforcing, and managing policies for products and systems.

Sharing policies between ePO servers

Guides on exporting and importing policies between ePO servers for sharing.

Assigning a policy to a group of the System Tree

Details assigning a policy to a specific group within the System Tree.

Assigning a policy to a managed system

Covers assigning a policy to a specific managed system.

Working with client tasks

Explains how to create, edit, and delete client tasks for managed systems.

Creating and scheduling client tasks

Guides on creating and scheduling client tasks for managed systems.

Deploying Software and Updates

Deployment packages for products and updates

Introduces deployment infrastructure for products and updates.

Product and update deployment

Compares product deployment and update packages and their processes.

Global updating

Explains how global updating automates replication and system updates.

Pull tasks

Details using pull tasks to update the master repository with DAT and engine packages.

Replication tasks

Covers using replication tasks to copy master repository contents to distributed repositories.

Checking in packages manually

Guides on manually checking deployment packages into the master repository.

Using the Product Deployment task to deploy products to managed systems

Explains deploying products to managed systems using the Product Deployment client task.

Deploying update packages automatically with global updating

Details enabling global updating on the server for automatic package deployment.

Deploying update packages with pull and replication tasks

Covers implementing a task-based updating strategy using pull and replication tasks.

Evaluating new DATs and engines before distribution

Guides on testing update packages using the Evaluation branch before full deployment.

Deleting DAT or engine packages from the master repository

Covers manually deleting DAT or engine packages from the master repository.

Sending Notifications

Notifications and how it works

Explains how the Notifications feature works with ePolicy Orchestrator and the System Tree.

Default rules

Introduces six default notification rules for immediate use.

Determining how events are forwarded

Details how to determine when events are forwarded and which events are forwarded immediately.

Setting up ePO Notifications

Covers configuring resources for Notifications, including permissions, email server, and contacts.

Working with SNMP servers

Guides on configuring Notifications to use SNMP servers for sending traps.

Working with registered executables and external commands

Details adding registered executables and external commands for notification rules.

Creating and editing Notification rules

Covers creating and editing rules to define notification triggers and recipients.

Viewing the history of Notifications

Explains how to access and act on information in the Notification Log page.

Querying the Database

Queries

Describes queries as configurable objects that retrieve and display data from the database.

Query Builder

Details the four-step wizard for creating and editing custom queries.

Multi-server roll-up querying

Explains running queries that report summary data from multiple ePO databases.

Preparing for roll-up querying

Covers tasks to ensure eporollup_ tables are populated for roll-up queries.

Working with queries

Details tasks for creating, using, and managing queries.

Creating custom queries

Guides on creating custom queries using the Query Builder wizard.

Running a query on a schedule

Covers creating and scheduling a server task to run a query and take actions.

Sharing a query between ePO servers

Details importing and exporting queries for use among multiple servers.

Default queries and what they display

Describes default queries for McAfee Agent and ePO.

Assessing Your Environment With Dashboards

Dashboards and how they work

Explains dashboards as collections of user-selected monitors providing current environment data.

Setting up dashboard access and behavior

Covers ensuring user access to dashboards and configuring refresh frequency.

Working with Dashboards

Details tasks for creating and managing dashboards.

Creating dashboards

Guides on creating a new dashboard and adding monitors.

Detecting Rogue Systems

What are rogue systems

Defines rogue systems as devices accessing the network not managed by the ePO server.

How the Rogue System Sensor works

Explains the Rogue System Sensor's architecture, detection, and data gathering process.

Rogue System Detection states

Categorizes systems, sensors, and subnets by states for monitoring and management.

Rogue System Sensor status

Measures the number of active sensors reporting to the ePO server and their health.

Subnet status

Measures coverage of detected subnets by sensors, categorized into Contains Rogues, Covered, Uncovered.

Rogue Sensor Blacklist

Lists managed systems where sensors should not be installed.

Rogue System Detection policy settings

Allows configuration of Rogue System Sensor instances, applied to systems, groups, or subnets.

Setting up Rogue System Detection

Covers tasks to set up Rogue System Detection, including policy and server configurations.

Configuring server settings for Rogue System Detection

Details how to configure server settings for compliance, matching, and sensor parameters.

Setting up automatic responses to Rogue System Detection events

Guides on configuring automatic responses to events like system detection or subnet status changes.

Working with detected systems

Covers tasks for managing detected systems, including exceptions, blacklisting, and removal.

Working with sensors

Details tasks related to managing sensors, including port numbers, installation, and removal.

Working with subnets

Covers tasks for adding, deleting, ignoring, including, renaming, and viewing subnets.

Appendix: Maintaining ePolicy Orchestrator databases

Performing daily or weekly database maintenance

Recommends regular database maintenance for optimal performance and data protection.

Performing weekly maintenance of MSDE databases

Details using SQLMAINT.EXE for routine clean-up and maintenance of MSDE databases.

Performing regular maintenance of SQL Server databases

Guides on using SQL Enterprise Manager for regular SQL database maintenance.

Backing up ePolicy Orchestrator databases regularly

Recommends regular database backups to protect data against failure.

Backing up a SQL database-see your SQL documentation

Refers to SQL Server product documentation for backing up SQL databases.

Backing up an MSDE database

Covers backing up MSDE databases using the Database Backup Utility (DBBAK.EXE).

Changing SQL Server information

Details editing SQL Server connection configuration details for authentication.

Restoring ePolicy Orchestrator databases

Explains the process of restoring databases from backups.

Restoring a SQL database-see your SQL documentation

Refers to SQL Server documentation for restoring SQL databases.

Restoring an MSDE database from a backup

Guides on restoring MSDE databases using the Database Backup Utility (DBBAK.EXE).

McAfee EPOLICY ORCHESTRATOR 4.0.2 Specifications

General IconGeneral
BrandMcAfee
ModelEPOLICY ORCHESTRATOR 4.0.2
CategorySoftware
LanguageEnglish

Related product manuals