McAfee EPOCDE-AA-BA Product Guide - Page 62

Editing Detected System Exception Categories, Editing Detected Systems Matching, Configuration

Page 62 highlights

7 Configuring advanced server settings Configuring Rogue System Detection server settings Task 1 Click Menu | Configuration | Server Settings, then in the Settings Categories list, click Detected System Compliance. 2 In the details pane, click Edit. 3 Edit the number of days to categorize Detected Systems as Managed or Inactive. The number of days in Rogue | Has Agent in McAfee ePO Database, but is older than__days is controlled by the number of days set in the Managed field. 4 Edit the percentage levels for these options, so that the color codes represent your requirements: • Covered Subnets - Required coverage. • Compliant Systems - Required compliance status. • Sensor Health - Ratio of active to missing sensors. 5 ePO Servers - Configure additional McAfee ePO servers whose detected systems should not be considered rogue systems. 6 Click Save. Editing Detected System Exception Categories Use this task to configure and edit the categories to use to manage exception systems in your network. Exceptions are system that you know are unmanaged (don't have a McAfee Agent on them). Task For option definitions, click ? in the interface. 1 Click Menu | Configuration | Server Settings, then from the Settings Categories list, select Detected System Exception Categories and click Edit. 2 Add or subtract exception categories using + and -. Use the Delete and Change links to modify existing exceptions categories. 3 Specify a name and description for each exception category. For example, you might want to create a category named "Printers-US-NW" to contain all the printers on your network in your company's Northwest regional offices. This way you can keep track of these systems without receiving reports about them being rogue. 4 Click Save. Editing Detected Systems Matching Use this task to edit the matching settings for Rogue System Detection. Matching settings are user-configured and have these important functions: • They define the properties that determine how newly detected interfaces are matched with existing systems. • They specify static IP ranges for matching. • They specify which ports to check for a McAfee Agent. For option definitions, click ? in the interface. 62 McAfee® ePolicy Orchestrator® 4.6.0 Software Product Guide

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142
  • 143
  • 144
  • 145
  • 146
  • 147
  • 148
  • 149
  • 150
  • 151
  • 152
  • 153
  • 154
  • 155
  • 156
  • 157
  • 158
  • 159
  • 160
  • 161
  • 162
  • 163
  • 164
  • 165
  • 166
  • 167
  • 168
  • 169
  • 170
  • 171
  • 172
  • 173
  • 174
  • 175
  • 176
  • 177
  • 178
  • 179
  • 180
  • 181
  • 182
  • 183
  • 184
  • 185
  • 186
  • 187
  • 188
  • 189
  • 190
  • 191
  • 192
  • 193
  • 194
  • 195
  • 196
  • 197
  • 198
  • 199
  • 200
  • 201
  • 202
  • 203
  • 204
  • 205
  • 206
  • 207
  • 208
  • 209
  • 210
  • 211
  • 212
  • 213
  • 214
  • 215
  • 216
  • 217
  • 218
  • 219
  • 220
  • 221
  • 222
  • 223
  • 224
  • 225
  • 226
  • 227
  • 228
  • 229
  • 230
  • 231
  • 232
  • 233
  • 234
  • 235
  • 236
  • 237
  • 238
  • 239
  • 240
  • 241
  • 242
  • 243
  • 244
  • 245
  • 246
  • 247
  • 248
  • 249
  • 250
  • 251
  • 252
  • 253
  • 254
  • 255
  • 256
  • 257
  • 258
  • 259
  • 260
  • 261
  • 262
  • 263
  • 264
  • 265
  • 266
  • 267
  • 268
  • 269
  • 270
  • 271
  • 272
  • 273
  • 274
  • 275
  • 276
  • 277
  • 278
  • 279
  • 280
  • 281
  • 282
  • 283
  • 284
  • 285
  • 286
  • 287
  • 288
  • 289
  • 290
  • 291
  • 292
  • 293
  • 294
  • 295
  • 296
  • 297
  • 298
  • 299
  • 300
  • 301
  • 302
  • 303
  • 304
  • 305
  • 306
  • 307
  • 308
  • 309
  • 310
  • 311
  • 312
  • 313
  • 314
  • 315
  • 316
  • 317
  • 318
  • 319
  • 320
  • 321
  • 322
  • 323
  • 324
  • 325
  • 326
  • 327
  • 328

Task
1
Click
Menu
|
Configuration
|
Server Settings
, then in the Settings Categories list, click
Detected System
Compliance
.
2
In the details pane, click
Edit
.
3
Edit the number of days to categorize Detected Systems as Managed or Inactive.
The number of days in
Rogue
|
Has Agent in McAfee ePO Database, but is older
than__days
is controlled by the number of days set in the Managed field.
4
Edit the percentage levels for these options, so that the color codes represent your requirements:
Covered Subnets
— Required coverage.
Compliant Systems
— Required compliance status.
Sensor Health
— Ratio of active to missing sensors.
5
ePO Servers
— Configure additional McAfee ePO servers whose detected systems should not be
considered rogue systems.
6
Click
Save
.
Editing Detected System Exception Categories
Use this task to configure and edit the categories to use to manage exception systems in your
network. Exceptions are system that you know are unmanaged (don't have a McAfee Agent on them).
Task
For option definitions, click
?
in the interface.
1
Click
Menu
|
Configuration
|
Server Settings
, then from the Settings Categories list, select
Detected System
Exception Categories
and click
Edit
.
2
Add or subtract exception categories using
+
and
-
.
Use the
Delete
and
Change
links to modify existing exceptions categories.
3
Specify a name and description for each exception category. For example, you might want to create
a category named "Printers-US-NW" to contain all the printers on your network in your company's
Northwest regional offices. This way you can keep track of these systems without receiving reports
about them being rogue.
4
Click
Save
.
Editing Detected Systems Matching
Use this task to edit the matching settings for Rogue System Detection. Matching settings are
user-configured and have these important functions:
They define the properties that determine how newly detected interfaces are matched with existing
systems.
They specify static IP ranges for matching.
They specify which ports to check for a McAfee Agent.
For option definitions, click
?
in the interface.
7
Configuring advanced server settings
Configuring Rogue System Detection server settings
62
McAfee
®
ePolicy Orchestrator
®
4.6.0 Software Product Guide