McAfee EPOCDE-AA-BA Product Guide - Page 71

Using a different ASSC key pair for each McAfee ePO server, Viewing systems that use an ASSC key pair

Page 71 highlights

Configuring advanced server settings Managing security keys 7 6 When all agents are using the new keys, delete any unused keys. 7 Back up all keys. Ensure that the agent key updater package is checked in to the master repository and has been replicated to all distributed repositories that are managed by ePolicy Orchestrator. Agents begin using the new key pair after the next update task for the agent is complete. At any time, you can see which agents are using any of the agent-server secure communication key pairs in the list. Using a different ASSC key pair for each McAfee ePO server Use this task to ensure that all agents can communicate with the required McAfee ePO servers in an environment where each McAfee ePO server must have a unique agent-server secure communication key pair. Agents can communicate with only one server at a time. The McAfee ePO server can have multiple keys to communicate with different agents, but the opposite is not true. Agents cannot have multiple keys to communicate with multiple McAfee ePO servers. For option definitions, click ? in the interface. Task 1 From each McAfee ePO server in your environment, export the master agent-server secure communication key pair to a temporary location. 2 Import each of these key pairs into every McAfee ePO server. Viewing systems that use an ASSC key pair Use this task to view the systems whose agents use a specific agent-server secure communication key pair, which appears in the Agent-server secure communication keys list. After making a specific key pair the master, you might want to view the systems that are still using the previous key pair. Do not delete a key pair until you know that no agents are still using it. For option definitions, click ? in the interface. Task 1 Click Menu | Configuration | Server Settings, select Security Keys from the Setting Categories list, then click Edit. The Edit Security Keys page appears. 2 In the Agent-server secure communication keys list, select a key, then click View Agents. The Systems using this key page appears. This page lists all systems whose agents are using the selected key. Backing up and restoring keys Use these tasks to back up and restore security keys. McAfee® ePolicy Orchestrator® 4.6.0 Software Product Guide 71

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142
  • 143
  • 144
  • 145
  • 146
  • 147
  • 148
  • 149
  • 150
  • 151
  • 152
  • 153
  • 154
  • 155
  • 156
  • 157
  • 158
  • 159
  • 160
  • 161
  • 162
  • 163
  • 164
  • 165
  • 166
  • 167
  • 168
  • 169
  • 170
  • 171
  • 172
  • 173
  • 174
  • 175
  • 176
  • 177
  • 178
  • 179
  • 180
  • 181
  • 182
  • 183
  • 184
  • 185
  • 186
  • 187
  • 188
  • 189
  • 190
  • 191
  • 192
  • 193
  • 194
  • 195
  • 196
  • 197
  • 198
  • 199
  • 200
  • 201
  • 202
  • 203
  • 204
  • 205
  • 206
  • 207
  • 208
  • 209
  • 210
  • 211
  • 212
  • 213
  • 214
  • 215
  • 216
  • 217
  • 218
  • 219
  • 220
  • 221
  • 222
  • 223
  • 224
  • 225
  • 226
  • 227
  • 228
  • 229
  • 230
  • 231
  • 232
  • 233
  • 234
  • 235
  • 236
  • 237
  • 238
  • 239
  • 240
  • 241
  • 242
  • 243
  • 244
  • 245
  • 246
  • 247
  • 248
  • 249
  • 250
  • 251
  • 252
  • 253
  • 254
  • 255
  • 256
  • 257
  • 258
  • 259
  • 260
  • 261
  • 262
  • 263
  • 264
  • 265
  • 266
  • 267
  • 268
  • 269
  • 270
  • 271
  • 272
  • 273
  • 274
  • 275
  • 276
  • 277
  • 278
  • 279
  • 280
  • 281
  • 282
  • 283
  • 284
  • 285
  • 286
  • 287
  • 288
  • 289
  • 290
  • 291
  • 292
  • 293
  • 294
  • 295
  • 296
  • 297
  • 298
  • 299
  • 300
  • 301
  • 302
  • 303
  • 304
  • 305
  • 306
  • 307
  • 308
  • 309
  • 310
  • 311
  • 312
  • 313
  • 314
  • 315
  • 316
  • 317
  • 318
  • 319
  • 320
  • 321
  • 322
  • 323
  • 324
  • 325
  • 326
  • 327
  • 328

6
When all agents are using the new keys, delete any unused keys.
7
Back up all keys.
Ensure that the agent key updater package is checked in to the master
repository and has been replicated to all distributed repositories that are
managed by ePolicy Orchestrator. Agents begin using the new key pair
after the next update task for the agent is complete. At any time, you
can see which agents are using any of the agent-server secure
communication key pairs in the list.
Using a different ASSC key pair for each McAfee ePO server
Use this task to ensure that all agents can communicate with the required McAfee ePO servers in an
environment where each McAfee ePO server must have a unique agent-server secure communication
key pair.
Agents can communicate with only one server at a time. The McAfee ePO
server can have multiple keys to communicate with different agents, but
the opposite is not true. Agents cannot have multiple keys to
communicate with multiple McAfee ePO servers.
For option definitions, click
?
in the interface.
Task
1
From each McAfee ePO server in your environment, export the master agent-server secure
communication key pair to a temporary location.
2
Import each of these key pairs into every McAfee ePO server.
Viewing systems that use an ASSC key pair
Use this task to view the systems whose agents use a specific agent-server secure communication key
pair, which appears in the
Agent-server secure communication keys
list.
After making a specific key pair the master, you might want to view the systems that are still using
the previous key pair. Do not delete a key pair until you know that no agents are still using it.
For option definitions, click
?
in the interface.
Task
1
Click
Menu
|
Configuration
|
Server Settings
, select
Security Keys
from the Setting Categories list, then click
Edit
.
The Edit Security Keys page appears.
2
In the
Agent-server secure communication keys
list, select a key, then click
View Agents
. The
Systems using this
key
page appears.
This page lists all systems whose agents are using the selected key.
Backing up and restoring keys
Use these tasks to back up and restore security keys.
Configuring advanced server settings
Managing security keys
7
McAfee
®
ePolicy Orchestrator
®
4.6.0 Software Product Guide
71