Quantcast
Channel: Ivanti User Community : Popular Discussions - All Communities
Viewing all 2325 articles
Browse latest View live

DSM 2017 will be released on December 20th 2017

$
0
0

Dear customers and partners,

 

I am very sorry to announce yet another (albeit small) delay.

We found an issue at the last scheduled test run that could have impact on everyone running ExecuteEx and decided to fix this before releasing the product.

 

Thus the release of DSM 2017 is delayed to Wednesday this week (12/20/2017).

 

Kind regards

Peter


How to: Update your boot.wim and boot_x64.wim to newer versions of Windows 10

$
0
0

The boot.wim and boot_x64.wim that ship with LDMS include the Threshold I RTM version of WinPE.  There have been two newer releases of WinPE since this version.  The current most up to date version is RedStone I / 1607.  New versions of WinPE are released every 6 months from Microsoft.

 

Some hardware such as the Surface Studios require this newer version in order to be PXE booted and provisioned.

 

Here are the steps to take to upgrade your boot files to a newer version of WinPE:

 

Step 1:

Download and install the latest version of the Windows ADK (or the version you need) from the below link to get Microsoft's release of the WinPE files that match the specific OS version:

Windows ADK downloads - Windows Hardware Dev Center

 

Step 2:

Run the Deployment and Imaging Tools Environment as administrator:

 

Step 3:

Download and run the following script from with-in the Deployment and Imaging Tools Environment CMD box that will prepare your WinPE files from Microsoft with the required modules for LDMS:

Create-WinPE.bat (attached to this document)

 

Step 4:

Take your prepared boot.wim and boot_x64.wim files from c:\winpe_x86 and c:\winpe_amd64 and copy them to this folder on your core:

Letter:\Program Files\LANDesk\ManagementSuite\landesk\vboot\clean\

*Note - backup the original files that are there incase you need to revert to the version that Ivanti ships with LDMS.

 

Step 5:

Backup your old production boot files.  Create copies of the files located at Letter:\Program Files\LANDesk\ManagementSuite\landesk\vboot and put them some where safe (step 6 will overwrite them).  However you must keep a copy of your old boot files here still.  Do not simply move them to another location.  Step 6 will be looking for these old boot files in order to migrate the HII drivers over to the new boot files, so if you rename them or move them instead of just making a copy of them - that step will not work completely.

 

Step 6:

On your core server launch an elevated command prompt and run:

 

This will upgrade your existing LDMS boot.wim and boot_x64.wim to now be RedStone I / 1607.

 

These updated files will be located at:

Letter:\Program Files\LANDesk\ManagementSuite\landesk\vboot

 

Additional notes:

- Bitlocker support is added via the Create-WinPE.bat script.  (can use manage-bde.exe with-in WinPE)

- PowerShell usage without requiring full path is additionally added.

LDMS (10) 2016.3 and Windows 10 install

$
0
0

So I have been searching the community on a document detailing how to install the latest LDMS client console on a Windows 10 box. The compatibility matrix states it is supported, however when you go to install it, you receive a big red X during the installation of Data Analytics. Then if you go into the logs, and after digging for a bit you will find the logs associated with Data Analytics. In that log it states that .Net Framework 4.5 is required for install. Nonetheless, up to this point there was not a way to install the Console without error. I posted a while back (Can't install 9.6 SP1 console on Windows 10 64-bit ) about a workaround with the 9.6 installer detailing that you can update the setup.xml file to bypass the Data Analytics install. I have since figured out how to get Data Analytics to install successfully and thus finish the install. Please see the details below.

 

  1. Go to Start >> Run >> Regedit (Please make sure you do a backup of the registry prior to editing the registry)
  2. Navigate to HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\NET Framework Setup\NDP\v4\Client
    1. Right Click on Client and select permissions
    2. In the Permissions window that appears, click the “Advanced” button.
    3. wrp_2
    4. Next, you’re going to take ownership of the Registry key. In the “Advanced Security Settings” window, next to the listed Owner, click the “Change” link.
    5. wrp_3
    6. In the “Select User or Group” window, in the “Enter the object name to select” box, type the name of your Windows user account (or your email address if you have a Microsoft account) and then click the “Check Names” button to validate the account name. When that’s done, click OK to close the “Select User or Group” window and then click OK again to close the “Advanced Security Settings” window.
    7. wrp_4

    8. Back at the regular Permissions window, select the Users group and then choose the “Allow” check box next to the “Full Control” permission. If you prefer, you can just give your user account full permissions rather than the Users group. To do that, click the Add button, walk through the steps to add your user account to the list, and then give that account the Full Control permission. Whichever method you choose, click OK when you’re done to return to Registry Editor.

    9. wrp_5

  3. Next change the "Version" to 4.5.51209 (you will do this in 4 different spots, referring to the registry keys below) WRITE DOWN ITS CURRENT VALUE AS YOU WILL NEED IT LATER!
  4. You will need to repeat the steps 1-9 again for the following registry keys
    1. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\NET Framework Setup\NDP\v4\Client\1033
    2. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\NET Framework Setup\NDP\v4\Full
    3. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\NET Framework Setup\NDP\v4\Full\1033
  5. You can now run the install setup.exe from the LDMS 2016.3 folder
  6. Finally, once the installer has completed, you will need to change the "Version" back to what it was originally (this is the value you wrote down in step 3)

I really hope this helps others out there struggling to get this install on a Windows 10 machine. Hopefully now you can move from Windows 7 to Windows 10. Please let me konw if you have any questions or need clarification.

Landesk EPS - LDAV Kaspersky and Windows 10 Fall update 1709

$
0
0

Landesk EPS - LDAV Kaspersky and Windows 10 Fall update 1709.

 

We are finding that LDAV KAV is not compatible with Windows 10's Fall update (1709).

 

All clients upgraded to the Fall update have the LDAV/KAV crashing or consuming multiple cores for no apparent reason. It also marks all LDAV clients as "invalid keys or not activated" and when you look the logs, there are literally millions of entries with the same text:

 

ERROR: Failed to delete Kaspersky Endpoint Security 10 Service Pack 1 Maintenance Release 3

 

We also tried building Windows 10 1709s from scratch and the behavior is the same.

 

 

  • C:\Program Data\LANDesk\Log creating new, 2MB ldav_install.X.log files at the rate of at least 8 per minute, rolling over after 8 (for a total of 8), each containing tens of thousands of repetitions of:
    1. Mon, 06 Nov 2017 08:26:55 ERROR: Failed to delete Kaspersky Endpoint Security 10 Service Pack 1 Maintenance Release 3
    2. This is the only line in the file
  • C:\Program Data\LANDesk\Log creating new, 10MB ldav_update.X.log files at the rate of at least 8 per minute, rolling over after 8 (for a total of 8), each containing nearly a hundred thousand repetitions of:
    1. Mon, 06 Nov 2017 08:32:26 ERROR: Failed to delete Kaspersky Endpoint Security 10 Service Pack 1 Maintenance Release 3
    2. This is the only line in the file

1.png

 

Anybody else having this problem?

 

Is this another bug?

 

Thanks in advance.

 

Logs Attached

 

 

 

Message was edited by: Aaron Day

%LOCALAPPDATA% folder in Windows 7 - ??

$
0
0

Hi,

 

Everytime when I installed the LDMS 9.0 agent (manually, push or via provisioning) on Windows 7 only there is a folder created in the root system (C:\) called %LOCALAPPDATA%. It's look like a variable wrong coded.

 

Some people can confirm that?? In that case I will open a call....

 

Regards

Lionel

EM Personalization Templates

$
0
0

Here is a list of all the EM templates and their location. As new ones get posted I'll update this list in this thread.

Landon.


Template Name - Location

  1. Word - OOB
  2. Excel - OOB
  3. PowerPoint - OOB
  4. Outlook - OOB
  5. Clip Organizer - OOB
  6. Graph - OOB
  7. InfoPath - OOB
  8. Media Catalog - OOB
  9. Picture Manager - OOB
  10. Project - OOB
  11. SharePoint Workspace - OOB
  12. Visio - OOB
  13. Internet Explorer - OOB
  14. Windows Media Player - OOB
  15. Acrobat Reader - OOB
  16. Lotus Notes - OOB
  17. Firefox - OOB
  18. Remote Desktop Client - OOB
  19. Accessibility Keyboard - OOB
  20. Audio and Sounds - OOB
  21. Tablets - OOB
  22. Visual Settings - OOB
  23. Action Center - OOB
  24. Active Setup - OOB
  25. General Folder Settings - OOB
  26. Libraries - OOB
  27. Links - OOB
  28. Mapped Drives - OOB
  29. Mapped Printers - OOB
  30. Network Location Shortcuts - OOB
  31. Search Folder Options - OOB
  32. View Folder Options - OOB
  33. IE 10 Cookies - OOB
  34. IE 10 History - OOB
  35. Input Keyboard - OOB
  36. Mouse - OOB
  37. Mail Signatures - OOB
  38. MAPI Profile - OOB
  39. Input Language - OOB
  40. Language Bar - OOB
  41. Locale - OOB
  42. MUI - OOB
  43. Certificates - OOB
  44. Credentials - OOB
  45. Notification Area - OOB
  46. Start Menu - OOB
  47. Start Menu - Recently Launched Applications - OOB
  48. Taskbar - OOB
  49. Toolbars - OOB
  50. Icons - OOB
  51. Themes - OOB
  52. Windows Color and Appearance - OOB
  53. Account Picture - OOB
  54. ClearType - OOB
  55. Icon Position and Views - OOB
  56. Screen Saver - OOB
  57. Visual Effects - OOB
  58. Wallpaper - OOB
  59. Acrobat - Acrobat and Acrobat Reader Template
  60. BlueZone - Rocket Software - BlueZone
  61. Snagit - TechSmith - Snagit
  62. iManage - Office 2010 - [Legal] iManage + MS Office 2010
  63. iManage - Office 2013 - [Legal] iManage + MS Office 2013
  64. AccuRoute - [Legal] AccuRoute
  65. Camtasia - [Legal] Camtasia Studio
  66. Chrome - Google Chrome Template
  67. WinZip - Winzip Template
  68. Notepad++ - Notepad++ Template
  69. Cisco Jabber - Cisco Jabber Template
  70. AppSense Consoles - AppSense Consoles Template
  71. Photoshop - Adobe Photoshop Template
  72. Persinfo - Persinfo Template
  73. Visual Studio - Visual Studio Template
  74. Lync - Lync Template
  75. Sticky Notes - StickyNotes Template
  76. Printers - Printers Template
  77. Command Prompt - Command Prompt Template
  78. Sysinternal Tools - Sysinternals Template
  79. Regedit - Regedit Template
  80. PuTTY - PuTTY Template
  81. 2012 Server Manager - 2012 Server Manager Template
  82. Adobe Illustrator - Adobe Illustrator Template
  83. Angry Birds - Angry Birds Template
  84. Notepad - Notepad Template
  85. Wordpad - Wordpad Template
  86. MS Paint - MS Paint Template
  87. Calculator - Calculator Template
  88. Snipping Tool - Snipping Tool Template
  89. FileZilla - FileZilla Personalization Template
  90. Microsoft Management Console - Microsoft Management Console Personalization Template
  91. Citrix App Center - Citrix App Center Personalization Template
  92. AOL Instant Messenger - AOL Instant Messenger (AIM) Personalization Template
  93. Helios TextPad - Helios TextPad Personalization Template
  94. Microsoft Dynamics SL - Microsoft Dynamics SL 2011 Personalization Template
  95. Firefox - FireFox Template
  96. GoToMeeting - GoToMeeting Template
  97. AutoCAD - AutoCAD Template
  98. Taskmanager - Task Manager Template
  99. Windows Media Center - Windows Media Center Template
  100. Windows Fax and Scan - Windows Fax and Scan Template
  101. Windows DVD Maker - Windows DVD Maker Template
  102. WinRAR - WinRAR Template
  103. Avaya IP v6 - http://www.appsense-exchange.com/Tools/AEL00180
  104. Avaya IP v7 - http://www.appsense-exchange.com/Tools/AEL00181
  105. 7-Zip - 7-Zip Personalization Template
  106. Open Office - Open Office Template
  107. ArcGIS - ArcGIS Personalization Template
  108. Client Access (HTE) - Client Access (HTE) Personalization Template
  109. Laserfiche - Laserfiche Personalization Template
  110. Cute FTP - GlobalScape CuteFTP 9 Personalization Template
  111. Skype - Skype Template
  112. Track-IT - Track-IT Template
  113. Auto Audit - Auto Audit Template
  114. Beyond Compare - Beyond Compare Template
  115. SAP - SAP Personalization Template
  116. Remote Desktop Connection Manager - Remote Desktop Connection Manager (RDCMan) Template
  117. Microsoft Office 2016 - Office 2016 Template
  118. Webex - Webex Personalization Template
  119. WinSCP - WinSCP Template
  120. vSphere - vSphere Template
  121. KeePass - KeePass Template
  122. Hyper-V Management Console - Personalization Template for Hyper-V Management Console

Citrix Receiver Duplicate Icons

$
0
0
Hello, we are having an issue where the Citrix Receiver 4.4 is set to automatically place an icon inside a folder on the desktop for a published application. We are getting duplicate icons each login inside this folder, example - word, word(1), word(2). If we change the path and have the receiver place the icon directly on the desktop instead of inside a folder on the desktop the icons do not duplicate. They also do not duplicate in the start menu. We have tried personalizing Receiver which worked and we no longer saw duplicate icons but however after a few weeks the profile sizes grew tremendously from 5mb to close to 80mb so we had to remove the following include which was taking up all the space:

AppData\Roaming\Citrix\SelfService\Icons

I'm wondering if anyone else has run into this before?

Thanks

Intel 'Meltdown' security vulnerability KB4058702 is not installing

$
0
0

Hi I am new the the NextGen Patches, and my first task is to use it for the Meltdown vulnerability.

 

Unfortunatelly I do not got the correct result, and have no more ideas where to look at.

 

What I checked so far:

 

I did read:

 

Important information on detection logic for the Intel 'Meltdown' security vulnerability

Support for the Intel 'Meltdown' security vulnerability KB4058702

About the New Patch Engine in Ivanti Endpoint Manager

 

Test-PC:

Windows 10 Enterprise - 1703 with McAfee

 

Registry-Key for Compatibilty:

was set manually by me (McAfee is not able yet to do it)

313.png

Vulnerability and Definition:

- Downloaded by PatchManager (My Focus is on 4056891 for Windows 10 - 1703)

 

Patch Manger does only find the DETECT Vulnerability:

 

The Vulscan-Log tells me
that the "Install"-Patch is allready installed???

the "DETECT"-Patch tells me it is'nt?

2018-01-05 17_43_54-mRemoteNG - confCons.xml - wu-ldcore2017.png

 

I also activated - the "Enable security scan debug trace log" but I do not understand these files so far:

  • PatchManifestSyncSDK.log
  • PatchScanSDKDpdTrace.log

 

Hope you can get me some new tipps.

 

Kind regards, Marco


DSM 2017 Known Issues

$
0
0

These are the known issues of DSM 2017 which we have found internally and their regarding status and think are worth being published here.

 

History of this document:

 

Last updatedByComment
2018-01-09Andreas Fuchscreated
2018-01-10Andreas FuchsUpdated logfile zip

 

Link to the Patch Collection for DSM 2017

is not yet available.

 

Known Issues Status:

 

Issue #IssueDescriptionRelevanceTarget (not committed)
DSI 244325Site determination via variable doesn't work during agent installationIf you install a client via OSD or you have a new client and you try to install the DSM client via niagnt32.exe /install /bin /force, the site determination fails if you use a variable.
Reproduced behavior:
- create a user defined variable in DSMC
- create DWORD on the client with this value
- install the DSM client via niagnt32.exe /install /bin /force
Only newly created endpoints are affected.
Works fine for migrated clients from previous DSM versions (such as 2016.2 R2)
Patch Collection 2017
DSI 233948Patches are temporarily missing in the catalog (RM255591)Only PatchLink is affectedPatch Collection 2017
RM255426PmSync: Catalog import is failing with error "bad allocation" (RM255426)It was fixed in the last Patch Bundle for 2016.2-R2, now it has to be done for 2017 as well.
It affects large environments with 20k + patches
Only Shavlik is affectedPatch Collection 2017
RM255697Superseded patches are not deleted after specified amount of time (RM255697)Affects both Shavlik and PatchLinkAffects both Shavlik and PatchLinktch Collection 2017
RM255647Policy instances of replaced patches that were installed externally remain pending and are installed in every run (RM255647)Affects both Shavlik and PatchLinkAffects both Shavlik and PatchLinkPatch Collection 2017
Log files are not zipped, but simply discardedLog files are not zipped, but simply discarded - instead, an empty "zip" folder is created in the main directoryPatch Collection 2017

Any news on Kaspersky or Bitdefender being updated for spectre or meldown vuln

$
0
0

I was wondering what the plans on this new vulnerability?

Windows 10 1703 XML file - Skip OOBE

$
0
0

Hello,

 

 

Does anyone by chance have a template for the unattend file for Windows 10? 

 

My OS provisioning template for Windows 10 works all the way up to the Configure Target OS section and then when it reboots, it comes up to setting up the machine for Windows 10.  It never fully boots into my image.  And if I do go thru the setup steps, after I login, ldprovisioning never seems to pick back up.  Even after a reboot.

 

I have attached what I am using but it seems it never skips the OOBE section after the image deploys.

MBBScanner has stopped working

$
0
0

Hello,

 

after upgrading agents to 2017.3, when running inventory scan, many computers experience error  MBBScanner has stopped working.

 

Event viewer shows the following:

 

It has not happened on my test machines. So far I have disabled the Scheduled scan, but this is not a solution.

 

Thank you for any input or suggestion how to resolve this.

High CPU Usage by ISSUSER.exe

$
0
0

On LD 9.6 SP1 client I'm seeing issues with ISSUSER.exe running at 100% of one core and sometimes faulting.

Once suggestion was to replace the jscript.v55 file, but that has not resolved the issue.

 

Looking at the application errors  in the diagnostic data in inventory I'm seeing the following

2015-05-29 16_20_06-Inventory - BRDROEDE3NKNWZ1 - __Remote.png

So it appears the LIBEAY32MT.dll is where it's faulting at with an exception code of c0000005

 

Any advice?

Windows 10 remote control extremely sluggish/slow/unresponsive

$
0
0

When remote controlling windows 10 machines, the response to a click can take 2-3 seconds before anything on the screen changes.  Sometimes longer and sometimes it doesn't' do anything at all.  Is there a way to fix this?

Windows 10 1703 XML file - Skip OOBE

$
0
0

Hello,

 

 

Does anyone by chance have a template for the unattend file for Windows 10? 

 

My OS provisioning template for Windows 10 works all the way up to the Configure Target OS section and then when it reboots, it comes up to setting up the machine for Windows 10.  It never fully boots into my image.  And if I do go thru the setup steps, after I login, ldprovisioning never seems to pick back up.  Even after a reboot.

 

I have attached what I am using but it seems it never skips the OOBE section after the image deploys.


Distribution package fails, return code 105

$
0
0

Hi

 

We have just downloaded the LANDESK 9.50 on a server. It is still running in trial mode. Im trying to test Distribution packages.

Im distributing a msi package. The destination has the new agent and it appears to be working fine. When I run the task it fails on a return code 105.

Here  is an extract of what I see in the "view log file" option.

 

 

Processing package : Cisco VOIP Agent
Wed, 10 Apr 2013 10:14:23 File (\\-----\-----\------\-------\-------AgentDesktop.msi) is not in cache
Wed, 10 Apr 2013 10:14:23 Will attempt Peer Download.

Wed, 10 Apr 2013 10:14:23 Will attempt Preferred Server Download.

Wed, 10 Apr 2013 10:14:23 About to call DownloadFiles (1 files) with these settings:
Wed, 10 Apr 2013 10:14:23 m_allowedBandwidthWAN: 100
Wed, 10 Apr 2013 10:14:23 m_allowedBandwidthLAN: 100
Wed, 10 Apr 2013 10:14:23 m_maxDiscoveryThreads: 15
Wed, 10 Apr 2013 10:14:23 m_discardPeriodSeconds: 604800
Wed, 10 Apr 2013 10:14:23 m_preserveDirectoryStructure: 1
Wed, 10 Apr 2013 10:14:23 m_bUseWanBWForPush: 0
Wed, 10 Apr 2013 10:14:23 m_bSynchronize: 0
Wed, 10 Apr 2013 10:14:23 m_downloadControl: AttemptPeer
Wed, 10 Apr 2013 10:14:23 m_preferredServerControl: AttemptPreferredServer
Wed, 10 Apr 2013 10:14:45 processing of package is complete, result -1918107543 (0x8dac0069 - code 105)

 

Where should I be looking to resolve this and any ideas what my problem might be?

 

Regards

Mike

Recent documents in office 2016 (16.0) not showing

$
0
0

We save the registry of our users during logon. We can see that the keys associated with recent files in office are indeed captured by Ivanti Appsense. (personalization Analysis --> edit users registry)

 

they are stored in the following key:

 

[HKEY_CURRENT_USER\Software\Microsoft\Office\16.0\Excel\User MRU\ADAL_C8C3012C979E9D2A2CFF145E26C67C833808516F060DEB7E56C71A9F0F3A86E6\File MRU]

"Item 1"="[F00000000][T01D2CB2A602B2170][O00000000]*H:\\"FILENAME"xlsx"

 

When the user logs on next time, recent files do not show in the office application and the registry setting is not present in the users registry. Other settings are remembered and loaded correctly.

 

appsense.jpg

 

Anyone any ideas? Would be much appreciated!

Any news on Kaspersky or Bitdefender being updated for spectre or meldown vuln

$
0
0

I was wondering what the plans on this new vulnerability?

Write filter on HP thin clients

$
0
0

I want to deploy an application to some HP thin clients.

 

These thin clients have a write filter enabled.

 

If i distribute the application to the thin client it doesn't work unless I first disable the write filter.

 

When I push the Ivanti Agent out to the thin clients it first disables the write filter, reboots, then installs the Agent before enabling the filter again.

 

How do I configure the application so it too does this so i can install it on the thin clients?

 

Thanks.

Batch File to uninstall Adobe Acrobat (all versions)

$
0
0

We have several versions of Acrobat standard and pro installed, that I need to find a quick way to uninstall them.   I have not been able to find uninstall script from adobe that would do this, does anyone know of one or how I could use LANDesk to go about doing this?    The reason we have to remove is the versions we are using are very old and no longer supported, plus have several security issues.

 

 

Thanks

Viewing all 2325 articles
Browse latest View live


<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>