Monitoring of the BONE located behind a firewall

We must monitor the infrastructure of the operating system on our web servers. These servers are locked for NIS accounts SSH connections, but we can configure a local user with permissions of SSH to a remote agent.

If we wanted to install a Manager agent on that server instead, is anyway to configure agent manager so that the data is only collected in a survey of the FMS, rather than pushing for the https port 8443 on network internal? Basically, do the transfer information officer Manager of a 'pull' instead of a 'push '.

Or y at - it a way to get this information to the FMS server internal without opening a two-way port, or not allowing a connection on one direction to be open?

Or the bottom line here - what is the accepted best practice to create a secure communication information of OS of DMZ servers behind a firewall of SGF?

Unfortunately, it is currently the only solution.

In the next major release, we'll add a feature where you can enable reverse-vote for Manager of the specific agent. Those who would be interviewed by the FMS instead of pushing their data and the connection will always be initialized by the FMS.

This will reverse the direction of the connection and the FMS now needs to open a connection in the demilitarized zone. This will remove the requirement to open an outgoing socket of the DMZ to the host of the FMS.

Stefan

Tags: Dell Tech

Similar Questions

  • SX10 - how to access the web interface behind a firewall

    Howdy

    I have a very simple configuration, router and behind her SX10. I can't access the web interface of the remote unit. Is there a port that I need to activate or something?

    When the device was connected directly to the modem, with the public IP address, I was able to connect to the web interface.

    any suggestions here?

    I enter anything in the field AllowRemote.

    Thanks in advance!

    Web interface can be accessed using HTTP ether (80) or HTTPS (443).  To you how you want to deploy, but you can use NAT on the router, port forwarding, or even put the SX10 in DMZ on the router.

  • Why Microsoft did remove the ability for Windows Vista to install on herself from one location other than being inside the BONE you want to fix it?

    No Option to install repair - SAD

    Hello

    Why Microsoft removed the ability for Windows Vista to install on herself from one location other than being inside the BONE you want to repair.

    I recently had a problem where Vista Business 64-bit would only boot to a black screen with a mobile cursor - KSOD.   Who, in searching the Web I found is a fairly common problem with Vista.  I discovered that my only option was about to reinstall Vista CLEAN and all the other programs I had installed under it.  I can't believe that Microsoft released the 'repair installation option"similar to that of Windows XP, where you can hit the"R"key during installation and we left with nothing but the"System Restore"options and"Startup Repair ".  Neither of which has helped in my situation.  Since then, this was a dual system boot with XP Pro, then any restore point has been removed from the partition to Vista anytime, I started another recognized problem, by Microsoft, which Microsoft has made no significant effort to fix, in addition to recommending that you hide the partion Vista in XP - a whole of XP.  That beats a little the entire purpose of dual boot.

    As I tried to start in safe mode, it left me at the same point as a normal boot - black screen with a cursor.  I tried ctrl + alt + delete and nothing. Two Windows RE options did not help me.  This left me no option but to the completely reinstall Vista.   Why Microsoft did remove the ability for Windows Vista to install on herself from one location other than being inside the BONE you want to repair.. Please don't tell me that it is because Vista uses an image file instead of an installation as XP system.   I see no other reason for not allowing the upgrade of outside BONE in addition to Microsofts greed and paranoia that he can transform the operating system easier to install illegally.  I hope that some third party has actually changed the Vista installation routine to allow you to install Vista on itself, because as it is, it's really hard for me to even recommend Vista as the operating system or install any where else, if not the only recourse after loading OS, is to reinstall completely.

    Adobe, Autodesk, and almost all other software publishers... allow you to perform a "REPAIR" of their software installation, if something prevents you to load after installation.  Even MS Office has a routine repair.  Ms has an internal version of the Setup routine which allows outside the OS upgrade option that you want to "Upgrade" / repair? ".  If not, why?

    -Todd w.

    "Why Microsoft removed the ability for Windows Vista to install on herself from one location other than being inside the BONE you want to repair."

    «.. . After using XP's repair function, the operating system itself would become less stable and frankly not in a good state of repair. »

    As Todd, is the answer.

    "This response does not hold water as on one of my computers I've been running Windows XP for about four years now, after a repair install.

    Then, you were lucky.  Try to replace the system files on a computer that does not start even at a desk or safe mode usually will get a return to office, but will probably repeat the same problem in a few weeks.  Tech professional would only use this function to retrieve the data before a complete reinstallation.

    "I thought that this area was a place to really get answers instead of the ole same"answers of bs that are on all the other forums."

    It is a place that will try to help you fix your computer if you have problems.  It has technicians in computing, no decision-makers, developers or executives.  We will try to answer technical questions about problems you might have with Windows Vista.

    If you want to have input on the future of Microsoft operating systems, then help you beta-test and provide feedback to the developers.  Windows 7 and IE 8 are currently in beta.

    Another possible place you could make suggestions which could see the developers would be:

    https://connect.Microsoft.com/default.aspx

    Brent
    Microsoft Answers Support Engineer
    Visit our Microsoft answers feedback Forum and let us know what you think.

  • tension springs located behind the ink cartridges

    Does anyone have a photo of the spring tension located behind the ink cartridges?  I took them off my niece printer and now can't know where he's going.  Help, please.   Thank you...

    Please look at this: http://h30434.www3.hp.com/t5/Inkjet-Printing/Officejet-4620-2-silver-colored-tension-springs-located/m-p/5406551#M513426

  • OfficeJet 4620: Officejet 4620 2 colorful money of the tension springs located behind the printer cartridges

    I really need help.  I need a picture of the 2 springs of voltage silver located behind the printers in the printer cartridges.  I followed most of the instructions to clean the print heads available on this forum, but has failed to take a picture of them so I do not know where to install the.  I would really appreciate a photo.  Help.

    PORF kindly sent a picture to me and I was able to go back to the printer.  I took a photo to someone else who failed to take a picture while following the instructions on the following post: http://h30434.www3.hp.com/t5/Inkjet-Printing/My-Officejet-4620-will-not-print-the-black-ink/td-p/2235905

  • What I need to know is the name and location of the executable that runs when you click on detect monitors in the menu screen resolution of windows 7?

    Original title: name/location of the executable that runs when you click on detect monitors?

    What I need to know is the name and location of the executable that runs when you click on detect monitors in the menu screen resolution of windows 7?

    Hello

    Your question is better suited in the MSDN forums. Please post your question in the MSDN forums.

    You can follow the link to your question:
    http://social.msdn.Microsoft.com/forums/en-us/categories/

    It will be useful.

  • I want to cut out spaces (bottom) of a ramp, so when I move the ramp to another location, you will be able to see through the cutting of the spaces and see the new view behind the railing

    I want to cut out spaces (bottom) of a ramp, so when I move the ramp to another location, you will be able to see through the cutting of the spaces and see the new view behind the railing

    marvwfactor

    What version of Premiere Elements and on what operating system works - it?

    Video or?

    Waiting for more information, you can apply ChromaKey (an effect of overlay of the effects of the program) to convert the solid color background areas in transparency. The success will depend on the nature of the solid color and how his strong colorrelates to the rest of the colors in the image.

    Please review and consider and provide more information, so that we can give you an answer with substance.

    Thank you.

    RTA

  • It is possible to configure router CISCO1921/K9 from site to Site vpn behind a firewall?

    I am looking to buy CISCO1921/K9 to configure vpn site to site with Amazon VPN. We are behind a firewall. I try to install the new CISCO1921/K9 router according to the scheme of quick text below. My setup work? and what are the ports will it transfer to my firewall?

    INTERNET--> Modem to ISP---> firewall - CISCO1921/K9

    Hi Paul,.

    (192.168.1.0/24) - router (10.1.1.1)-(10.1.1.2) firewall(81.92.61.x/27)---Internet

    The configuration is very simple...

    1. There will be no modifications on the configuration of the VPN router with the exception that the interface of the router (turning to the firewall) will be to have private IP 10.1.1.1

    2. you will need to take a public IP of your range of public (e.g. 81.92.61.2) and will share the same to your remote location which they set up as peers IP to their end.

    3. now you have to configure 2 NAT type on your firewall.

    NAT source:-when your router will initiate VPN

    Before NAT: Destination - Source 10.1.1.1-(homologous remote IP)

    After NAT: Destination - Source 81.92.61.2-(homologous remote IP)

    Destination NAT:-when the remote location will launch the VPN

    before NAT: Destination - Source (remote peer IP)-(81.92.61.2)

    After NAT: Destination - Source (remote peer IP)-(10.1.1.1)

    I hope this is clear :)

  • Windows Update has disappeared from the BONE. __

    I am using windows 7 32 bit.
    Windows Update gives me an error "Windows update does not work because the service is not running. Please try to restart the computer. When I open windows update by using the start menu, it takes about two minutes to open, then there is a red X beside where it says click to launch updates. When I click that is gives the above error.
    Also in my fix PC next to the clock. She has that I click so I can not change this setting either this "change window update.
    Seems that windows update has disappeared from the BONE.

    Hello

    Welcome to the Microsoft answers community site. I suggest you try these options:

    Option 1: Make sure that Windows Update Service is running, or if a force start it takes

    1. open run it and type services.msc, and then press ENTER.

    2 locate the underside of services in all install services list.

    Windows Update (a)

    (b) BITS (Background Intelligent Transfer Service)

    (c) cryptographic Services

    3. check that the status is started. If the condition column is blank, right-click on the service and select start.

    4. always make sure that the Startup Type is set to automatic, and then restart the computer.

    Option 2: How to reset the Windows Update components?

    Run the Microsoft Fixit tool to reset Windows Component Update.

    http://support.Microsoft.com/kb/971058

    See also http://windows.microsoft.com/en-US/windows-vista/Troubleshoot-problems-with-installing-updates

    Option 3: search for viruses and malware

    (A) online scanner to check if a virus is a cause of this problem. Follow the link to run a scan online http://onecare.live.com/site/en-au/default.htm?mkt=en-au

    Or use Microsoft Security Essentials - free

    http://www.Microsoft.com/Security_Essentials/

    (B) check for the shape of software malware malicious software removal tool

    http://www.Microsoft.com/security/malwareremove/default.mspx

    Or

    Follow the link below on how to get rid of malware: http://social.answers.microsoft.com/Forums/en-US/vistasecurity/thread/ba80504b-61f1-4d71-960f-b561798b7b42

    Let me know if it works. Good luck!

    Hope this information is useful.

    Thank you and best regards,

    KKS Vijay

    [If this post can help solve your problem, please click the 'Mark as answer' or 'Useful' at the top of this message.] [Marking a post as answer, or relatively useful, you help others find the answer more quickly.]

  • "Could access the network location:.."

    I get the "could access the network location:. «error with installing and uninstalling of programs, i.e. iTunes, Quicktime.»»
    I checked the Internet and found registry patches, but they have not worked for me. I tried the Fix It program in one of the solutions, not good.  I also stop my firewall and anti-virus and tried to install it that way. no go.

    I have Windows XP, SP3

    any suggestions?

    I thought about it... have an external hard drive which I usually turned off when the use not. I tried to install everything with it on and it worked.
    Thanks for your help

  • How can I move files and leave a shortcut.lnk pointing to the new location.

    I'm trying to move only a TON of old files to a hard drive to free up space to backup.  I can't empty just them, it's a working environment with integrated (and archaic) process.  They must be able to find the new files without go hunting for them.  How can I move all the files that has not been changed since 2 years and leaves a link behind that points to the new location?

    I used successfully a utility call NoClone.  The goal is to search for duplicate files, but it has a way to specify any search string (date function as you requested) and then move all files to a new location, leaving behind .lnk files

    I used it to clear space on file shares, any movement toward a archive read-only stored on a NAS that gets backed up once per year.  In this way, nothing changes on the NAS of the end user (no need to save often).  If you need to edit the file, they copy him on its original location.

    If you have a lot of files, download the business version.

    In recent years I finally used, so I don't know if there is a newer version that might not work as did the old version.

  • ACS 4.0 behind a firewall

    Hi, we have an ACS 4.0 behind a firewall...

    I want to know what are the ports that must be open beyond 2002 to end of remote connection... ?

    Any idea... ?

    Hello

    ACS is accessible via tcp, 2002, for the initial connection. For subsequent access (moving from one page to the other), it will be used at random ports 2003 or higher (tcp).

    To access this box remotely, you must open a range of ports, for example-> 3500 2002 or 2002-> 5000. PLS, be careful when you specify the range, as too many ports allowed ports COULD present a risk to your ACS server.

    example:

    list of access outside the range of allowed hosts 2002 5000 tcp

    Hope this helps.

    Rgds,

    AK

  • Broker configuration files not be created at the level of the BONE

    DB version: 12.1.0.2 on Oracle Linux 6.7

    Type: Physical standby

    I'm trying to set up data guard broker for my own DB. Primary and standby phyical are autonomous DBs.

    As the first step, I tried to create a broker configuration files in the following locations. But it is not created is at the level of the BONE.

    No idea why?

    SQL > ALTER SYSTEM SET DG_BROKER_CONFIG_FILE1 = ' / oradata/DG_BROKER/dr1APGCMS.dat' scope = both;

    Modified system.

    SQL > ALTER SYSTEM SET DG_BROKER_CONFIG_FILE2 = ' / datastore/DG_BROKER/dr2APGCMS.dat' scope = both;

    Modified system.

    -The configuration files will be created at the level of the BONE

    $ ls-l /oradata/DG_BROKER/dr1APGCMS.dat

    method: cannot access the /oradata/DG_BROKER/dr1APGCMS.dat: no such file or directory

    $

    $

    $ ls-l /datastore/DG_BROKER/dr2APGCMS.dat

    method: cannot access the /datastore/DG_BROKER/dr2APGCMS.dat: no such file or directory

    So, I thought that the configuration files will be created only when Michael is started. So, I started using

    SQL > alter system set dg_broker_start = TRUE scope = both;

    Modified system.

    But the configuration files are not yet created. These directories are empty. I can see that the process Michael started in elementary school

    $ ps - ef | grep Michael

    Oracle 7577 1 0 22:43?        00:00:00 ora_dmon_APGCMS

    -extract from the primary alerts log

    ALTER SYSTEM SET dg_broker_config_file1='/oradata/DG_BROKER/dr1APGCMS.dat' SCOPE = BOTH;

    Sat Dec 26 22:41:49 2015

    ALTER SYSTEM SET dg_broker_config_file2='/datastore/DG_BROKER/dr2APGCMS.dat' SCOPE = BOTH;

    Sat Dec 26 22:43:39 2015

    From MICHAEL background process

    Sat Dec 26 22:43:39 2015

    ALTER SYSTEM SET dg_broker_start = TRUE SCOPE = BOTH;

    Sat Dec 26 22:43:39 2015

    MICHAEL started with pid = 40, OS id = 7577

    Sat Dec 26 22:43:42 2015

    From Data Guard Broker (MICHAEL)

    From INSV background process

    Sat Dec 26 22:43:47 2015

    INSV started with pid = 43, OS id = 7579

    Sorry... I just removed the post for security reasons. (Host names has been a matter of concern). But I have the day before with my comment. The configuration files will be created once you create the dgmgrl configuration.

    -Jonathan Rolland

  • desktop.ini files are showing even after masking the BONES protected files and they are everywhere

    Everything is almost described in the title

    Out of nowhere this "desktop.ini" file started appearing in almost all of the folders and delete them changes icons of folders where they exist in the settings and I found that the only way to hide them is to hide one in each folder specially after finding that they are not considered "BONES protected files" by the system or it was to hide just after masking "Protected OS files" but cache the one by one is not the best option to consider, although unlike the real "desktop.ini file" in the Users\User\Desktop folder that is considered protected operating system file and mask normally with the protected operating system files.

    Now, I want to just hide in a process that is not separately if possible please.

    For more details:

    -The content of the original "desktop.ini" file in the Users\User\Desktop folder is different from those non-hidden other those as follows:

    Contents of the Original file:

    --------------------------------------------------------------------------------

    [. ShellClassInfo]
    LocalizedResourceName=@%SystemRoot%\system32\shell32.dll,-21769
    IconResource=%SystemRoot%\system32\imageres.dll,-183

    --------------------------------------------------------------------------------

    No hidden files content:

    -------------------------------------------------------------------------------

    [. ShellClassInfo]
    IconResource = D:\Softwares\Icons\Metro Collection\Metro_Tiles_1\Metro ICO\System Icons\OTHERS\OTHERS\Journal.ico,0
    [ViewState]
    Mode =
    Vid =
    FolderType = generic

    -------------------------------------------------------------------------------

    Comment: The "IconResource' location changes depending on the icon of the folder where the file exists.

    Hello

    I found a link that doesn't address the root cause of your problem, but describes a method to hide the files with an extension of certain... The link describes a .nfo extension, but I think it would work for a .ini as well...

    Instead of going into the folder as shown, go to the root of the drive itself...

    http://www.SevenForums.com/customization/81717-hide-all-certain-file-type-folder-tree.html

    I just did a little test, and you need to open a. CMD invite admin... IN the drive or folder you want to change... For example, open C:\ and click on FILE... The option to open a. CMD Prompt will be on the list...

  • The best location for the .vswp file

    I use RecoveProint EMC to replicate my virtual machine for use with MRS. While the implimentaion of EMC RecoverPoint recommended that we allocate a hard sepperate for pagefile guest on a non replicated operating system LUN as the page file on the guest has been constantly evolving.  We have seen a significant reduction in the rate change that enabled us to reach the RPO we were after and with our bandwidth allocated for replication.  I am able to reproduce the LUN for the swap of OS files once and leave.   I'm utilizeing now the option "Migrate storage" with in VCenter to consolidate the VM running on a given LUN and I noticed that when I move a hard to the BONE (not hard for the OS swap) two hard files are transferred to the new location.  Then I discovered that to move one of the files hard for a given virtual machine I have to turn off the virtual machine and to migrate the only hard.  Not perfect, but whatever. To do this, I noticed that the "VM workplace" has been changed to the location of my guest operating system swap file hard.

    It asked if it is a good place for hosting the .vswp.  The .vswp has a significant amount of change as well?  And as the OS swap hard matches the basically wiped clean during a restart?

    Hope it makes sense.

    The .vswp file is created on the virtual machine market. Its size is equal to the amount of UNRESERVED vRAM. This means that if you have a virtual machine with 4 GB of vRAM, but 3 GB is reserved, the .vswp is 1 GB. The .vswp is used as a last resort, if there is a physical RAM memory conflict. It is called after the transparent page sharing or balooning. If you allocate no more of RAM physical vRAM, then it will never be used. BUT, it is removed turn off power and created on the power. If the virtual machine is always on, so no worries with a bandwidth of replication.

    You can place files .vswp on local storage or a separate logical unit number. As Andrew said, you can make this a whole cluster framework if you want. It's all about management. If you are comfortable with it being separated from the .vmx, nvram, etc.. Usually, the concern is the amount of what is essentially lost a costly LUN disk, so it is moved to the cheaper SCSI disk. Assuming that there is no oversubscription of RAM, it will never be used. Rather than taking up valuable disk space, why not just use a reserve of memory in order to avoid its use definitely?

    Dave Convery

    VMware vExpert 2009

    http://www.dailyhypervisor.com

    http://Twitter.com/dconvery

    Prudent. We do not want to make of this.

    Bill Watterson, "Calvin and Hobbes".

Maybe you are looking for