| Author |
Message |
Monkey
Guest
|
Posted:
Tue Jan 11, 2005 3:49 pm Post subject:
MOM across WAN |
|
|
i have manually installed the agent at a site separated by firewalls, and
have opened up TCP/UDP 1270.
In the agent setup I specified the management server name in format
testserver.ad.testdomain.com and specified the management group name just as
testserver_mg
I am going to open the ports up in/out but would like to know if I have
missed anything?
Thanks |
|
| Back to top |
|
 |
Arie de Haan
Guest
|
Posted:
Tue Jan 11, 2005 4:20 pm Post subject:
Re: MOM across WAN |
|
|
In article <3E7FCC6F-BF8B-4E9C-88C1-3C59F9608387@microsoft.com>,
Monkey@discussions.microsoft.com says...
| Quote: | i have manually installed the agent at a site separated by firewalls, and
have opened up TCP/UDP 1270.
In the agent setup I specified the management server name in format
testserver.ad.testdomain.com and specified the management group name just as
testserver_mg
I am going to open the ports up in/out but would like to know if I have
missed anything?
Thanks
In the admin console go to: Administration->Global settings |
Double click on: Management servers
Click on tab: Agents install
UNcheck: Reject new manual agent installations
You possibly also have to Disable mutual authentication, i presume these
machines are in seperate untrusted domains/forests
Click in Administration->Global settings on: Security
UNselect: Mutual authentication required
also check out chapter 4 of the depl.guide:
http://www.microsoft.com/technet/prodtechnol/mom/mom2005/deploy/ch4/depl
oy_agents.mspx
--
Greetz,
Arie
This posting is provide "AS IS" with no guarantees, warranties, rigths
etc. |
|
| Back to top |
|
 |
Monkey
Guest
|
Posted:
Tue Jan 11, 2005 10:43 pm Post subject:
Re: MOM across WAN |
|
|
thanks mate
i was just a little curious about the format of names i put for the
'management server name' and the management group name?
have you got this working across a WAN to an untrusted domain?
Do i need to add a host record for these entries on the DNS server?
"Arie de Haan" wrote:
| Quote: | In article <3E7FCC6F-BF8B-4E9C-88C1-3C59F9608387@microsoft.com>,
Monkey@discussions.microsoft.com says...
i have manually installed the agent at a site separated by firewalls, and
have opened up TCP/UDP 1270.
In the agent setup I specified the management server name in format
testserver.ad.testdomain.com and specified the management group name just as
testserver_mg
I am going to open the ports up in/out but would like to know if I have
missed anything?
Thanks
In the admin console go to: Administration->Global settings
Double click on: Management servers
Click on tab: Agents install
UNcheck: Reject new manual agent installations
You possibly also have to Disable mutual authentication, i presume these
machines are in seperate untrusted domains/forests
Click in Administration->Global settings on: Security
UNselect: Mutual authentication required
also check out chapter 4 of the depl.guide:
http://www.microsoft.com/technet/prodtechnol/mom/mom2005/deploy/ch4/depl
oy_agents.mspx
--
Greetz,
Arie
This posting is provide "AS IS" with no guarantees, warranties, rigths
etc.
|
|
|
| Back to top |
|
 |
|
|
|
|