Hi, i want to know how i can configure auto discovery settings for endpoint where agent is not there and install them. is there any requirement to open any port on the network for scan ?
I would start looking at IBM Asset Discovery,
i tried to found doc for asset discover
but do not see any link mostly links are disabled or moved out
This is for 9.2.0. But I guess other versions are similar (Iâm using 9.2.6).
Thanks for your help, i have a doubt i have select one server as scan point and install import nmap service at BES root server, but when i want to run the scan then i found few servers got selected automatically and getting data as scan point . so what is the role of that server which i configured dedicated scan point ?? even i do not see that particular server is scanning anything?
They donât scan automatically. You designate many scan points (ideally, at least one scan point on every IP subnet). Then there is a separate task you can execute to initiate a scan, that is executed by each scan point. The results are uploaded to the root server, which imports the found systems and displays them under the âunmanaged assetsâ tree.
Hi Jason,
I got it, but when i see Run a scan action , it does not list the server where i have opted scan point , but randomly chose some servers. Even when i check the un-managed assets i have seen designated scan point server does not have any info?
I checked when i install NMAP on relay server ( windows 2008R2) , it does not work ? is there any limitation of windows 2012R2 or relay server x64 bit?
Hi @mail2vij
Install designate scan point on your local bigfix server and install same on any one win7 machine and start the NMAP scan through both scan points.
I think you didnât install Importer service on scan point machine thatâs why results not updated into your IBM Bigfix console on Unmanaged asset tab
So please check with this last configuration ( Importer service install on scan point)
Thanks & Regards
Vicky
Results are coming but when i install scan point on relay server it does not work , is there any limitation not to have relay as scan point?
client logs of the relay server where scan point installed. and screen dump.
With default scan
Downloaded âhttp://127.0.0.1:52311/mailbox/files/73/56/735660006f2373c04d94d27155499ee15835f3dcâ as âAction 3486896.fxfâ
Gather::SyncSiteByFile adding files - count: 1
At 05:24:29 -0500 -
Successful Synchronization with site âmailboxsiteâ (version 71,0,0,0,0,1) - âhttp://rootserver:52311/cgi-bin/bfgather.exe/mailboxsite8177259â
At 05:24:30 -0500 -
Processing action site.
At 05:26:13 -0500 -
Report posted successfully
At 05:27:49 -0500 -
GatherHashMV command received.
At 05:27:51 -0500 - opsite190 (http://rootserver:52311/cgi-bin/bfgather.exe/opsite190)
Downloaded âhttp://127.0.0.1:52311/bfmirror/bfsites/manydirlists_154/__diffsite_b673560f22d5080ed1264ace6f5f36e7b3da6846_to_f123344e92dfd9a302257a671586da07c6fd2157â as â__TempUpdateFilenameâ
Gather::SyncSiteByFile adding files - count: 1
At 05:27:52 -0500 -
Successful Synchronization with site âopsite190â (version 3620805,0,0,0,0,614802,1571827,265) - âhttp://rootserver:52311/cgi-bin/bfgather.exe/opsite190â
At 05:27:53 -0500 -
Processing action site.
At 05:29:41 -0500 -
Report posted successfully
At 05:37:11 -0500 -
===============================================================
with custom scan created by me
Command succeeded parameter âcurrent_timeâ=â1469511718â (action:3486898)
Command succeeded parameter ânmapXMLFilePathâ=âC:\Windows\temp\nmap\nmap-PEPWAP07608-1469511718.xmlâ (action:3486898)
Command succeeded delete __appendfile (action:3486898)
Command succeeded delete No âD:\Program Files (x86)\BigFix Enterprise\BES Client__BESData\actionsite\folder.batâ exists to delete, no failure reported (action:3486898)
Command succeeded appendfile @ECHO OFF (action:3486898)
Command succeeded (file created) appendfile @ECHO OFF (action:3486898)
Command succeeded appendfile @ECHO OFF (action:3486898)
Command succeeded appendfile mkdir âC:\Windows\temp\nmapâ > NUL 2>NUL (action:3486898)
Command succeeded move __appendfile folder.bat (action:3486898)
Command started - waithidden folder.bat (action:3486898)
At 05:42:12 -0500 -
Report posted successfully
At 05:42:12 -0500 - actionsite (http://rootserver:52311/cgi-bin/bfgather.exe/actionsite)
Command succeeded (Exit Code=1) waithidden folder.bat (action:3486898)
Command succeeded regset â[HKEY_LOCAL_MACHINE\SOFTWARE\BigFix\EnterpriseClient\BESScanner-NMAP]â âLastScanStartTimeâ=âTue, 26 Jul 2016 05:42:12 -0500â (action:3486898)
Command succeeded delete No âD:\Program Files (x86)\BigFix Enterprise\BES Client__BESData\actionsite\nmapquiet.batâ exists to delete, no failure reported (action:3486898)
Command succeeded delete No âD:\Program Files (x86)\BigFix Enterprise\BES Client__BESData\actionsite__appendfileâ exists to delete, no failure reported (action:3486898)
Command succeeded appendfile @ECHO OFF (action:3486898)
**
Command failed (Relevance substitution failed) appendfile "{pathname of folder "BESScanner-
**NMAP\NMAP" of parent folder of regapp âBESClient.exeâ}\nmap.exe" -sV -sS -sU -p T:22,T:23,T:80,T:135,T:139,T:445,T:61616,U:{value âListenPortâ of key âHKEY_LOCAL_MACHINE\SOFTWARE\BigFix\EnterpriseClient\GlobalOptionsâ of x32 registry} --exclude â{concatenation â,â of (addresses whose (it as string != â0.0.0.0â) of ip interfaces whose (loopback of it = false) of network as string)}â{if (exists key âHKEY_LOCAL_MACHINE\SOFTWARE\BigFix\EnterpriseClient\BESScanner-NMAPâ whose (value âNmapVersionâ of it as string as version = â4.20â) of x32 registry) then " -O1 --osscan-guess" else " -O --osscan-guess"} -PE -PA80 -T 4 â{(unique value of (subnet addresses whose (it as string != â0.0.0.0â) of ip interfaces whose (loopback of it = false) of network as string)) & â/â & (number of bits (0;1;2;3;4;5;6;7) whose (it) of ( it as integer ) of ( if it contains â.â then preceding text of first â.â of it else it ) of ( it; following texts of substrings â.â of it ) of ( unique value of (subnet masks of ip interfaces whose (loopback of it = false) of network as string )) as string) }â -oX â{parameter ânmapXMLFilePathâ}â >NUL 2>NUL (action:3486898)
At 05:42:12 -0500 -
ActionLogMessage: (action:3486898) ending action
At 05:42:12 -0500 - mailboxsite (http://rootserver:52311/cgi-bin/bfgather.exe/mailboxsite8177259)
Not Relevant - Run Nmap with Custom Scan Options - Local Subnet (7/26/2016) -VJ (fixlet:3486898)
Hi @mail2vij
I noticed from log its failed on nmap.exe location find state by default it check the native location(parent folder), So please let us know where you installed nmap scanner its on C:\ or D:\
Regards
Vicky
I think there is an issue with nmap version?