Hi Community.
I have the next problem.
I have ~500 machines connected to the BigFix Server for one of my clients.
Physically, they all in one country, and the Server is in the other.
They are spitted in groups of 2-3-4 machines and this group has one of them as a relay, so the structure is something like Server --> 150 Relays + 1-2-3 clients per relay.
We have an issue, when relay machines has “last report time” equal to the time of last machine restart.
Basically, there is no data from these machines until we reboot them.
What is more strange, is that data from normal clients coming to the server quickly (5-10 minutes).
So, if I create new analysis and applicability is “All computers”, all normal machines will become relevant in 5-10-15 minutes. All “relay” machines will not become applicable until we reboot this machine. These relay machines or “offline” relative to the Server and report only 1 time after machine restarted (or BigFix Service restart).
We had a 'fight" with our network team to double check if all ports and protocols available for “relay” machines.
We used this traffic network guide to create a list of needed ports/protocols to be open:
https://support.hcltechsw.com/csm?id=kb_article&sysparm_article=KB0073040&sys_kb_id=278d471e1bd818d0c1f9759d1e4bcb7b
They swear that all “ports and protocols are allowed”.
Can you, please, help me to understand what is happening and how correctly investigate and fix this issue?
Best regards,
Anton Paradovskyi.