Pre-requisites for Asset Management

This section is applicable to the Professional Edition and Enterprise Edition - Central Server and MSP Edition - Central Server.

All IT assets can be discovered by IT360 from an asset managemnet perspective. For a successful discovery, the target resources should be pingable from the IT360 Central server using the name with which IT360 discovers. 

In IT360, the scanning for Windows Workstation is done using WMI. Windows Management Instrumentation (WMI) is an interface which allows management information to be shared between management applications so that the data from any source can be accessed in a common way.

The Accessibility of the data using WMI is controlled by the RPC and DCOM settings.

RPC (Remote Procedure Call)

RPC (Remote Procedure Call) dynamic port allocation will instruct the RPC program to use a particular random port above 1024 and the static TCP ports 135 and 445. Customers using firewalls may want to control which ports RPC is using so that their firewall router can be configured to forward only these Transmission Control Protocol (TCP) ports.

Opening of all these ports above 1024 might not be feasible. However you can restrict the usage of these random ports to some specific ports (say 5000, 5001, and 5002) by adding manually into the Registry Editor for REG_MULTI_SZ value. Once these ports are been added in the registry, you will have to open these TCP ports including 135 and 445.
In case of Windows Firewall, the Remote Administration for the administrators in each workstation has to be enabled.

DCOM (Distributed Component Object Model)

WMI has default impersonation, authentication, and authentication service (NTLM or Kerberos) settings that the target computer requires. For this, ensure that the correct DCOM (Distributed Component Object Model) settings and WMI namespace security settings are enabled for the connection.

You can configure DCOM settings for WMI using the DCOM Config utility (DCOMCnfg.exe) found in Administrative Tools in Control Panel. This utility exposes the settings that enable certain users to connect to the computer remotely through DCOM. Members of the Administrators group are allowed to remotely connect to the computer by default. With this utility you can set the security to start, access, and configure the WMI service.

Communication Protocol Login Credentials Ports
WMI [supports only windows platform]
Credentials of Domain Controller (User requires Local Administrator role or a Domain Administrator role for WMI credentials)
TCP 135, 445, and one random port greater then 1024
 

Scanning Linux, Solaris, MAC and AIX Machines

Communication Protocol Login Credentials Ports
Telnet
Telnet credentials
23
SSH
SSH credentials
22

Scanning Printers, Routers, Switches and Access Points

Communication Protocol Login Credentials Ports
SNMP
SNMP credentials
161
SSH
SSH credentials
22

Note:  In case of Non-English Operating System, TCP port 7 should be opened in the firewall

Distributed Asset Scan

IT360 helps you scan assets distributed across multiple sites (i.e) Assets which are not connected to the network (or) Assets which are not reachable from the central IT360 ServiceDesk.  This can be done with the help of Asset explorer Probe which can be installed in the remote network which helps to scan the Assets in the remote network, export the Asset information into a zip file and then import the information into the Central IT360 ServiceDesk.

In order to use Distributed Asset Scan feature we have to understand the following terms.

You can download and Install Asset Explorer Probe in the remote network by downloading the exe file from the website below.
http://www.manageengine.com/products/asset-explorer/download.html

On completing the installation, when you start the application and connect to the client for the first time, it will prompt you to run either as a Central server or Probe (Remote server). Choose Remote server.

You will be able to scan assets and perform scan configuration in Remote server as you do in IT360 ServiceDesk. You can then export scanned Asset information from the Remote server under Admin -> Distributed Asset Scan. This will export the scanned Asset information as a zip file. These exported assets can be imported into your central IT360 ServiceDesk server under Admin --> Distributed Asset Scan. By doing this we have a track of all our Assets in the organization in one place which makes it easier for us the manage them. Also Distributed asset scan functionality helps to reduce the load in IT360 ServiceDesk server. Customers interested in using the Distributed scan feature can get the Asset Explorer Probe (Remote server) license from our licensing team (This license will be equivalent to the number of nodes purchased for IT360 ServiceDesk) which can be applied in the Asset explorer Remote server installations.



Copyright © 2014, ZOHO Corp. All Rights Reserved.