A windows network is typically based on Windows Active Directory or Workgroup.
Domain can be added in Browser Security Plus in two ways:
Both the above options will open the Add Domain dialog for accepting the following information:
Parameter | Description | Type |
Domain Name | Name of the domain. This is usually the netbios or the pre-2000 name of the domain | Mandatory |
Network Type | Select "Active Directory" option | Mandatory |
Domain User Name | This should be the domain user name that has administrative privileges in all the computers of that domain. It is recommended to have a dedicated domain admin user account for Browser Security Plus whose password policy is set to "Never Expire" | Mandatory |
Password | Password of the domain admin user | Mandatory |
AD Domain Name | The DNS name of the Active Directory Domain | Mandatory |
Domain Controller Name | The name of the domain controller. If you have multiple domain controllers, provide the name of the domain controller that is nearest to the computer where Browser Security Plus Server is installed | Mandatory |
Similar to domains, Workgroups can be added in Browser Security Plus in two ways:
Both the above options will open the Add Domain dialog for accepting the following information:
Parameter | Description | Type |
Domain Name | The name of the workgroup | Mandatory |
Network Type | Select "Workgroup" option | Mandatory |
Admin User Name | A common user name which has administrative privileges in all the computers within that workgroup. It is recommended to have a dedicated user account for Browser Security Plus whose password policy is set to "Never Expire" | Mandatory |
Password | The password of the common admin user | Mandatory |
DNS Suffix | This is required to uniquely identify a computer within a workgroup. For example, if you have a computer with the same name in two different workgroups, the DNS suffix is used to identify it uniquely | Optional |
Computers in Novel eDirectory based network are managed as Workgroups in Browser Security Plus.
Browser Security Plus establishes a remote connection to the managed computers to perform the various Desktop Management activities like agent installation / upgradation and patch/inventory scanning, which requires an admin credential. The credential provided when adding a domain/workgroup is used for this purpose. When the username/password provided while adding the domain/workgroup has changed later due to password expiry or other reasons, you need to update the correct credentials from the Admin tab --> SoM page to avoid getting "Access Denied" errors while performing any remote operations.
To update the credentials, click the Edit Credentials button available in the SoM page. Select the Domain/Workgroup from the select box, update the username/password and click Update Domain Details.
You can automate the process of adding and removing computers that are managed by Browser Security Plus by configuring the SoM policy. This helps you to Synchronize computers from Active Directory. So you will find the computers that are newly added in the Active Directory, but are not managed in Browser Security Plus and the computers that have been deleted from the Active Directory. This helps you to quickly add or remove computers from being managed using Browser Security Plus.
The synchronization will happen at a specified time everyday and can be configured to notify you whenever a change is detected. You can also initiate the sync option as and when required with sync only modified data and sync all option. Sync only modified data will list only the changes that has happened after the previous sync. So the computers which are added or removed after the previous sync will be listed here. Sync all option can be used to get the complete list of all the computers that has been added or removed in the active directory.
To enable synchronization follow the steps below:
Note: If you do not see all the domains, you should check and specify the credentials first from SoM --> Computers --> Edit Credential. If you wish to be notified on any change, select "Enable Email Notification" and specify the "To Address", subject and message.
You can choose to exclude computers for management purpose, within Browser Security Plus. Excluding here, refers to removing the computers, which need not be managed by Browser Security Plus. You can select them, click on "Exclude Computers", button by navigating here : Browser Security Plus web console -> SoM ->, SoM Policy -> Exclude Computers. You can view all the excluded computers, and choose to install agents anytime in the future.