DESlock+ Basic Setup Guide ENTERPRISE SERVER ESSENTIAL/STANDARD/PRO



Similar documents
DESLock+ Basic Setup Guide Version 1.20, rev: June 9th 2014

MadCap Software. Upgrading Guide. Pulse

DriveLock Quick Start Guide

ESET REMOTE ADMINISTRATOR. Migration guide

Installation Notes for Outpost Network Security (ONS) version 3.2

DESlock+ Enterprise Server Manual

Secure Agent Quick Start for Windows

How to Install Microsoft Mobile Information Server 2002 Server ActiveSync. Joey Masterson

ECA IIS Instructions. January 2005

Deploying BitDefender Client Security and BitDefender Windows Server Solutions

Quickstart Guide. First Edition, Published September Remote Administrator / NOD32 Antivirus 4 Business Edition


Basic Setup Guide. Remote Administrator 4 NOD32 Antivirus 4 Business Edition Smart Security 4 Business Edition

Lepide Software. LepideAuditor for File Server [CONFIGURATION GUIDE] This guide informs How to configure settings for first time usage of the software

Getting started. Symantec AntiVirus Corporate Edition. About Symantec AntiVirus. How to get started

Sophos Anti-Virus for NetApp Storage Systems startup guide

Deploying BitDefender Client Security and BitDefender Windows Server Solutions

NSi Mobile Installation Guide. Version 6.2

Kaseya Server Instal ation User Guide June 6, 2008

Integration Guide. Microsoft Active Directory Rights Management Services (AD RMS) Microsoft Windows Server 2008

Step-by-Step Guide to Setup Instant Messaging (IM) Workspace Datasheet

4cast Client Specification and Installation

NETWRIX EVENT LOG MANAGER

LifeSize Control Installation Guide

Active Directory Management. Agent Deployment Guide

Copyright 2012 Trend Micro Incorporated. All rights reserved.


How To Set Up Safetica Insight 9 (Safetica) For A Safetrica Management Service (Sms) For An Ipad Or Ipad (Smb) (Sbc) (For A Safetaica) (

Getting Started. Symantec Client Security. About Symantec Client Security. How to get started

ESET SECURE AUTHENTICATION. API SSL Certificate Replacement

Wavecrest Certificate

StarWind iscsi SAN & NAS: Configuring HA Storage for Hyper-V October 2012

Sophos Anti-Virus for NetApp Storage Systems user guide. Product version: 3.0

STATISTICA VERSION 12 STATISTICA ENTERPRISE SMALL BUSINESS INSTALLATION INSTRUCTIONS

1. Installation Overview

Sophos Endpoint Security and Control standalone startup guide

Dell SupportAssist Version 2.0 for Dell OpenManage Essentials Quick Start Guide

StarWind SMI-S Agent: Storage Provider for SCVMM April 2012

MANUFACTURER RamSoft Incorporated 243 College St, Suite 100 Toronto, ON M5T 1R5 CANADA

Server Installation Guide ZENworks Patch Management 6.4 SP2

Cloud Services ADM. Agent Deployment Guide

Integration with Active Directory

LepideAuditor Suite for File Server. Installation and Configuration Guide

Installation & Configuration Guide

Installing Windows Server Update Services (WSUS) on Windows Server 2012 R2 Essentials

Trend ScanMail. for Microsoft Exchange. Quick Start Guide

Windows Clients and GoPrint Print Queues

Installing Windows Rights Management Services with Service Pack 2 Step-by- Step Guide

Sophos Mobile Control Installation guide

Installing and Configuring vcloud Connector


Installation Guide for Pulse on Windows Server 2012

Pearl Echo Installation Checklist

ESET CYBER SECURITY PRO for Mac Quick Start Guide. Click here to download the most recent version of this document

Synchronization Agent Configuration Guide

Setting Up SSL on IIS6 for MEGA Advisor

Sophos Anti-Virus standalone startup guide. For Windows and Mac OS X

Dell Statistica Statistica Enterprise Installation Instructions

efolder BDR for Veeam Cloud Connection Guide

Installation Instruction STATISTICA Enterprise Small Business

Installation Guide for Pulse on Windows Server 2008R2

StarWind iscsi SAN Software: Tape Drives Using StarWind and Symantec Backup Exec

Enterprise Manager. Version 6.2. Installation Guide

ESET SECURE AUTHENTICATION. Check Point Software SSL VPN Integration Guide

Server Installation ZENworks Mobile Management 2.7.x August 2013

STATISTICA VERSION 9 STATISTICA ENTERPRISE INSTALLATION INSTRUCTIONS FOR USE WITH TERMINAL SERVER

Installing GFI Network Server Monitor

Sophos for Microsoft SharePoint startup guide

StarWind iscsi SAN & NAS: Configuring HA Shared Storage for Scale- Out File Servers in Windows Server 2012 January 2013

Trial environment setup. Exchange Server Archiver - 3.0

Installation Overview

StarWind iscsi SAN Software: Installing StarWind on Windows Server 2008 R2 Server Core

Quick Install Guide. Lumension Endpoint Management and Security Suite 7.1

Installing GFI Network Server Monitor

HELP DOCUMENTATION E-SSOM DEPLOYMENT GUIDE

Remote Management System

MobileStatus Server Installation and Configuration Guide

AD RMS Step-by-Step Guide

ZENworks 11 Support Pack 4 Full Disk Encryption Agent Reference. May 2016

Set Up Setup with Microsoft Outlook 2007 using POP3

How To Manage Storage With Novell Storage Manager 3.X For Active Directory

AV Management Dashboard

CTERA Agent for Windows

Sage HRMS 2014 Sage Employee Self Service Tech Installation Guide for Windows 2003, 2008, and October 2013

PHD Virtual Backup for Hyper-V

Quick Start Guide for VMware and Windows 7

Avalanche Remote Control User Guide. Version 4.1.3

Polycom CMA System Upgrade Guide

Tool Tip. SyAM Management Utilities and Non-Admin Domain Users

Best Practices & Deployment SurfControl Mobile Filter v

Installation Instruction STATISTICA Enterprise Server

Windows Server Update Services 3.0 SP2 Step By Step Guide

uh6 efolder BDR Guide for Veeam Page 1 of 36

etoken Enterprise For: SSL SSL with etoken

STATISTICA VERSION 10 STATISTICA ENTERPRISE SERVER INSTALLATION INSTRUCTIONS

Active Directory integration with CloudByte ElastiStor

Advanced Event Viewer Manual

PC-Duo Web Console Installation Guide

Basic Exchange Setup Guide

Full Disk Encryption Agent Reference

Transcription:

DESlock+ Basic Setup Guide ENTERPRISE SERVER ESSENTIAL/STANDARD/PRO

Contents Overview...1 System requirements...1 Enterprise Server:...1 Client PCs:...1 Section 1: Before installing...1 Section 2: Download and installation...1 Section 3: Configure DESlock+ Enterprise Server... 2 3.1 Create your organization...2 3.2 Add your license key...2 3.3 Configure SMTP Server settings (optional)...2 3.4 Sync with Active Directory (optional)...2 3.5 Define your encryption key(s)...3 3.6 Add users to your organization...3 3.7 Generate activation codes for users...3 Section 4: Push the DESlock+ installation package to client workstations... 4 4.1 Identify network workstations and distribute the installation package...4 4.2 Complete installation on client workstations...4 4.3 Add active users to Encryption Key Groups...4 Create a key group and assign encryption keys:... 4 Post key-files to users... 4 Section 5: Initiate Full-Disk-Encryption (DESlock+ Pro only)... 5 Send the FDE command from DESlock+ Enterprise Server...5 DESlock+ ENTERPRISE SERVER ESSENTIAL/STANDARD/PRO Copyright 2014 ESET, spol. s r.o. All rights reserved. No part of this documentation may be reproduced, stored in a retrieval system or transmitted in any form or by any means, electronic, mechanical, photocopying, recording, scanning, or otherwise without written permission from ESET, spol. s r.o. ESET, spol. s r.o. reserves the right to change any of the described application software without prior notice. II

Overview DESLock+ Enterprise Server includes several encryption solutions that you can distribute to client PCs by way of the DESLock+ Enterprise Server Console. This guide will help you download and install DESLock+ Enterprise Server Console, distribute an encryption key to clients and encrypt your client PCs. To learn more about a DESLock+ encryption solution for your business, visit http://www.eset.com/us/ business/technology-alliance/deslock/. Figure 1: How the DESlock+ cloud distributes policies and instructions to client PCs System requirements Enterprise Server: 32-bit: Windows XP SP3 and later 64-bit: Windows Server 2003 and later RAM: 1GB (more is recommended for more recent operating systems) Disk space (installation): 30GB free space SQL Server 2005 Express or later Port 443 must be configured for access to the Internet for successful connection of DESlock+ software to the cloud, proxy and licensing servers Client PCs: Operating System: Windows XP SP3 or later Disk space (installation): 64mb free space Access to the Server Proxy (HTTPS) Section 1: Before installing 1. Visit the DESlock+ Server download page and click Download DESlock+ Server PRE-INSTALL. Save the file to the server where you will install DESlock+ Enterprise Server. 2. Make sure that you have both of the license emails you received following your purchase of DESlock+ ready. You will need the Proxy ID and Product Key included in these emails during installation. Section 2: Download and installation 1. Double-click the DESlock+ Server PRE-INSTALL package. The Setup Wizard will guide you through the install process. 2. When prompted to select your deployment settings, select DESlock+ Cloud from the drop-down menu and then click Next. 3. When prompted for your SQL server details, leave the default values unchanged and click Next. 1

Section 3: Configure DESlock+ Enterprise Server 3.1 Create your organization 1. Log in to DESlock+ Enterprise Server using the admin credentials that you created during installation. 2. If you use Active Directory (AD), select the AD organization that you want to use. 3. Enter a name to use for your organization this will be used when navigating in DESlock+ Enterprise Server. 3.2 Add your license key 1. In the Deslock+ Enterprise Server Console, select [your organization] in the navigation tree and click the Licenses tab. 2. Click Add. 3. Type a description into the License Description field, type your license information into the appropriate fields and then click Add. 4. Your server and client licenses are seperate, so you will need to repeat this process to add each license before moving forward. 3.3 Configure SMTP Server settings (optional) If your organization uses an SMTP server, configure these settings to allow DESlock+ Server to send email via SMTP. 1. Click Control panel > Settings. 2. Scroll down to the SMTP Server section and select the check box next to Configure SMTP server. 3. Enter the fully qualified domain name (FQDN) for your SMTP server and the port used for SMTP communications. 4. If you use SSL communication, select Secure connection (SSL) is required. 5. If your mail server requires users to submit their credentials to log in, select Authentication is required and type your mail server username and password into the appropriate fields. 6. Click Save at the bottom right when you are finished entering information. Figure 2: Adding SMTP server information will allow you to take advantage of DESlock+ email notifications 7. Click Send a test email to verify that your settings were entered correctly. 3.4 Sync with Active Directory (optional) If your organization uses Active Directory, configure these settings to allow DESlock+ Server to access user information from Active Directory. 1. Click Control Panel > Organisations, select [your organization] from the list and then click Active Directory Settings. 2. Select the check box next to Active Directory Sync Configured. 3. Type the fully qualified domain name (FQDN) or IP address of the computer on which your Active Directory is installed into the Directory Path field. 2

4. Type your Active Directory administrator username and password into the appropriate fields. 5. Select one of the options under Sync Mode: Manual Import: The simplest method of importing new users. You will need to select each user that you want to import. If the user s domain name changes, DESlock+ will not move them between teams. Automatic with Team Import: This will retain Organization unit (OU) information configured in AD and use it to create teams in DESlock+ Enterprise Server. Basic Automatic Import: This will add AD users to the organization root, but will ignore any OU information configured in AD. Figure 3 6. Click Test when you are done configuring settings. If settings are properly configured, the following dialog box will be displayed: Figure 4 7. When you are finished, click Main View, select [your organization] from the navigation tree, select the Active Directory tab and then click Sync. You can resync at any time to refresh Active Directory settings. 3.5 Define your encryption key(s) 1. Select [your organization] from the navigation tree, click the Encryption Keys tab and then click Create to define a new encryption key. 2. Type a name for the key into the Key name field and select the type of encryption to use from the Algorithm drop-down menu (we recommend AES). Click Save when you are finished. 3.6 Add users to your organization Users must be added to DESlock+ Enterprise Server before you can begin enforcing encryption. Active Directory users: 1. Select [your organization] from the navigation tree, click the Encryption Keys tab and then click Create to define a new encryption key. 2. Select one or multiple users that you want to add and click Quick Import. Non-Active Directory users: 1. Select [your organization] > Users from the navigation tree. 2. Select the Users tab and click Add. 3. Enter the email address for the users you want to add and click Add. 3.7 Generate activation codes for users 1. Select [your organization] > Users from the navigation tree. 2. Select one or more users and click Generate Activation Codes. 3. Click OK when prompted to send the activation code email(s). 4. Select DesLock+ Pro license from the drop-down menu and click Continue. Details about the license you are sending will be displayed in the License details window. Figure 5 3

Section 4: Push the DESlock+ installation package to client workstations Once a user receives their activation code, they have the necessary information to complete the client-side installation process. You can use DESlock+ Enterprise Server to distribute the DESlock+ client installation package to users. 4.1 Identify network workstations and distribute the installation package 1. Select [your organization] > Workstations > Network workstations. 2. Click Rescan Network to add any new users. Click OK when prompted. 3. Select the workstations on which you want to install the DESlock+ client and click Push Remote Install. 4. Review settings and enter the necessary Administrator credentials in the Workstation Details dialog box. We recommend that you click the Managed Uninstall tab and select the check box next to Enable Managed Uninstall Mode so that in the future the administrator can force an uninstallation on client computers. 5. When you are done with configuration, click Post to send the package to clients. 4.2 Complete installation on client workstations 1. Restart the client workstation after the DESlock+ installation package is finished downloading. Figure 6 2. Click OK to open the DESlock+ Setup Wizard. 3. Follow the prompts from the wizard, type the activation key from the email you sent in Add users to your organization and then click OK. 4. Once activation is complete, type a password that will be used to log in at the client level into the Password and Confirm Password fieldsm, and then click OK. 4.3 Add active users to Encryption Key Groups Once a user is active, you can add that user to an Encyption Key Group in DESlock+ Enterprise Server. Create a key group and assign encryption keys: 1. Select [your organization] from the navigation tree, click the Encryption Key Groups tab and then click Create. 2. Type a name into the Key group name field. 3. Double-click the users that you want to add to your new group and click Add. 4. In the Add Encryption Keys to Key Group dialog box, select the key that you created in the Define your encryption keys section. 5. Click Add and then click Close. Post key-files to users 1. Select [your organization] > Users from the navigation tree and click the Users tab. 2. Select your active user(s) and click Post key file. The Status column will change and display User has an update pending. 4

Section 5: Initiate Full-Disk-Encryption (DESlock+ Pro only) Once the key-file has been distributed to your client(s), you can initiate Full-Disk-Encryption (FDE) on client workstations. Send the FDE command from DESlock+ Enterprise Server 1. Select [your organization] > Users from the navigation tree and click the Users tab. 2. Double-click the user that you want to tirgger FDE on and click the Workstations tab. 3. Select the workstation you want to initiate encryption on and click Encrypt. 4. Click the User options tab and make sure that Target command to specified user and User can choose initial password are selected. 5. In the Single sign-on options section, define your desired settings for single sign-on. When you are finished making changes, click the Summary tab and click Start Encryption. Figure 7 For additional support working with DESlock+ Enterprise Server, visit the ESET Knowledgebase DESlock+ FAQ or the DESlock+ Knowledgebase. 5

ESET North America, 610 West Ash Street, Suite 1700, San Diego, CA 92101 U.S.A. Toll Free: +1 (866) 343-3738 Tel. +1 (619) 876-5400 Fax. +1 (619) 876-5845 www.eset.com 1999-2012 ESET, LLC d/b/a ESET North America. All rights reserved. ESET, the ESET Logo, ESET SMART SECURITY, ESET CYBERSECURITY, ESET.COM, ESET.EU, NOD32, INSTALL CONFIDENCE, SAFE MADE SAFER, SECURING OUR ECITY, VIRUS RADAR, THREATSENSE, SYSINSPECTOR, THREAT RADAR, and LIVE GRID are trademarks, service marks and/or registered trademarks of ESET, LLC d/b/a ESET North America and/or ESET, spol. s r.o. in the United States and certain other jurisdictions. All other trademarks and service marks that appear in these pages are the property of their respective owners and are used solely to refer to those companies goods and services.