GSS 3.2 RU6 – Deployanywhere failing to run after upgrade.

I need a solution

We’re seeing the error “DeployAnywhere failed to insert hardware drivers” on all imaging tasks after going to RU6 from RU5. Has anyone else seen this behaviour?

I’ve just finished recompiling one of our WinPE automation environments and am testing it now – I’ll post back the result in case anyone else hasn’t yet upgraded and runs into the same trouble.

Update: Recompiling one of our WinPE bootdiscs hasn’t helped. Same error across at least 6 different hardware configs ranging from notebook to desktop to workstation. I can’t even see a window being called for the Deployanywhere task – whilst running it by hand you see the expected output so this appears to be an issue with our upgrade or a straight up major bug in RU6.

I’d appreciate to hear from anyone else that’s gone to RU6 and has deployanywhere working successfully just so I know to revert to a snapshot/backup and try our upgrade again.

0

Related:

  • No Related Posts

VxRail: Using embedded vCenter with VxRail to Manage External ESXi Hosts

Article Number: 502589 Article Version: 3 Article Type: How To



VxRail Appliance Family,CloudArray Virtual Edition for VxRail Appliance,VxRail 460 and 470 Nodes,VxRail Appliance Series,VxRail E Series Nodes,VxRail E460,VxRail G Series Nodes,VxRail G410,VxRail Gen2 Hardware,VxRail P Series Nodes,VxRail P470

This should not be done as it would not be supported. As the VxRail references object in the datacenter on VRM which is expected to be seen, it does not expect to see other objects from foreign clusters and hosts. Also doing so could have a performance penalty to the vCenter if it is scaled out to other inventory objects. The VxRail embedded vCenter is sized to support typical VxRail implementation, and adding in other clusters we would not be able to predict performance impact and would could result health check errors.

Related:

  • No Related Posts

Remote Desktop Connection is Off in Security Policy Yet Can Still Access on PC

I need a solution

Hi, 

I created a new security policy and turned off Remote Desktop. I also blocked connected storage devices so I had a means to double check that the policy on the PC was updated. 

The new policy applied to the PC. I verified by looking in the history on the PC and also by verifying that a usb drive was blocked whereas before it was allowed. 

The Remote Desktop is stil accessible on the PC despite being turned off in the security policy. I can open Remote Desktop and connect to servers. I don’t want this to be allowed on this PC.

Has anyone else had this problem? Am I doing something wrong?

0

Related:

  • No Related Posts

Disabling File Share on “Out of Corporate” Network

I need a solution

We have endpoint encryption enable on all the desktops and laptops. Now we need to allow our laptop users to take the laptop to their home so that they are able to work from home.

But this brings a lot of risk too. 

We have ensured that we have cloud proxy installed which will ensure that only the official websites are allowed to be opened on 3rd party internet connections or home networks.

But one risk is still un-addressed, the employee can connect his personal laptop or desktop to office laptop through a ethernet cable (cross cable / LAN cable) or over the home wifi network, share a folder from personal laptop and access it on office laptop and then easily tranfer the data. 

How do i stop this. I need your urgent help in this matter.

There has to be a way that office laptop is able to understand that its not on office network and block all transfer of data.

0

Related:

  • No Related Posts

Browser User Agent

I need a solution

Can’t seem to find a topic related to web browser user agent so I’ll open one.

Can I reliably use User Agent option as source in VPM or CPL policies? I understand user agents are not “one size fits all” type of thing but I’m encoutering a roadblock in my implementation. Domain laptops and mobile phones/tablets belong to a single IP subnet (WiFi) and I’m having difficulty creating a policy for phones/tablets without affecting domain laptops. This is a Transparent setup with transparent authentication using IWA. Customer wants all web traffic to go thru proxy.

When I configured a source using User Agent in VPM, it created CPL below.

define condition “Mobile Devices_Non-Laptop”

    request.header.User-Agent=”iPhone”

    request.header.User-Agent=”((iPad)|(; iPad)”

    request.header.User-Agent=”((iPod)|(; iPod)”

    request.header.User-Agent=”((Black[Bb]erry)|(^Black[Bb]erry)|(BB10)”

    request.header.User-Agent=”((Android)|(; Android)”

    request.header.User-Agent=”(Windows Phone)|(Windows Mobile)|(IEMobile)|(Windows CE)|(.*WP7)”

end condition “Mobile Devices_Non-Laptop”

Action is condition=”Mobile Devices_Non-Laptop” authenticate(no).

Are those like regex or wildcard for user agent? User agents typically contain lengthy characters and different per device so I’m not sure I can confidently use request.header.User-Agent option. Goal is to disable authentication on phones/tablets. Certificate based authentication maybe a challenge right now but that might be an option if customer is willing.

0

Related:

  • No Related Posts

XenDesktop 7.15 – “Tablet Input Service” getting enabled after installing VDA software

1. Why is the service “Tablet Input Service” set to automatic by the Citrix VDA install?

Answer :

Tablet input service is a windows service and helps optimize windows for tablet PC’s with touch screens.

It can be disabled on purpose via group policy to optimize performance on Thin clients / Normal Pc’s(Non-touch) where the service isn’t required.

https://www.windows-security.org/windows-service/tablet-pc-input-service.


2. Why is this service required ?

Answer :

We install Multi touch driver, device and service.

This is part of ICAWS installation ( Desktop VDA).

The MS service is required to avoid issues like: https://support.citrix.com/article/CTX220770

We are not sure if we actually enable the service or this is default Microsoft behavior when the touch device is detected.

(service depends on: PnP{Plug and Play})

Following behaviors is noticed :

  • Device disabled – service stopped:

User-added image

  • This is happens when you enable device:

User-added image

Related:

  • No Related Posts

Error -99, Status code: 106

I need a solution

I’m trying to create an image of a full disk. It appears to be going fine but failed right at the end with the following:

Task:        Created disk image

        Completed:    2/22/2018 4:09:23 PM

        Module:        User Defined

        Level:        Error

        Status:        Error -99 during imaging process

        Result:        Failed (Status code: 106)

Windows 10 laptop being Image from a task a server running 3.2.

Can’t seen to find these error numbers anywhere in the docs.

Any suggestions?

Thanks!

0

Related:

  • No Related Posts

Re: vxRail and the DMZ

Wizards,

I have a customer considering a four node cluster of appliances. The customer is running a software with the following architecture (pic). Screen Shot 2018-02-21 at 11.30.31 AM.png

The load balancers and the Apache needs to be in the DMZ, and is specifically the only portion of solution available from internet. The DMZ needs to have physical separate network interface from that of the rest of the solution. The general expectation is that “1” VXRail system would support the DMZ requirements while the other 3 support the rest of the applications – Tomcat, DB, VCenter, SFTP, WSUS, etc.



Is this possible with VxRail? My guess is no….

Related:

  • No Related Posts