How to set up location awareness (set up policies for multiple locations)

Version 7

    Verified Product Versions

    LANDESK Management Suite 9.5LANDESK Management Suite 9.6LANDESK Management Suite 2016.xLANDESK Endpoint Manager 2017.x

    Description

     

    Use this feature can ensure that the core server is running on a network before specific policy applied to the managed device.  The clients also can switch to a specific EPS policy if the client cannot reach the core.

     

    Steps

     

    1. Create default policy as shown below
      disabled.png
    2. Add the core server to verify core server existence on the network
      location.png
    3. Create location policy as below,
      usbblock.png
    4. The agent can not reach the core server, and security policy will switch to default policy.
    5. Policy on the client side would match the default setting as below.
      i3.png
    6. The agent can reach the core server, and security policy will switch to the Location policy
      l1.png

     

    Additional Information

     

    When verifying the core server existence on the network, the client sends a core request to http://(coreservername):80/WSvulnerability.

     

    The specifics of the soap server is this request:

     

    http://(CoreServerName)/WSVulnerabilityCore/VulCore.asmx?op=SecurePing

     

    So TCP 80 will be used when the client switch the policy

     

    Configuration file on managed devices

     

    c:\Program Files(x86)\LANDesk\LDClient\HIPS

    c:\Program Files(x86)\LANDesk\LDClient\HIPS\Location_1  DCM.xml