Jump to:navigation, search
Wiki







































Information on the configuration of the VPN Windows clients in the USC

Last adaptation to the version: 2.9

New:
  • Kachelansicht vereinfacht
notempty
This article refers to a Beta version
Access: portal.securepoint.cloud Unified Security Console Windows VPN-Clients

Introdutction

It is possible to connect new VPN clients to the Unified Security Portal in order to manage them centrally from the port.
All registered clients can be managed here.


Requirements

notempty
The user requires an active MDM or MobSec license. Otherwise, the menu items Windows VPN-Clients Windows Profiles and Windows Enrollment are not displayed in the Securepoint Portal.
Only USC/USR licenses are not sufficient
.
If an MDM license has expired, access and functionality are restricted. Further information on this can be found in the wiki article Licenses.

Overview

Name Sortiert die Kacheln nach dem Namen des Windows VPN-Client
Overview of the Windows Clients
Ascending Sorts the tiles in ascending or descending order according to the selected criterion
Search Filters on tiles that contain the search text
 Neuen VPN Client enrollen Ein neuer Windows VPN Client wird darüber enrollt. Weitere Informationen dazu siehe unten.
/ List view / Grid view Switch between lists and grid view
Update Refreshes the display

Kachel-Optionen

The button at the top right of each tile provides the following options:
 Details Details
 Löschen The tile is deleted

Kachel-Informationen

 Hostname: Der Hostname des Windows VPN-Clients
 Betriebssystem: Das Betriebssystem und deren Architektur des genutzten Windows-Rechners
 Version: Die Version des Windows VPN-Clients
 Letzter Benutzer: Zeigt den letzten Benutzer an, welcher diesen Windows-Rechner benutzte
 Tags: Zeigt die Tags an, die zu diesem Windows VPN-Client gehören.

Mit Tags bearbeiten können Tags hinzugefügt oder entfernt werden.

 Profile: Zeigt das Windows Profil an, welches zum Windows VPN-Client gehört

Mit einem Klick auf den Windows Profilnamen lässt sich das Profil bearbeiten

 Hardware SN: Die Hardware Seriennummer des Windows-Rechners
Lizenz: Zeigt die zugehörige Lizenz zum Windows VPN-Client an

Register client

It is possible to connect new VPN clients to the Unified Security Portal via e-mail by sending an invitation e-mail. This invitation e-mail contains a link to log the installed Securepoint VPN Client onto the portal. After clicking on the link, the VPN Client is opened, logged in and is then available in the Unified Security Portal.
An e-mail invitation can be sent using the dialog behind the  Enroll new VPN client button.
Same dialog as under  Unified Security ConsoleWindows Enrollment Button  Enroll new VPN client
Caption Value Description
Dialog for registering VPN clients on the portal via e-mail invitation
Registration token Registration token Select an enrollment token to be used for the enrollment of the VPN client. The creation of a token is described here.
  • The token should have a sufficient period of validity.
  • E-mail recipient E-mail recipient Selection of email addresses to which the registration token for logging in to the portal is to be sent by e-mail.
     Send invitation Send email invitation

    Configure client

    Click on a client to open the configuration. Here you can view some information about the respective client.

    Overview

    Overview
    Action Description
    Windows Client Overview
    Update Refreshes the display
    Working memory information Size of the client's working memory, as well as the working memory used at the time of the last update
    CPU Utilization and cores of the processor at the time of the last update
    Storage (Used) storage space of the client and encryption status of the hard disks
    Update If available, the user's VPN client can be updated here
    Interfaces Internet interfaces (IP addresses) of the client for copying

    Operations

    Operations
     Query status Query/update client status
    Windows client operations
    Actions
     Start client Start VPN client at user
     Exit client Exit VPN client at the user
    Upgrades
     No update available
    or
     Update available
    If an update is available, the client can be updated

    Connections

    Connections

    The currently configured connections of the VPN client are displayed here. In addition to the current settings and the status of these connections, the status at the time of the query is also displayed. The connections are sent automatically when the VPN client is opened and can be queried again if required.

    Update Refreshes the display
    Overview of VPN connections on the client
    Connected  / Not connected Shows the connection status of the respective connection
    Connection tags
    SSLVPN Connection is of type SSLVPN
    WireGuard Connection is of type WireGuard
    SYSTEM Connection is a system connection
      The option Reconnect if connection is lost is activated for this connection
      User data is stored for this connection
    OTP An OTP is required for this connection
    so the option Apply OTP is active
  • It is therefore not possible to establish a connection via the portal
  • notempty
    New as of: 2.5
     PIN
    A PIN must be set to start the connection.

    This was set via the VPN configuration of the Windows profile

    notempty
    New as of: 2.5
     PIN /  
    PIN is set in the client and connection has been updated
    Actions
     Connect /  Disconnect Connects or disconnects the VPN connection on the client in real time
     Log Shows available log data for the client's connection
     Diagnosis Shows a current diagnosis for the client connection
    notempty
    New as of: 2.5
     Reset PIN
    The set PIN is reset and a new PIN must be set the next time this connection is started
     Remove Deletes the connection on the client

    Operations Log

    Operations Log
    Log of the communication between windows client and the Unified Security infrastructure
    Windows Client Operations Log
    Column Description
    Time Shows the date and time at which the job is executed
    Job Displays the job that is being executed
    Profile Displays the Windows Profile on which the job is being performed
    Direction Indicates the direction of communication
    • { in Message from the device to the server
    •  out Message from the server to the device
    Status Displays the status of the executed job
    •  Sent the transmitted job was sent to the device or the transmitted windows profile was sent
    •  Received the device has received the transmitted job without errors
    •  Confirmed the submitted job or the submitted windows profile has been applied
    •  Offline the device is offline
    •  Pending the submitted job has not yet been sent
    •  Error the error is described in the Info column
    Info Displays further information on the transmitted job. If an error has occurred, the type of error Upis described here.
    Actions Operations displayed here can be executed

    Windows security

    Windows security
    The Windows security data comes from the Windows Security Center service (wscsvc). The WSC collects current information on the security of the Windows client. In addition to the protection provided by third-party antivirus products, Windows Firewall, the status of the service, the configuration of the Internet settings, the automatic update and the User Account Control (UAC) are evaluated.

    Each of these security providers has a status of “Good”, “Not monitored”, “Bad” and “Temporarily deactivated”.

    • Good: The status of the security provider category is good and does not require any attention from the user.</li
    • Not monitored: The status of the security provider category is not monitored by WSC.
    • Bad: The status of the security provider category is bad, and the computer may be compromised.
    • Temporarily disabled: The security provider category is in the “Temporarily disabled” state, the computer may be compromised.
    Windows Client Windows Security
    Action Description
    This month Period to be displayed in the table
    Update Retrieve/update the security status of the client
    Column Description
    Time Time at which the status (the line) was recorded

    Inventory

    Inventory
    Here you can save information about the device and (for devices with SIM card) the contract:
    • Inventory:
      • Bill number
      • Bill date
      • Warranty starts on
      • Warranty ends on
      • External inventory link
      • Description
    • Contract:
      • Provider
      • Tariff
      • Customer number
      • Contract number
      • Start of contract
      • Contract term
      • Handover date
    Windows Client Inventory