A user asked about setting a service account for a Monitor - the user had already created the shared credential with the necessary permissions. The user was unsure if the Monitor needed an additional service account when performing actions requiring the 'Allow Log on as a Service' permission. It was clarified that the shared credential could be set as the Monitor service account / domain identity through the ControlUp Console. The user found the article 'User Permissions in ControlUp' (https://support.controlup.com/docs/user-permissions-in-controlup) helpful.
Read the entire article here...
Microsoft Active Directory Related Training & Support Archives
Microsoft Active Directory training and support-related archives from inside the ControlUp Community on Slack.
Targeting Machines for Surveys in ControlUp Edge DX
A user asked if it is possible to target certain machines for surveys in ControlUp Edge DX, with the current options being AD groups or individual machines. It was mentioned that machine group selection may need to be requested as an enhancement. Linux agents do not currently support user sentiment. The survey is sent to users, and Edge is not installed on Citrix desktops.
Read the entire article here...
Read the entire article here...
How to specify the user security context when upgrading agents from the ControlUp Console?
A user asked if it was possible to specify the user security context when upgrading agents in ControlUpConsole, as they couldn't use Domain Admins in their environment. It was suggested to add admin accounts to AD Connections and specify one per domain, and the credentials were stored in the user profile and used only for agent deployment and "agent control". This solution worked for the user.
Read the entire article here...
Read the entire article here...
How to add new users to ControlUp Real Time DX?
A user asked a question about adding users to a ControlUp setup, with the question of whether it needs to be done via the Login Setup screen in version 8.7 or if it can be done through adding people to an AD group. In order to do this, users need to be added manually. However, ControlUp is working on enhancing its Solve/SAML integration, which will enable new users to be auto created as needed. This would be done with the new DEX platform/login when configured to use SAML. ControlUp will keep @member updated on its progress with the DEX platform.
Read the entire article here...
Read the entire article here...
Obtaining a ControlUp License for a Test Environment
A user asked if they could obtain a license for a test environment when they already had a production license. They were informed that a free trial license can be obtained with a new org. If the test environment is on the same domain of the production, they can just use a separate org for the same license. If the test environment is on a different domain, they would need to contact the sales team with their query. They were also informed about the Expert Program at https://www.controlup.com/products/controlup/expertprogram/, which they can get in touch with @member about.
Read the entire article here...
Read the entire article here...
Implementation Questions for ControlUp in Corporate and Isolated Environments
A user asked questions about implementing ControlUp in a corporate and isolated environment. The answers explained that Monitors and Data Collectors don't need to be in the same domain, credentials can be used even without trust relationship, and port 40705 needs to be added. Professional Services from ControlUp can be sought for resolving automation issues in an environment with extensive security policies.
Read the entire article here...
Read the entire article here...
How to give access to ControlUp insights without giving access to the Controlup Console
The discussion considered what options are available for providing access to Insights data for third-party users without access to the ControlUp console. While registering in the console is necessary, uploading a CSV file with UPNs can be done with the Login Setup feature in 8.7. Insights will be deprecated soon and, as some customer's security policies can remove accounts if they are not used after a certain amount of time, there is the option of creating a bogus user with an email distribution. There are no limitations on the number of users in ControlUp itself, though some Microsoft licenses may be consumed based on a single AD account.
Read the entire article here...
Read the entire article here...
How to configure ControlUp to allow fist level support only the permissions to logoff User sessions
A user asked how to set permissions for first-level support to logoff user sessions - the recommendation is to keep everything as "Not Set" and set specific permissions to "Allow". For more information, there is an article on creating a read-only permission set at https://support.controlup.com/v1/docs/security-policy-view-only-role.
Read the entire article here...
Read the entire article here...
Finding Out About SSO Integration for ControlUp Products
A user asked about SSO integration with Solve and Insights, as well as the integration of Scout Bees and whether it is necessary to configure Solve and Insights separately with the IDP. The user was informed that Solve and Insight can be accessed via Solve, and that Insights will be ported over into Solve, with the data upload process and dependency on s3 being removed. An update is expected in about a week or two, and the user was advised to contact their CSM or sales team for more unofficial details.
Read the entire article here...
Read the entire article here...
Troubleshooting ControlUp Monitor not collecting data from VMs
A user had difficulty getting ControlUp Monitor to collect data from their VMs. Suggestions include creating a separate role for their Monitor service account and creating a separate service account with access to the computer objects in the farm and AD reader permissions. Additionally, the user was directed to a link with the Security Policy for Users and Permissions found on ControlUp's website.
Read the entire article here...
Read the entire article here...
