Is there a work-around for enabling client-server data communication, if TLS 1.2 version is not available?
Yes, in case you have older versions of TLS installed, please follow the steps below to ensure uninterrupted data collection.
This is applicable only for Windows server 2003 and 2008.
- Download the given files, based on your OS architecture:
Rename the zip file to WinCommunicationExt.zip
Copy-paste the above file inside the Site24x7 Windows agent installation directory - C:\Program Files\Site24x7\WinAgent
Navigate to regedit and set HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\ManageEngine\Site24x7WindowsAgent\Monitoring\UseCommunicationExt to true
Restart the Site24x7 Windows Agent service from services.msc
This will ensure the Windows server monitoring agent continues to perform data collection, even if TLS 1.2 is not installed in your servers.
Why is my Windows server monitor in DOWN status, even after enabling TLS version 1.2
If the OS version is Windows 2008 R2 & above, check if: https://fancyssl.hboeck.de/ is accessible in IE from that server. The machine is rebooted after applying the TLS 1.2 Microsoft update. All the steps (particularly steps 5 & 6) mentioned in this ...
FAQs on upgrading to TLS version 1.2
What is TLS? TLS is a secure way of client-server data communication. The TLS protocol protects the confidentiality and integrity of the information passed between two systems. Why migrate to TLS version 1.2? As Site24x7 is a SaaS-based product, it ...
How are the metrics calculated in agentless server monitoring?
SNMP server monitoring Metrics such as CPU, Memory, and Disk utilization are collected via SNMP using the OIDs given below: Attribute OID CPU .126.96.36.199.188.8.131.52.3.1.2 Memory .184.108.40.206.220.127.116.11.1.1.2 Disk .18.104.22.168.22.214.171.124.3.1.6 Free Disk Space (MB) ...
What TLS versions are supported by the Windows agent?
We have terminated the support for earlier TLS versions (TLS 1.0 and TLS 1.1) and have completely migrated to TLS version 1.2. For the Windows Server Monitoring agent, TLS 1.2 is disabled by default for Windows 2008. To enable it, please try this ...
What are the SSL end-server vulnerabilities you need to be careful about?
End-server vulnerabilities are caused by improper SSL protocol configuration in a domain server. Here is a list of vulnerabilities you should look out for: 1. BEAST Browser Exploit Against SSL/TLS (BEAST) is a browser exploitation affecting the ...