cancel
Showing results for 
Search instead for 
Did you mean: 
McAfee Employee christopher_pag
McAfee Employee
Report Inappropriate Content
Message 1 of 3

Agent - Agent Handler comms

I need help explaning  communication between Mcafee Agent and External Agent Handler of ePO server.  I have a customer who is trying  to force communication only via https. Is this possible?

This is the customer example:

Even after we removed published ip address of our AH, test endpoint took internal ip address of AH ( 172.27.1.2). As you can see from logs, MA is trying to connect to fqdn, NetBIOS and internal ip address:

For security reason we would like to understand is there any way to force communication only via https and bypass any other communication methods like NetBIOS and IP.

According Official ePO installation guide(section Best Practice -> Install and configure the AH) , we have to configure published ip address, and this step is not optional.

It seems that is a the way how connection works between MA and AH – but if you know some workaround how to force only https communication, could you please share with us. 

 

 

 

2 Replies
McAfee Employee jstanley
McAfee Employee
Report Inappropriate Content
Message 2 of 3

Re: Agent - Agent Handler comms

The question on its surface does not make sense. NetBIOS/IP are not communication protocols they (along with FQDN) are just methods used to identify the machine you are trying to connect to.

By default all agent-to-server communications from MA to ePO (or agent handlers) use TLS regardless of whether the connection is made via IP or if the IP is determined via DNS lookup on NetBIOS/FQDN.

Reliable Contributor tao
Reliable Contributor
Report Inappropriate Content
Message 3 of 3

Re: Agent - Agent Handler comms

Agent Handler allows you to directly manage systems behind the DMZ (aka off prem); that will mean a publish IP - perhaps a superagent / remote repository would be a better choice if the agents will stay on prem. Still, begs the question - What is the customer trying to accomplish?

If this information was helpful or has answered your question, please select Accept as Solution. This will assist other memebers
More McAfee Tools to Help You

Community Help Hub

    New to the forums or need help finding your way around the forums? There's a whole hub of community resources to help you.

  • Find Forum FAQs
  • Learn How to Earn Badges
  • Ask for Help
Go to Community Help

Join the Community

    Thousands of customers use the McAfee Community for peer-to-peer and expert product support. Enjoy these benefits with a free membership:

  • Get helpful solutions from McAfee experts.
  • Stay connected to product conversations that matter to you.
  • Participate in product groups led by McAfee employees.
Join the Community
Join the Community