RSA Admin

Agentless collection of ISA server

Discussion created by RSA Admin Employee on Sep 13, 2010

I'm trying to enable agentless collection of the underlying Windows events on an ISA server (sitting in our DMZ).  I've done all the usual checks (ensuring all of the typical services, like remote registry, are set up right).  I've also added a Firewall Policy rule that allows access From the envision collector, To All Networks (and Local Host), inbound on TCP ports 135, 139 and 445.  Agentless collection still fails.  I can ping the ISA server from the collector, I can even RDP from the collector to the ISA server.  I've used the runeventvieweras app to test from the collector, and I get the error "The network path was not found."  And the wintool reports keep giving me the same error: "Log file does not exist on device."  

 

Any suggestions on what to try next??   Thanks!!

Outcomes