Wednesday, 10 April 2013

How to uninstall Host Data Loss Prevention agent without using a challenge code by serverku

The solution has been taken from Mcaffee site:

 https://kc.mcafee.com/corporate/index?page=content&id=KB69151&cat=CORP_DATA_LOSS_PREVENTION_HOST&actp=LIST



Problem

Unable to uninstall Host Data Loss Prevention (Host DLP) when the Management Console has been deleted or is unavailable to provide a challenge code.

Solution

As designed, you cannot remove the Host DLP agent without the challenge key provided from the console unless the administrator has disabled the uninstall challenge-response mechanism in the policy. This is provided so that unauthorized users cannot remove the Host DLP agent unless the administrator explicitly configures the policy to allow it.

To configure the policy to allow unchallenged uninstalls:
  1. Log on to the ePO 4.x console.
  2. Click MenuData ProtectionDLP Policy.
  3. Set the Show Challenge-Response on uninstall option to Disable under the Advanced Configuration tab in the policy.

Workaround

Uninstall the agent through an ePO task on the affected computers:
  1. Log on to the ePO 4.5 console.
  2. Click System Tree.
  3. Create a new subgroup:
    1. Click System Tree ActionsNew Subgroup.
    2. Type a name for the group, and click OK.
    3. Select the affected computers.
    4. Click ActionsDirectory ManagementMove Systems.
  4. Select the newly created group and click OK.
  5. Create a new client task:
    1. Click the Client Tasks tab.
    2. Click New Task under Actions.
    3. In the Name field, type a name for the task. (for example, Remove DLP Agent.)
    4. In the Type field, select Product Deployment, and click Next.
    5. In the Products and Components field, select Data Loss Prevention 9.0.0.
    6. In the Action field, select Uninstall, and click Next.
    7. Click Next.
  6. Change the Schedule Type to Run immediately, and click Next.

    NOTE: The task is scheduled for the next time the McAfee Agent updates the policy. To force the installation to take place immediately, send an agent wake-up call.
     
  7. After the task has completed, restart the affected computers.

No comments:

Post a Comment

Please Use Good Leanguage