Remote Control Global Address Book is Not Populating

Document ID : KB000027550
Last Modified Date : 14/02/2018
Show Technical Document Details

Question:

What do I check if the Global Address Book is Not Populating ?

 

Environment:                                        

CA Client Automation - All Versions

 

Answer:

The global address book allows users to view the computers they have permissions to connect to in their viewer.

Three things need to be in place for a global address book to populate...

  1. Set agents to central security:

    1. Create a new policy or UnSeal the currently applied custom policy

    2. Change the property DSM>Remote Control>Host>Managed>Centralized Security to True

    3. Seal the policy and then apply it if it has not already been applied

      Figure 1

  2. Set Group as Global Address Book:

    1. Select which group(s) you want a user to be able to see

    2. Expand the group details of the selected group(s)

    3. Right click on "Remote Control Permissions" and select properties

    4. Check off Global Address book root group

      Figure 2

  3. Add security to Global Address Book:

    1. Select which group(s) you want a user to be able to see

    2. Expand the group details of the selected group(s)

    3. Click on "Remote Control Properties"

    4. Add any user that you wish to have access to the machines included in the group

      Figure 3

Things to remember about Remote Control permissions:

  1. A deny will always override any allows; just like Windows permissions, e.g. You CANNOT deny a Domain Users group permissions and then allow an admin group. The allow on the admin group will be overridden because of the deny to the domain users group

  2. You can inherit the permissions from parent groups via the following:

    • Right-click on "Remote Control Permissions":

    • Select Properties

    • Check off "Inherit Remote Control Permissions from parent group"

  3. You can force sub groups permissions to be that of the parent group as follows:

    • Right-click on "Remote Control Permissions"

    • Select Properties

    • Check off "Override Remote Control permissions on derived groups