Documentations

Configuration of supervision accounts

On the page

Need some help?

Introduction

Supervisory accounts are the accounts necessary for the proper execution of unit services. For example, a supervision account of the SNMP Community type will allow the collection of information on the equipment via the SNMP protocol.
This procedure explains how to use supervision accounts in the supervision configuration or reconfiguration step.
This module is accessible from the user interface by navigating in Configuration > General > Supervision Accounts.

General principles

Definitions

Supervisory accounts are the accounts necessary for the proper execution of unit services. For example, a supervision account of the SNMP Community type will allow the collection of information on the equipment via the SNMP protocol.

Supervision accounts are defined for each unit service. The objective of ServiceNav is to define a supervision account only once, at company, site or equipment level. Once unit services are defined for a device, ServiceNav then automatically configures the unit services based on the information provided at the supervision account level.

The possibility to set an account different from the account defined at company code level must be kept. To do so, the user will be able to modify the account at the level of a site, an equipment, or a unit service.
This supervision account will be protected: any modification of a supervision account at a higher level in the hierarchy (company ⇒ sites ⇒ equipment) will not be reflected in the configuration of this supervision account.

The account types are as follows:

The information to be defined depends on the type of account. For example, for an account of the type Windows - Admin, the domain (optional), the user and the password must be defined.

Business rules

Supervisory account information is defined at company code level, company site level, equipment level, or unit department level.

In the event of an update of a supervision account at company level, ServiceNav will update all unit services of all equipment at all company sites, except those marked as protected either at site level, equipment level or unit service level.

When a supervisory account information is updated at a site level, ServiceNav updates all unit services for all equipment at that site and subordinate sites, except those marked as protected at the unit equipment or unit service level.

The protection on a supervision account is total on all the fields of the account (example for a Windows account, the domain, the account name and the password are protected).

A unit service is configured with a single supervision account: there is no unit service case requiring several supervision accounts.

If a user wants a specific configuration on a unit service, he must protect the supervision account in the configuration sheet of the unit service.

Deployment Recommendations

It is recommended to define at the time of deployment the supervision accounts at company level, then at company site level, and finally at equipment level if exceptions are necessary.

Thus, in the event of a subsequent change of password for a supervision account, a simple modification of this account defined at the highest level in the company/site hierarchy will be propagated to all the equipment at all the sites that need it.

Definition sheets for supervisory accounts

Company, site

Supervisory accounts are defined at company or site level. To access the definition :

  • Navigate to Monitoring Setup > General > Monitoring Accounts.
  • Select the company code or site in the company code tree.

Supervisory Accounts

Status the symbol padlock-lock indicates that the supervision account is protected at this site. The symbol Open padlock indicates that the supervision account is defined and protected at a higher site in the tree structure.

Type indicates the type of supervision account.

Company The "Supervisor Account": indicates the site or company at which the supervisory account is protected.

Values indicates the values of the supervision account. Passwords are hidden.

Description The description of the supervisory account.

From this list, you can :

  • Protect or no longer protect a supervision account by clicking on the symbol in the column Status
  • Change the values of a supervision account by clicking on the symbol in the column Status or on the column Type

Equipment

Supervision accounts are defined at equipment level. To access the definition :

  • Navigate to the menu Configuration > Equipment > List
  • Select the company code or site in the company code tree
  • Open the equipment configuration master record by clicking on the equipment in the list.
  • Click on the tab Accounts

Equipment - accounts tab

The symbol Closed padlock indicates that the supervisory account is protected at the equipment level.

The symbol Open padlock indicates that the supervisory account is defined and protected at the level of the site associated with the equipment in the tree structure, or a higher site in the hierarchy, or company. By clicking on the account, the site or company code at which the account is defined is displayed:

Equipment - accounts tab

The symbol red padlock indicates that a unit service defined for the equipment requires a supervision account that will need to be configured at the equipment, site or company level, if this account is not defined and protected at the unit service level.

From this card, you can modify the supervision account at the equipment level (protect it or not, modify its values) by clicking on the account :

Equipment - accounts tab - modification

Unit service

Supervision accounts are defined at the level of a unit department. To access the definition :

  • Navigate in Supervision configuration > Services > List
  • Select the company code or site in the company code tree
  • Open the service configuration sheet by clicking on it in the list.
  • Click on the tab Availability and controls

Unit Service - Unprotected Supervisory Account

In this record, if the account is not protected, the account information is not visible. In the opposite case, they are visible and modifiable.

Unit Service - Protected Supervisory Account

Scenarios

Adding a supervision account at company or site level

  • Navigate in Configuration > General > Supervision accounts.
  • Select the company code or site in the company code tree.
  • Click on Add.

Company - supervisory accounts

  • Select the account type from the list (accounts of type already defined are not proposed in this list)

Company - Supervisory Accounts - addition

  • Enter the requested values and click on Validate. The defined account type is immediately propagated to the unit services of the company's equipment and subordinate sites.

Modification of a supervisory account at company level

To change the supervision account information :

  • Navigate in Configuration > General > Supervision accounts.
  • Select the company code in the company code tree.
  • Click on the supervision account to be modified (column Type).
  • Modify the desired data and click on Validate.
  • A warning message states: "These changes will be propagated to all unprotected supervision accounts of equipment on this site and sub-sites. ». Click on Yes.

Modification of a supervision account at a site level

To change the supervision account information :

  • Navigate in Configuration > General > Supervision accounts.
  • Select the company code in the company code tree.
  • Click on the supervision account to be modified (column Type).
  • Modify the desired data and click on Validate.
  • A warning message states: "These changes will be propagated to all unprotected supervision accounts of equipment on this site and sub-sites. ». Click on Yes.

To protect a supervisory account already defined at company level :

Supervision accounts - surcharge

  • Navigate in Configuration > General > Supervision accounts.
  • Select the site in the company tree.
  • Click on the symbol of the supervision account to be modified (Status column).
  • Click on Yes and enter the account information, then click on Validate :

Supervision account - surcharge - modification

  • A warning message states: "These changes will be propagated to all unprotected supervision accounts of equipment on this site and sub-sites. ». Click on Yes.

If you no longer want to protect a supervisory account defined at site level, that is, to use the supervisory account defined at a higher site in the tree structure, or at company level, you must delete the account defined at site level.

 

Deletion of supervision accounts at company or site level

To delete one or more supervision accounts :

  • Navigate in Configuration > General > Supervision accounts.
  • Select the company code in the company code tree.
  • Select the supervision account(s) to be deleted.
  • Click on the trash button.

Supervision accounts - deletion

  • A confirmation window is displayed. This window indicates which accounts can be deleted, and which accounts cannot be deleted.

Supervision account - deletion - confirmation

It is not possible to delete accounts used by one or more unit services, and for which no supervision account is found in a higher level site or in the company.

It is possible to delete accounts used by one or more unit departments, and for which a supervision account of the same type is found in a higher level site or in the company.

It is possible to delete accounts if they are not used by any unit service.

  • Click on Validate to proceed with the effective deletion of the indicated accounts, or on Cancel to cancel this delete action.

 

Adding a supervision account at the equipment level

Position yourself in the equipment configuration master record on the tab page Accounts.

This tab contains the accounts required for the unit services associated with the equipment: it is therefore not necessary or possible to manually add supervision accounts at this level.

Modification of a supervision account at equipment level

The information that can be modified is as follows:

  1. Change an account from "unprotected" to "protected": in this case, the information associated with the account becomes editable, and the content is emptied.
  2. For protected accounts, edit related information.
  3. Switch an account from "protected" to "unprotected" (action: by clicking on the radio button).

To modify a supervision account at the equipment level :

  • Navigate in Configuration > Equipment > List.
  • Select the company code or site in the company code tree.
  • Open the equipment configuration master record by clicking on the equipment in the list.
  • Click on the tab Accounts.

To change an account from "unprotected" to "protected" :

  • Select the account on the left side.
  • Select Yes : the values associated with the supervision account are reset.
  • Fill in the values associated with the supervision account.
  • Click on Validate.

Equipment - accounts tab - modification

To change the information associated with a protected account :

  • Select the account on the left side.
  • Fill in the values associated with the supervision account.
  • Click on Validate.

 

To change an account from "protected" to "unprotected":

  • Select the account on the left side.
  • Select No : a supervision account of the same type is displayed.
  • Click on Validate.

Equipment - accounts tab

The account of the same account type is the one defined at equipment site level, if it exists, or at the first site level up the site tree to the company code.

If no account of the same type is found at the equipment site, or at a higher level site, or at the company level, it will not be possible to report the supervision account unprotected: it will first be necessary to define a supervision account at the site or company level.

Equipment - Accounts - Cannot be changed

Deletion of a supervision account at equipment level

The supervision accounts defined at the equipment level are those required by the unit services associated with the equipment: it is therefore not necessary to manually delete supervision accounts at this level.

When a unit service is deleted at a piece of equipment, the associated supervision account no longer appears in the equipment's configuration master record (tab Accounts).

Adding equipment

An equipment can be added from the census or manually from the equipment list.

During a census, the SNMP community and a Windows administration account are pre-populated with accounts of the same type defined at the site level (or failing that, at a parent site or company level):

Census - supervisory accounts

The following rules apply when adding a device surveyed using an SNMP community and a Windows administration account: If the supervision account (SNMP, WMI) entered in the survey record is identical to a supervision account in the site associated with the device, or in a parent site, or in the company, the supervision account (SNMP, WMI) is not protected at the device level. Otherwise it is protected.

In the equipment census form, displayed by clicking on the equipment in the equipment census list, the supervision accounts used to census the equipment are displayed :

Census - Supervision Accounts - Display

Whether from the census or from the equipment list, adding equipment involves defining equipment models for that equipment.

Once the equipment has been added, you must finalize the configuration by going to the equipment configuration master record, tab Accounts.

Equipment - Accounts - not configured

Accounts identified by a red padlock must be set up and protected, or an account of the same type must be added at site or company code level.

Adding equipment models to an item of equipment

The addition of one or more equipment models to an equipment implies the addition of unit services to this equipment: the configuration must be finalized by clicking on the tab Accounts.

Equipment - Accounts - not configured

Accounts identified by a red padlock must be set up and protected, or an account of the same type must be added at site or company code level.

 

Adding a unit service to equipment

From the list of unit services, adding a unit service to an equipment involves checking the configuration of the unit service in the Equipment Accounts tab.

In the following example, the IBM-AS400-Cpu unit service is added to a device.

Unit services - IBM-AS400-CPU addition

The Accounts tab in the equipment configuration master record indicates that the AS400 supervision account should be defined at either the department, equipment, site or company level.

Equipment - accounts - AS400 addition

 

Checking the configuration

To check the configuration :

  • Navigate in Configuration > General > Generation.
  • Select the company code or site in the company/site tree.
  • Select the supervision box on which you wish to check the configuration.
  • Click on Validate.

The section Detail of configuration errors describes the list of errors encountered.

Supervision account - configuration generation - error

This may also be of interest to you

Using ServiceNav WebServices

Create companies and sites

Use of labels

en_USEnglish
fr_FRFrench en_USEnglish

Welcome to ServiceNav!

Need help? More information about our products? Write to us!
You have taken note of our privacy policy.

[COVID - 19 ] - TELEWORKING, TARGET AVAILABILITY 100% !

While the epidemic lasts, ensure the availability and performance of your IT services for teleworking, with ServiceNav!

Following the government's call to mobilize to help businesses overcome the current health and economic context, we help you, free of charge, to ensure the complete monitoring of your teleworking environments: VPN, VDI, Teams, Skype Enterprise, Citrix... Objectives: collection, availability and usage indicators, dashboards to support your communication.
We use cookies to ensure that you have the best possible experience on our site, and if you continue to use this site, we will assume that you are satisfied with it.

Reserve your place

You have taken note of our privacy policy.