Welcome to ISAserver.org

Forums | Register | Login | My Profile | Inbox | RSS RSS icon | My Subscription | My Forums | Address Book | Member List | Search | FAQ | Ticket List | Log Out

Using Credtool and wspcfg.ini to allow McAfeeInstantUpdater/1.0 through ISA

Users viewing this topic: none

Logged in as: Guest
  Printable Version
All Forums >> [ISA Server 2000 Firewall] >> Firewall Client >> Using Credtool and wspcfg.ini to allow McAfeeInstantUpdater/1.0 through ISA Page: [1]
Login
Message << Older Topic   Newer Topic >>
Using Credtool and wspcfg.ini to allow McAfeeInstantUpd... - 14.Nov.2003 3:38:00 AM   
Kurt James

 

Posts: 8
Joined: 19.Jun.2003
Status: offline
Here goes:

I am trying to get the update program for Viruscan Professional Edition 7.02.6000.

The update engine is called RuLaunch.exe.

So far, I post a question about it on the forums and someone recommended using credtool.

I have done the following:

Created a new user in the active dir called: virususer

Virususer has been given full permissions to access the internet.

Then on the PC that has the virusscan software, I have created a file called wspcfg.ini.

Contents of wspcfg.ini are as follows:

[RuLaunch.exe]
ServerBindTcpPorts=80
LocalBindTcpPorts=80
RemoteBindTcpPorts=80
KillOldSession=1
ForceCredentials=1

I have placed (as instructed) the wspcfg.ini file into the applications folder:

C:\Program Files\McAfee\McAfee Shared Components\Instant Updater

Now using credtool on the pc I did the following:

credtool -w -n RuLaunch -c virususer domainnamehere passwordhere

Then rebooted.

I ran the updater and nothing..zip!

I checked the logs and the updater did not have the credentials as made using credtool.exe.

The update engine is shown as anonymous and the application is shown as McAfeeInstantUpdater/1.0

* Could it be that the wspcfg.ini should specify this name instead?

The request made by anonymous was:

GET

http://download.mcafee.com/products/licensed/central/english/patches/CTL251AU.ini

The result was:

- 12209

This is becoming a complicated process...does anyone have an understanding of how to get applications through as authenticate individual users???

Many thanks in advanced and if you managed to read all this.

Kurt
Post #: 1
RE: Using Credtool and wspcfg.ini to allow McAfeeInstan... - 14.Nov.2003 5:12:00 AM   
Guest
>>The request made by anonymous was:

>>GET

>>http://download.mcafee.com/products/licensed/central/english/patches/CTL251AU.ini

This is HTTP request!

First, check FirewallLog to find out is APPLICATION makes authorisation. Look for record
like
10.0.0.11 User wins.exe:3:5.0 Y 14.11.2003 01:01:19 fwsrv ST2 - - 194.xxx.xxx.xx 42 10 109 93 42 TCP Connect - - - 20000 0 pr WINS scr WINS replication 115 2405
If found, than make follow.

Second, read the tutorial about HTTP redirection filter "Mystery" on that site.

(in reply to Kurt James)
  Post #: 2
RE: Using Credtool and wspcfg.ini to allow McAfeeInstan... - 15.Nov.2003 8:48:00 AM   
iahsan

 

Posts: 29
Joined: 24.Oct.2003
From: Karachi
Status: offline
Make a destination set with the following and allow direct access to it. This is in case you are blocking application/octet-stream

download.mcafee.com
bin.mcafee.com

Your HTTP redirector should be set to send all HTTP traffic to Web Proxy.

Imran

[ November 15, 2003, 08:49 AM: Message edited by: I m r a n ]

(in reply to Kurt James)
Post #: 3

Page:   [1] << Older Topic    Newer Topic >>
All Forums >> [ISA Server 2000 Firewall] >> Firewall Client >> Using Credtool and wspcfg.ini to allow McAfeeInstantUpdater/1.0 through ISA Page: [1]
Jump to:

New Messages No New Messages
Hot Topic w/ New Messages Hot Topic w/o New Messages
Locked w/ New Messages Locked w/o New Messages
 Post New Thread
 Reply to Message
 Post New Poll
 Submit Vote
 Delete My Own Post
 Delete My Own Thread
 Rate Posts