Top
Systemwalker Desktop Keeper Installation Guide
FUJITSU Software

1.2.3 Determine How to Create Configuration Information

This section explains the configuration information of managed targets in Systemwalker Desktop Keeper.

The configuration information is composed of the following three types of information:

There are three approaches to create configuration information during initial installation. Decide which approach will be used for creation in the process of design.

Examples of creating configuration information are shown in the images below.


Active Directory Linkage

After the configuration information has been imported by linking with the Active Directory, the imported information will be located under the domain group. The organization structure, user information, and computer information that is not managed through the Active Directory will be managed in the Local group.

Smart device information is also managed by the Local group.

When importing entire organization information

When importing part of organization information and operating the organization that is not imported with Local

Domain: the group managed after linking with the Active Directory.

Local: the group managed when linking with the Active Directory is not performed.

When linking with Systemwalker Desktop Patrol and entering information to the a Management Console


1.2.3.1 Active Directory Linkage

By linking with the Active Directory server that is used to manage organization structure, user information and computer information, each piece of information is imported into Systemwalker Desktop Keeper.

Because the client (CT) group tree, user ID and user group tree can be created automatically based on the organization structure, user information and computer information of the Active Directory, the workload from installing Systemwalker Desktop Keeper and changing the structure can be reduced.

In addition, because the organization structure, user information and computer information are collectively managed by the Active Directory, even though the change of structure or personnel takes place for the system administrator of Systemwalker Desktop Keeper, information can be imported from the Active Directory without needing to reconstruct the configuration information.

The following functions can be achieved by using the Active Directory Linkage function:

Function

Function Description

Automatically create CT group tree

According to the Organization Unit (OU) information of Active Directory, the CT group tree of Systemwalker Desktop Keeper can be created automatically.

Automatically register CT on the CT group to which the client (CT) belongs

According to Computer and the affiliated Organization Unit (OU) information of Active Directory, the client (CT) can be registered automatically on the CT group tree it belongs. The client (CT) that belongs to the Computer of the Container that is not linked with the Active Directory will be registered to Local.

Automatically create user information and user group tree

According to the User information and affiliated Organization Unit (OU) information of the Active Directory, the user ID and user group tree of Systemwalker Desktop Keeper can be created automatically. When the Container to which the user belongs is not linked with the Active Directory, the user ID of this User cannot be created.

Set whether to link with the Active Directory when installing Systemwalker Desktop Keeper. In addition, for information on linking with the Active Directory, refer to"DTKADCON.EXE (Active Directory Linkage" of Systemwalker Desktop Keeper Reference Manual.

After linkage with the Active Directory has been executed, the following configuration information will be imported.

When the User IDs with the same name exist in Local, even if they are operated through the Active Directory, user policy of Local will be applied.

However, because the following OS does not have the function to join a domain, even if an Active Directory Linkage has been executed, it will be managed in Local.

Point

Organization that is not linked with the Active Directory can be managed in Local

Systemwalker Desktop Keeper cannot be used to modify the following information, which is created automatically through linkage with Active Directory: CT group tree, user group tree, group to which the client (CT) belongs, and group to which the user information belongs. However, CT groups, user groups, or user information can be created in Local on Systemwalker Desktop Keeper. The CT group, user group or user information that is not linked with the Active Directory will be applied during local authentication, instead of domain authentication. Even if linking with the Active Directory again, they will not be deleted or modified.


How to Link

The methods of importing Active Directory information are as follows.

Import using "Server Settings Tool"

After starting to apply the Active Directory Linkage function, the modified new management information of Active Directory server can be imported through the Server Settings Tool window.

When personnel or PCs are changed, organizations are added or deleted because of changes in organization structure, perform the linkage and update the information if necessary.

Linkage can be performed by selecting "Execute Active Directory Linkage" from the "Settings" menu of the Server Settings Tool. For details, refer to "Import Information from Active Directory" of Systemwalker Desktop Keeper User's Guide for Administrator.

Import using "Active Directory Linkage command"

After starting to use the Active Directory Linkage function, the modified new management information of Active Directory server can be imported by executing the "Active Directory Linkage command".

Register the "Active Directory Linkage command" in the Task Scheduler, and update the configuration information of Active Directory Linkage on a regular interval. Thus, even when it is unknown whether the configuration information has been modified or not, this information can always remain up-to-date.

For details of the Active Directory Linkage command, refer to "DTKADCON.EXE (Active Directory Linkage)" of Systemwalker Desktop Keeper Reference Manual.


Only import CT information (computer information) from external data

Sometimes, only the user information is managed in the level composition of the Active Directory, and the computer information is not managed in the level composition.

In this case, by creating and importing the list (in CSV format) of user information and CT information (computer information) saved in the linked Active Directory, level composition of the CT information (computer information) can be constructed.

For details on how to import, refer to "2.3.6.2 Perform System Settings".


Linkage Structure

In a 3-level Management Server, user policies (user information) are collectively managed by the Master Management Server. Therefore, when performing Active Directory Linkage, the Management Console must be connected to the Master Management Server. (When connecting to the Management Server, it will be overwritten with the setting values of Master Management Server.)

The group structure and user information obtained after the Management Console is linked with Active Directory cannot be moved, registered, updated or deleted. But notes and part of the data items can be modified.

In a 3-level system structure, CT information is collectively imported by each Management Server, and the user information is collectively imported by the Master Management Server.


1.2.3.2 Link with Systemwalker Desktop Patrol

The CT group information and client (CT) configuration information that is saved in Systemwalker Desktop Patrol can be imported to Systemwalker Desktop Keeper in CSV format.

However, when linking with the Active Directory, linkage with configuration information of Systemwalker Desktop Patrol will not be performed.

For details on products that can be linked with Systemwalker Desktop Patrol, refer to "Related Software" of Systemwalker Desktop Keeper User's Guide.


How to Link

Automatically import configuration information of Systemwalker Desktop Patrol

By setting automatic import of Systemwalker Desktop Patrol configuration information, the configuration information of Systemwalker Desktop Patrol will be imported once per day. Even when it is unknown whether the configuration information has been modified or not, this information can always remain up-to-date. For details of the setting method, refer to "2.3.6.5 Set the Link with Other Systems".

Import through "Systemwalker Desktop Patrol configuration information import command"

By executing "Systemwalker Desktop Patrol configuration information import command", the configuration information output from Systemwalker Desktop Patrol can be imported.

Register the "Systemwalker Desktop Patrol configuration information import command" to the Task Scheduler, and update the configuration information of Systemwalker Desktop Patrol on a regular interval. Thus, even when it is unknown whether the configuration information has been modified or not, this information can always remain up-to-date.

For details of Systemwalker Desktop Patrol configuration information import command, refer to "DTKIMPDP.EXE (Import Systemwalker Desktop Patrol Configuration Information)" of Systemwalker Desktop Keeper Reference Manual.


1.2.3.3 Input in Management Console Window

The configuration information can be constructed from the Management Console window. Create the organization information and user information respectively in each window.

Since the client (CT) information and smart device (agent) information will be automatically registered to the Root directory, it can be created by moving to the affiliated organization. However, when linking with the Active Directory, it will be registered to the Local group instead of Root directory.