Organizational units and machines outside the domain

Share your tips or issues concerning the WAPT Console or WAPT Agent here
Forum Rules
Community Forum Rules
* English support on www.reddit.com/r/wapt
* French community support is available on this forum
* Please prefix the topic title with [RESOLVED] if it is resolved.
* Please do not edit a topic that is tagged [RESOLVED]. Open a new topic referencing the old one.
* Specify the installed WAPT version, full version, and build number (2.2.1.11957 / 2.2.2.12337 / etc.) as well as the Enterprise/Discovery edition.
* Versions 1.8.2 and earlier are no longer supported. The only questions accepted regarding version 1.8.2 are related to upgrading to a supported version (2.1, 2.2, etc.).
* Specify the server OS (Linux/Windows) and version (Debian Buster/Bullseye - CentOS 7 - Windows Server 2012/2016/2019).
* Specify the OS of the administration/package creation machine and the machine with the problematic agent, if applicable (Windows 7/10/11/Debian 11/etc.).
* Avoid asking multiple questions when opening a topic, otherwise it may be ignored. If there are multiple topics, open separate topics, preferably one after the other and not all at the same time (i.e., do not spam the forum).
* Include code snippets, screenshots, and other images directly in the post. Links to Pastebin, Bitly, and other third-party sites will be systematically removed.
* As with any community forum, support is provided voluntarily by members. If you require commercial support, you can contact Tranquil IT's sales department at 02.40.97.57.55
Locked
seb b
Messages: 23
Registration: Oct 26, 2017 - 3:12 p.m.

July 8, 2020 - 10:13

Good morning,

I am setting up wapt enterprise (1.8.2, Debian server, W10 administration machine) and I would like to understand how the presentation by OU works in the console.
I followed the documentation in order to make the out-of-domain workstations appear in a "fake" OU and everything works until the workstation is reintegrated into AD.
At this point, the OU containing the workstation does not override the previously defined false OU. Uninstalling the package didn't help (which is expected). Deleting the line

Code: Select all

host_organizational_unit_dn
The configuration file shows the workstation appearing in the "computers" OU of the AD tree (it's not there, it's at least three levels lower)

So I'm asking myself the following questions:
  • Are the job unit information details dynamic?
  • Where are they getting this information? Perhaps the configuration of my test machine is causing the problem
  • If this behavior is desired, is it possible to modify the configuration file via a startup script that would perform something like a WMI query to retrieve the OU and write it to wapt-get.ini? (It's not very elegant, but it's the only way I can think of.)
Thank you in advance for your clarifications :D
User avatar
sfonteneau
WAPT Expert
Messages: 2318
Registered: July 10, 2014 - 11:52 PM
Contact :

July 8, 2020 - 10:37

Good morning

I just did the test:

Code: Select all

[global]
host_organizational_unit_dn=OU=toto,DC=tata,DC=fr
then a:

Code: Select all

wapt-get register
And it works well

Can you confirm that this works for you?
seb b
Messages: 23
Registration: Oct 26, 2017 - 3:12 p.m.

July 8, 2020 - 10:47

Hello,

yes, it works perfectly in that direction (I just retested it using a package and manually).

However, if I rejoin the machine to the domain, it doesn't position itself correctly in the directory tree (sorry if I'm not being clear).
User avatar
sfonteneau
WAPT Expert
Messages: 2318
Registered: July 10, 2014 - 11:52 PM
Contact :

July 8, 2020 - 11:05 AM

Can you contact us by phone (as you have support) because I don't quite understand.
User avatar
dcardon
WAPT Expert
Messages: 1930
Registration: June 18, 2014 - 09:58
Location: Saint Sébastien sur Loire
Contact :

July 8, 2020 - 12:20

Hello seb_b,
seb b wrote: July 8, 2020 - 10:47 AM Hello,

yes, it works very well in that direction (I just retested via a package and manually).

However, if I rejoin the machine to the domain, it doesn't position itself correctly in the directory tree (sorry if I'm not clear).
Joining a machine to the domain does not remove the host_organizational_unit_dn parameter from the wapt-get.ini file. And this parameter takes precedence over the machine's OU membership.

After integrating the machine, you can push a cleaning pack. You can take inspiration from https://store.wapt.fr/store/tis-wapt-conf-policy

Sincerely,

Denis
Denis Cardon - Tranquil IT
Share your experiences on WAPT! Send us your blog and article URLs in the "Your Opinion of the forum, and we'll feature them on the WAPT
seb b
Messages: 23
Registration: Oct 26, 2017 - 3:12 p.m.

July 8, 2020 - 1:51 PM

Hello,

yes, I think it would be best to call you.
I'll contact you as soon as I have the number.

Thanks again.
Locked