Hitachi

JP1 Version 11 JP1/IT Desktop Management 2 Administration Guide


A.12 Amendments for each version

Organization of this subsection

(1) Changes in 11-51

(a) Changes in the manual (3021-3-B54-40(E))

  • A security policy can now be set for offline-managed devices.

  • The file information stored in all the registered USB devices can now be collected.

  • A file larger than 2 gigabytes can now be distributed.

  • The VPN connection configurations for PCs for use outside the company were added.

  • HIBUN logs can now be imported into JP1/IT Desktop Management 2 operation logs.

  • When hardware asset information is imported, the user can now select whether to register the information as new hardware asset information if it is not associated.

  • The ioutils importexlog command was added to the commands that cannot be executed simultaneously.

  • The following events were added:

    1164, 1165, 1166, 1167

  • In event 1079, the MAC address and the IP address are now set for the issued host name item.

(2) Changes in 11-50

(a) Changes in the manual (3021-3-B54-30(E))

  • For agents for Mac, the distribution of software and files (remote installation) is now enabled. Additionally, these agents are judged for security status based on security policies.

  • You can now use a command to control network access of devices.

  • The setting that suppresses the use of USB devices is now available to limit assets that can use USB devices.

  • The managed software information now includes information on which operating system the software program is installed on. This enables the licenses of a software program to be managed for each operating system.

  • You can now install an agent on the server on which Citrix XenApp and Microsoft RDS have been installed and manage it with JP1/IT Desktop Management 2.

  • A list of update programs registered with a management server can now be exported to a CSV file. Additionally, the exported CSV file containing patch information can now be imported to the source management server or other management servers.

  • The ioutils exportupdatelist command and the ioutils importupdatelist command are now included as part of the commands that cannot be simultaneously executed.

  • The following events were added:

    1159 to 1163

(3) Changes in version 11-10

(a) Changes in the manual (3021-3-B54-20(E))

  • Windows Server 2016 was added as an applicable operating system for the following products:

    • JP1/IT Desktop Management 2 - Manager

    • JP1/IT Desktop Management 2 - Agent

    • JP1/IT Desktop Management 2 - Network Monitor

    • JP1/IT Desktop Management 2 - Asset Console

    • Remote Install Manager

  • An agent can now be managed after being installed on a computer running Mac OS.

    Provided functionality

    • Acquisition of system information and software information

    • Remote control via RFB connections (already provided for agentless management)

    • Network control (enabling or disabling network access on demand)

    Unavailable functionality (including functionality in development)

    • Software and file distribution (remote installation)

    • Collection of files (remote collection)

    • Agent settings and agent deployment

    • Security management (security judgments, automated countermeasures)

    • Operation logs

    • Device control

  • By linking with JP1/Base, you can now log in to JP1/IT Desktop Management 2 by using JP1 authentication.

  • As files that are to be executed automatically during installation, ZIP files for installers of related products, such as Hibun, can now be set.

  • Information about Windows Store apps can now be collected as installed software information.

(4) Changes in version 11-01

(a) Changes in the manual (3021-3-B54-10(E))

  • JP1/IT Desktop Management 2 - Operations Director was added as a relevant program product.

  • Windows 10 was added as an applicable operating system for JP1/IT Desktop Management 2 - Network Monitor.

  • Smart device software can now be managed.

  • You can now use the file for connection destinations (itdmhost.conf) to specify the connection destination of an agent.

  • You can now perform device maintenance in which you can specify judgement conditions for duplicate or idle devices in order to detect devices suggested for deletion, and then delete them automatically or manually.

  • The description of the remote control function for UNIX agents was removed.

  • The description of the systems on which the itdm2nodecount (counting the number of managed devices) command can be executed was amended.

  • The return values 4 and 85 were added to the itdm2nodecount (counting the number of managed devices) command.

  • The procedure for executing the deletenwgroup command for the first time was added.

  • When a device is deleted, the asset status of the hardware assets associated with the deleted device can now be automatically changed.

  • Events with the following event numbers were added:

    1154 to 1158

  • JP1 event attributes for event number 1157 were added.

  • A description of the port numbers used on the administrator's computer (Remote Install Manager) and relay systems was added.

  • Information about the Windows OS version can now be obtained.

  • A trigger for JP1/IT Desktop Management 2 to output audit logs was added.

(5) Changes in version 11-00

(a) Changes in the manual (3021-3-B54(E))

  • Operating JP1/IT Desktop Management 2 in a multi-server configuration can now enable both location-by-location management and integrated management.

  • The setting procedure for obtaining revision history of devices was changed.

  • Windows 10 was added as the applicable OS for the following products.

    • JP1/IT Desktop Management 2 - Agent

    • JP1/IT Desktop Management 2 - RC Manager

    • Remote Install Manager

  • Windows Server 2003 and Windows Server 2008 (excluding Windows Server 2008 R2) were excluded from the applicable OS for the following products.

    • JP1/IT Desktop Management 2 - Manager

    • JP1/IT Desktop Management 2 - Agent

    • JP1/IT Desktop Management 2 - Network Monitor

    • JP1/IT Desktop Management 2 - RC Manager

  • You can now import and export network connection information.

  • With the end of the support of the JP1 smart device management service, the JP1 smart device management service was deleted from the MDM systems that can be linked.

  • You can now use JP1/Audit Management - Manager to collect and manage audit logs of JP1/IT Desktop Management 2 if the language set for the management server OS is Japanese or English.

  • As an argument for the resetnid.vbs (resetting host identifiers) command, /s was added.

  • A description of the distributelicense (distributing licenses) command was added. In addition, the deletenwgroup (deleting network groups) command was added in the description that the distributelicense command cannot be executed simultaneously with some commands.

  • A description of the deletenwgroup (deleting network groups) command was added. In addition, the distributelicense (distributing licenses) command was added in the description that the deletenwgroup command cannot be executed simultaneously with some command.

  • A description of the itdm2nodecount (counting the number of managed devices) command was added.

  • Event numbers 1145, 1146, 1148, 1149, 1150, 1151, and 1152 were added in the event list.

  • Port number 31023 was added in the port number list.

  • The procedure for changing the display order of user information was added.

  • You can now install and manage an agent on a computer whose OS is UNIX.

  • Anti-virus product information can now be acquired from the support service site.

  • In the description about the browsers that can display the operation windows, Internet Explorer 11 was added.

  • (Changes from only this manual (3021-3-370(E))) The software, purchasing status, product ID, GUID, and software type for some software can now be managed.

(6) Changes in version 10-50

(a) Changes in the manuals (3021-3-276 and 3021-3-370(E))

  • For the resetnid.vbs (resetting the host ID) command, how to display return codes was added, and the example was corrected.

  • Functions of a site server configuration system were deleted, and a relay system was added as the system necessary for using Remote Installation Manager for distribution,

  • The distribution function using Remote Installation Manager now allows you to perform distribution by specifying detailed conditions of managed computers and operations to be performed on the computers.

  • You can now manage hardware information, software information, and contract information including network devices by using a database.

  • You can now collect files stored in managed computers in a single operation.

  • You can now suppress the use of the following devices:

    • Bluetooth device

    • Imaging device

    • Windows portable device

    In addition, you can now suppress the use of the following types of devices, which were suppressed as removable disks in Windows 8, Windows Server 2012, Windows 7, Windows Server 2008, and Windows Vista:

    • USB device

    • IEEE1394 device

    • Internal SD card

  • You can now select to obtain a list of files stored in a USB device permitted for use.

  • You can now specify whether to display, on a user's computer, a message indicating that the use of devices is suppressed.

  • The Getting Started wizard can now install an agent as a method of managing devices.

  • Functions of a multi-server configuration system were deleted, and you can now manage a maximum of 30,000 devices on a management server.

  • You can now specify the conditions to acquire operation logs relating to the following operations:

    • File Operation

    • Process/Program Operation

    • Window Operation

  • You can now acquire an operation log for permitting device connection.

  • You can now set intervals for reporting prohibited-operation suppression events and operation logs to the higher-level system, and the maximum period for holding such events and operation logs on a user's computer.

  • You can now specify the number of consecutive login failures before an account is locked, and the password expiration period.

  • Settings for installation, setup, and agent configuration were changed according to changes in product configuration.

  • Windows 8.1 and Windows Server 2012 R2 were added as applicable OSs for the following products:

    • JP1/IT Desktop Management 2 - Manager

    • JP1/IT Desktop Management 2 - Agent

    • JP1/IT Desktop Management 2 - Network Monitor

  • Windows 8 and Windows 7 were removed from the applicable OSs for the following product:

    • JP1/IT Desktop Management 2 - Manager

  • Windows 2000 was removed from the applicable OSs for the following product:

    • JP1/IT Desktop Management 2 - Agent

  • Supported Internet Explorer versions were changed.

  • Some port numbers were changed.

  • The following events were added:

    1011, 1138, 1139, and 1140

  • The following events were changed:

    1032, 1033, 1034, and 1076

  • The following events were deleted:

    1010 and 1121

  • You can no longer acquire print operation logs or suppress printing for shared network printers.

  • For connection mode in the remote control agent configuration, the description of control mode was replaced with that of the monitoring mode. Accordingly, the description of how to determine the connection mode was changed.

  • Information output in audit logs was changed.

  • The following items were added to actions to be taken after a failover during command execution:

    • ioutils exportdevice (to export device information)

    • ioutils exportdevicedetail (to export device information details)

    • ioassetsfieldutil export (to export the definitions of common management fields and additional management fields)

  • Description about handling of values when a CSV file is imported by the ioutils importasset command was added.

(7) Changes in version 10-10

(a) Changes in the manual (3021-3-154-30)

  • The following note was added: If you want to specify a period of time to intensively search for devices connected to the network, you must specify settings so that the number of IP addresses contained in the IP address range is 50,000 or lower.

  • In the Security module and Device module, you can now create groups to which managed computers are automatically assigned according to certain conditions.

  • You can now select whether to display, in the user computer, the balloon hint for the JP1/IT Desktop Management icon in the task tray and the End User Form view.

  • For automatic update of the network filter list, you can now specify whether to enable all automatic updates or automatic updates only for add operations.

  • You can now link with JP1/NM - Manager to allow JP1/IT Desktop Management to control network connections monitored by appliance products with JP1/NM installed.

  • Descriptions of how to import a server certificate to the management server, and then change the server certificate of the MDM system, were added. The descriptions of the Internet Explorer version were deleted from the procedure for setting information required to link with an MDM system. In addition, settings required for linking with the JP1 smart device management service were added.

  • Descriptions about permissions required to execute commands were collected in 17.1 Executing commands. In addition, a description about what to do if User Account Control (UAC) for the OS is enabled when executing a command other than the getinv.vbs command was added.

  • Notes on command execution were added.

  • Return value 1 was added to ioutils importfield command.

  • The CSV file output format when an operation log is exported by using the ioutils exportoplog command was added.

  • The /i option was added to the resetnid.vbs command so that a dialog box prompting the user to select whether to execute the command, and a dialog box showing the execution results, appear on the user computer.

  • The following event was added as an event that requires corrective actions:

    1059

  • The following messages were added:

    KDEX1598-E, KDEX3319-I, KDEX3320-E, KDEX3321-I, KDEX3322-E, KDEX4126-W, KDEX5305-I, KDEX5306-E, KDEX5464-I, KDEX5465-I, KDEX5466-E, KDEX5467-E, KDEX5468-E, KDEX5469-E, KDEX5470-E, and KDEX5471-E

  • The following messages were changed:

    KDEX1534-W, KDEX1557-W, KDEX1576-W, KDEX1583-W, KDEX4010-E, KDEX4387-E, KDEX4388-E, KDEX4389-E, KDEX4390-E, KDEX4391-E, KDEX4392-E, KDEX4394-E, KDEX4395-E, KDEX4396-E, KDEX4397-E, and KDEX4398-W

  • The following message was deleted:

    KDEX6321-E

  • The following events were added:

    1134, 1135, 1136, and 1137

  • The following event was changed:

    19

  • The JP1 event attributes of the following events were added:

    1135, 1136, and 1137

  • The JP1 event attribute of the following event was changed:

    1118

  • The description about ports was corrected. Also, a description about the network between JP1/IT Desktop Management - Remote Site Server and agentless computers was added.

  • Descriptions about the registration date and time, and the management start date and time displayed in the device list, were added.

(b) Changes in the manual (3021-3-339-10(E))

  • The following note was added: If you want to specify a period of time to intensively search for devices connected to the network, you must specify settings so that the number of IP addresses contained in the IP address range is 50,000 or lower.

  • You can now make security judgment on any judgment conditions you like by adding any desired policy about computer security settings to the list of security policies.

  • You can now obtain change histories of device information.

  • You can now manage the use status of software licenses for each management software in the Software License Status window.

  • A description was added about the flow of changing the definition of a department when the organizational structure of the department is changed.

  • You can now collectively delete departments and locations that are deleted from the department definitions, from the groups displayed in the menu area.

  • In the Security module and Device module, you can now create groups to which managed computers are automatically assigned according to certain conditions.

  • You can now select whether to display, in the user computer, the balloon hint for the Job Management Partner 1/IT Desktop Management icon in the task tray and the window for entering user information.

  • A system administrator can now set (in the Settings module) the date and time when the user can start entering user information.

  • For automatic update of the network control list, you can now specify whether to enable all automatic updates or automatic updates for add operations only.

  • You can now link with JP1/NETM/Network Monitor - Manager to allow Job Management Partner 1/IT Desktop Management to control network connections (monitored by appliance products with JP1/NETM/Network Monitor installed).

  • You can now restrict the display range of software licenses and contracts according to the jurisdiction range specified in the user account.

  • Descriptions of how to import a server certificate to the management server, and then change the server certificate of the MDM system, were added. The descriptions of the Internet Explorer version were deleted from the procedure for setting information required to link with an MDM system.

  • Descriptions about permissions required to execute commands were collected in 17.1 Executing commands. In addition, a description about what to do if User Account Control (UAC) for the OS is enabled when executing a command other than the getinv.vbs command was added.

  • A procedure of executing commands on a computer with an agent installed was added.

  • Notes on command execution were added.

    You can now export and import definitions of asset management items in CSV format.

  • Return value 1 was added to the ioutils importfield command.

  • A note on specifying the -filter option for the ioutils exportoplog command was added.

  • The CSV file output format when an operation log is exported by using the ioutils exportoplog command was added.

  • A description was added about the characters that can be used for folder names specified in the following commands:

    • exportdb command

    • importdb command

    • reorgdb command

    • getlogs command

    • getinstlogs command

  • The /i option was added to the resetnid.vbs command so that a dialog box to select whether to let the user's computer execute the command and a dialog box to show execution results are displayed.

  • The following event was added as an event that requires action when a failure occurs:

    1059

  • The following messages were added:

    KDEX1597-E, KDEX1598-E, KDEX3319-I, KDEX3320-E, KDEX3321-I, KDEX3322-E, KDEX4126-W, KDEX4387-E, KDEX4388-E, KDEX4389-E, KDEX4390-E, KDEX4391-E, KDEX4392-E, KDEX4393-E, KDEX4394-E, KDEX4395-E, KDEX4396-E, KDEX4397-E, KDEX4398-W, KDEX4399-I, KDEX4400-E, KDEX4401-E, KDEX4402-E, KDEX4403-E, KDEX5305-I, KDEX5306-E, KDEX5460-I, KDEX5461-I, KDEX5462-E, KDEX5463-E, KDEX5464-I, KDEX5465-I, KDEX5466-E, KDEX5467-E, KDEX5468-E, KDEX5469-E, KDEX5470-E, and KDEX5471-E

  • The following messages were changed:

    KDEX1534-W, KDEX1557-W, KDEX1576-W, KDEX1583-W, KDEX4010-E, KDEX4387-E, KDEX4388-E, KDEX4389-E, KDEX4390-E, KDEX4391-E, KDEX4392-E, KDEX4394-E, KDEX4395-E, KDEX4396-E, KDEX4397-E, and KDEX4398-W

  • The following messages were deleted:

    KDEX1543-E, KDEX4065-E, and KDEX6321-E

  • The following events were added:

    1127, 1128, 1129, 1130, 1131, 1134, 1135, 1136, and 1137

  • The following event was changed:

    19

  • The following events were deleted:

    50, 51, and 52

  • JP1 event attributes for the following events were added:

    1132, 1133, 1135, 1136, and 1137

  • JP1 event attributes for the following events were changed:

    1079, 1082, and 1118

  • The explanation of port settings was changed. Also, an explanation about a network between Job Management Partner 1/IT Desktop Management - Remote Site Server and an agentless computer was added.

  • An explanation was added regarding the registration date and time and the management start date and time displayed in the device list.

(8) Changes in version 10-02

(a) Changes in the manual (3021-3-154-20)

  • You can now make security judgment on any judgment conditions, by adding any desired policy about computer security settings to the list of security policies.

  • You can now obtain change histories of device information.

  • You can now manage the use status of software licenses for each management software in the Software License Status window.

  • A description was added about the flow of changing the definition of a department when the organizational structure of the department is changed.

  • You can now collectively delete departments (and locations that are deleted from the department definitions) from the groups displayed in the menu area.

  • A system administrator can now set the date and time when the user can start entering user information, in the Settings module.

  • You can now restrict the display range of software licenses and contracts according to the jurisdiction range specified in the user account.

  • Windows 8 and Windows Server 2012 were added as applicable OSs for the following programs:

    • JP1/IT Desktop Management - Manager

    • JP1/IT Desktop Management - Remote Site Server

    • JP1/IT Desktop Management - Network Monitor

  • A procedure of executing commands on a computer with an agent installed was added.

  • You can now export and import definitions of asset management items in CSV format.

  • A note on specifying the -filter option for the ioutils exportoplog command was added.

  • A description was added about the characters that can be used for folder names specified in the following commands:

    • exportdb command

    • importdb command

    • reorgdb command

    • getlogs command

    • getinstlogs command

  • A procedure of resetting a host ID on a computer in which a site server is installed was added.

  • The following note was added: Do not execute the resetnid.vbs command on a device on which the network monitor is installed.

  • The following messages were added:

    KDEX1597-E, KDEX4387-E, KDEX4388-E, KDEX4389-E, KDEX4390-E, KDEX4391-E, KDEX4392-E, KDEX4393-E, KDEX4394-E, KDEX4395-E, KDEX4396-E, KDEX4397-E, KDEX4398-W, KDEX4399-I, KDEX4400-E, KDEX4401-E, KDEX4402-E, KDEX4403-E, KDEX5460-I, KDEX5461-I, KDEX5462-E, and KDEX5463-E

  • The following messages were deleted:

    KDEX1543-E and KDEX4065-E

  • The following events were added:

    1127, 1128, 1129, 1130, 1131, 1132, and 1133

  • The following events were deleted:

    50, 51, and 52

  • The following events were changed:

    1079 and 1082

(9) Changes in version 10-01

(a) Changes in the manual (3021-3-154-10)

  • Windows 8 and Windows Server 2012 were added as applicable OSs for JP1/IT Desktop Management - Agent.

  • Description about using Autorun.inf to enable an installation to start automatically when a CD-R is used as the media for installing the agent was added.

  • Computers that are not connected to the management server via a network can now be managed by using the offline management functionality.

  • Descriptions about suspicious operations such as taking out files without permission or printing out files causing windows to be displayed differently and requiring different ways to investigate the issue were added.

  • Notes on the recreatelogdb command were corrected.

  • Notes on operating JP1/IT Desktop Management windows in Internet Explorer 9 were added.

  • Methods for taking action when messages such as "Abnormal request" or "Unexpected error" is displayed when the user logs in or opens the operation window were added.

  • Procedures for editing the agent configurations for the computer that enables the site server or network monitoring were added.

  • JP1/IT Desktop Management information can now be updated by obtaining the support service information, including anti-virus product information.

  • Methods for setting MDM system linkage information were corrected.

  • Reference information when registering JP1/IT Desktop Management commands as Windows tasks was corrected.

  • Description about the server that can execute the ioutils exportoplog command was corrected.

  • Software types, the purchasing status for some installed software, and product IDs can now be managed while managing assets. In addition, you can now update the information in JP1/IT Desktop Management by obtaining support service information including the SAMAC software dictionary file for offline update to manage software types.

  • Notes on error message KDEX4041-E which is output when executing the getlogs command were added.

  • A description about reference information when installing the agent by copying a disk without executing the resetnid.vbs command was improved.

  • The following messages were added:

    KDEX1005-W, KDEX1036-W, KDEX1076-E, KDEX1543-E, KDEX1594-E, KDEX3029-E, KDEX3030-I, KDEX4203-E, KDEX4270-I, KDEX4287-E, KDEX5401-E, KDEX5437-I, KDEX5438-E, KDEX5440-E, KDEX5450-E, KDEX5451-E, KDEX5452-E, KDEX5453-E, KDEX5454-E, KDEX5455-E, and KDEX5456-E

  • The following messages were changed:

    KDEX4023-E, KDEX4073-I, KDEX4204-E, KDEX4220-E, KDEX4295-E, KDEX4378-Q, KDEX5336-I, KDEX5337-E, KDEX5338-E, KDEX5339-E, KDEX5340-I, KDEX5341-E, KDEX5342-E, KDEX5346-E, KDEX5385-I, KDEX5386-E, KDEX5387-E, KDEX5388-E, KDEX5389-I, KDEX5390-E, KDEX5391-E, KDEX5392-E, KDEX5393-E, KDEX5394-E, KDEX5396-I, KDEX5397-E, KDEX5407-E, KDEX5414-E, KDEX5415-E, KDEX5423-E, KDEX5426-E, KDEX5427-E, KDEX5428-E, KDEX5430-E, KDEX5431-I, KDEX5432-I, KDEX5435-E, KDEX6112-E, KDEX6113-E, KDEX6115-E, KDEX6132-E, KDEX6151-E, KDEX6152-E, KDEX8006-E, KDEX8019-E, KDEX8022-W, KDEX8024-W, and KDEX8028-E

  • The following events were added:

    1117, 1118, 1123, and 1124

  • The following events were added:

    1107 and 1108

  • IDs that are displayed in JP1/IM as JP1 events when linked with JP1/IM were added.

  • Event 1118 can now be output to JP1/IM as a JP1 event when linked with JP1/IM.

  • A description of attributes for JP1 events was added.

  • Port numbers that are used in JP1/IT Desktop Management - Manager are described separately for single-server and multi-server configurations.

  • A description was added about the fact that when the power of a computer with an agent installed is turned off while operation logs or prohibited operations suppression events are being sent to a higher-level system, the operation logs or prohibited operations suppression events are sent to the higher-level system after the computer is turned on.

  • The name of the program that collects and manages audit logs to support evaluation and audit of the integral control for the whole system was changed to JP1/Audit Management - Manager.

  • "Success or failure in updating the SAMA software dictionary information" was added as the timing when ContentAccess audit logs are output.

(b) Changes in the manual (3021-3-339(E))

  • The following information was combined into the Job Management Partner 1 Version 10 Job Management Partner 1/IT Desktop Management 2 Overview and System Design Guide:

    • A description of Microsoft products

    • Icons and formats used in the manual

    • Online Help

    • Related manuals

    • Related documents

    • Notations used in the manual

    • Abbreviations used in the manual

    • Conventions, for example, kilobyte (KB)

    • Glossary

  • Windows 8 and Windows Server 2012 were added as applicable OSs for JP1/IT Desktop Management - Agent.

  • Description about using Autorun.inf to enable an installation to start automatically when a CD-R is used as the media for installing the agent was added.

  • Computers that are not connected to the management server via a network can now be managed by using the offline management functionality

  • Descriptions about suspicious operations such as taking out files without permission or printing out files causing windows to be displayed differently and requiring different ways to investigate the issue were added.

  • Notes on the recreatelogdb command were corrected.

  • Notes on operating JP1/IT Desktop Management windows in Internet Explorer 9 were added.

  • Methods for taking action when messages such as "Abnormal request" or "Unexpected error" is displayed when the user logs in or opens the operation window were added.

  • Procedures for editing the agent configurations for the computer that enables the site server or network monitoring were added.

  • JP1/IT Desktop Management information can now be updated by obtaining the support service information.

  • Methods for setting MDM system linkage information were corrected.

  • Reference information when registering JP1/IT Desktop Management commands as Windows tasks was corrected.

  • The description about the server that can execute the ioutils exportoplog command was corrected.

  • Software types, the purchasing status for some installed software, and product IDs can now be managed while managing assets.

  • Notes on error message KDEX4041-E which is output when executing the getlogs command was added.

  • The description about reference information when installing the agent by copying a disk without executing the resetnid.vbs command was improved.

  • The following messages were added:

    KDEX1005-W, KDEX1036-W, KDEX1076-E, KDEX1077-E, KDEX1078-W, KDEX1543-E, KDEX1581-E, KDEX1582-W, KDEX1583-W, KDEX1584-E, KDEX1587-Q, KDEX1588-Q, KDEX1589-Q, KDEX1590-E, KDEX1591-W, KDEX1592-E, KDEX1593-E, KDEX1594-E, KDEX3029-E, KDEX3030-I, KDEX3299-I, KDEX3300-E, KDEX3301-I, KDEX3302-E, KDEX3303-I, KDEX3304-E, KDEX4074-E, KDEX4075-E, KDEX4076-E, KDEX4202-E, KDEX4203-E, KDEX4215-Q, KDEX4216-Q, KDEX4233-E, KDEX4270-I, KDEX4287-E, KDEX5104-I, KDEX5396-I, KDEX5397-E, KDEX5399-E, KDEX5400-E, KDEX5401-E, KDEX5402-I, KDEX5403-E, KDEX5404-E, KDEX5405-E, KDEX5406-E, KDEX5407-E, KDEX5409-E, KDEX5410-I, KDEX5411-E, KDEX5412-E, KDEX5413-E, KDEX5414-E, KDEX5415-E, KDEX5417-E, KDEX5418-I, KDEX5419-E, KDEX5420-E, KDEX5421-E, KDEX5422-E, KDEX5423-E, KDEX5425-E, KDEX5426-E, KDEX5427-E, KDEX5428-E, KDEX5430-E, KDEX5431-I, KDEX5432-I, KDEX5434-E, KDEX5435-E, KDEX5436-E, KDEX5440-E, KDEX5450-E, KDEX5451-E, KDEX5452-E, KDEX5453-E, KDEX5454-E, KDEX5455-E, KDEX5456-E, KDEX6119-E, KDEX6151-E, KDEX6152-E, KDEX6511-E, KDEX8031-I, KDEX8032-W, KDEX8033-E, KDEX8034-E, KDEX8035-W, KDEX8036-E, KDEX8037-E, KDEX8038-E, and KDEX8039-E

  • The following messages were changed:

    KDEX1505-E, KDEX1506-E, KDEX4020-E, KDEX4023-E, KDEX4073-I, KDEX4085-I, KDEX4100-E, KDEX4204-E, KDEX4220-E, KDEX4221-E, KDEX4295-E, KDEX4378-Q, KDEX5000-I, KDEX5010-W, KDEX5071-W, KDEX5336-I, KDEX5337-E, KDEX5338-E, KDEX5339-E, KDEX5340-I, KDEX5341-E, KDEX5342-E, KDEX5346-E, KDEX5385-I, KDEX5386-E, KDEX5387-E, KDEX5388-E, KDEX5389-I, KDEX5390-E, KDEX5391-E, KDEX5392-E, KDEX5393-E, KDEX5394-E, KDEX6112-E, KDEX6113-E, KDEX6115-E, KDEX6132-E, KDEX8003-I, KDEX8006-E, KDEX8019-E, KDEX8022-W, KDEX8024-W, KDEX8028-E, and KDEX8030-E

  • The following events were added:

    1105, 1106, 1109 to 1118, and 1120 to 1123

  • IDs that are displayed in JP1/IM as JP1 events when linked with JP1/IM were added.

  • Event 1118 can now be output to JP1/IM as a JP1 event when linked with JP1/IM.

  • A description of attributes for JP1 events was added.

  • Port numbers that are used in JP1/IT Desktop Management - Manager are described separately for single-server and multi-server configurations.

  • A description was added about the fact that when the power of a computer with an agent installed is turned off while operation logs or prohibited operations suppression events are being sent to a higher-level system, the operation logs or prohibited operations suppression events are sent to the higher-level system after the computer is turned on.

  • You can now manage a maximum of 50,000 devices when operating a system in a multi-server configuration.

  • Information to be displayed or operations to be executed can now be controlled in accordance with work responsibilities specified for user accounts.

  • You can now suppress only writing to FD drives and removable disks.

  • You can now link with JP1/IM to send notifications concerning JP1 events.

  • The list in the operation window can now be displayed on each page.

  • The methods for applying and canceling simple filters were changed.

  • The following was added: A procedure to revert the security configuration items of a managed computer, which had been changed due to application of a security policy or security auto enforce, to the state before the change.

  • A solution for the following was added: When installing an agent by copying a disk, multiple devices are recognized as a single device.

  • A description was added about the method of removing a device from the network control list that was automatically added to the list.

  • A description of the following was added: If you removed a device discovered by the network monitoring functionality, to rediscover the device, you must disconnect from and then reconnect to the network.

  • The targets of the network monitoring functionality were added.

  • The following description was added: If you install an agent in Windows 2000, Windows XP, or Windows Server 2003, in the Agent Configuration window, which you can select from Agent in the Settings module, the settings for Set the account to install Agent. are enabled.

  • Notes on device discovery and agent delivery were changed for the following case: The network settings prevent unregistered devices from connecting to the network.

  • The URL of the login window for JP1/IT Desktop Management was added.

  • The following description was added: A timeout occurs if you have not clicked OK in the JP1/IT Desktop Management dialog box for 60 minutes or more.

  • The following description was added: Changing the Host Name of device information linked to hardware asset information does not automatically change Device Name in the hardware asset information.

  • The following description was added: Of the asset status or contract status information added by a system administrator, the asset status or contract status information that was saved as filter conditions cannot be removed.

  • The following description was added: Serial numbers that can become mapping keys when imported are classified as BIOS information.

  • The following description was added: The data type of Department or Location can be changed, but the data type of other added asset management items cannot be changed after it is specified.

  • The following was added: The time required to generate a new host name after the resetnid.vbs is executed.

  • Device information can now be exported by using the ioutils exportdevice command.

  • Detailed device information can now be exported by using the ioutils exportdevicedetail command.

  • Notes on IP addresses and MAC addresses to be registered in the network control list were added.

  • Port numbers of the controller and remote control agent were modified.

  • The description of actions that trigger communication between a management server and an agent was corrected.

  • The description of the following was corrected: Timing at which a management server checks whether the update program information has been updated.

  • The conditions for automatically obtaining update information from the support service site were corrected.

  • The following description was added: If you edit External Device Restriction in Other Access Restrictions in the security policy, you must restart the computer to which the security policy is assigned.

  • The following was corrected: Details of event types output to audit logs, and the timing at which JP1/IT Desktop Management outputs audit logs.

  • The following items were added to the values output as object information in audit logs:

    • UpdateInfo (update program information)

    • AntivirusInfo (anti-virus product information)

    • ActionDefinition (JP1/IT Desktop Management -Manager action definition file)

    • Agent

    • AssetInfo (asset information)

  • The values output as the request source for an audit log were corrected.

  • The description of the audit log save format was corrected.

  • You can now link with an MDM product to manage smart devices.

  • The total number of devices with software installed (Number of Used Licenses) is now displayed in the managed software information.

  • The timing at which you are asked to change your password at login was added. In addition, the following description was added: You must change your password at login after 180 days of setting it.

  • A procedure for logging out was added.

  • A procedure for releasing a user account lock was added.

  • The icon for editing definitions for departments and locations from the menu area was changed. In addition, procedures for adding, editing, and removing definitions for departments and locations were added.

  • Names of departments and locations can now be changed from the menu area. In addition, a procedure for changing the names of departments and locations was added.

  • A procedure for removing departments and locations was added.

  • The following note was added: In a network segment for which network monitoring is disabled, even if Deny is displayed for Connection to Network, the network connection is not blocked.

  • The following description was added: When action items for network control are specified, reconnecting to a network from a computer with an agent installed is controlled according to the security judgment.

  • A description about registration of USB devices was added for the following cases: Registering USB devices that are recognized by vendors and registering USB devices that are recognized individually.

  • Unnecessary operation logs can now be removed by using the deletelog command.

  • The following description was added: If a CSV file for hardware asset information contains blank values, items with blank values are not updated after import.

  • The following description was added: If a hyphen (-) is displayed in the information area, blank values are output after export.

  • The following description was added: A user ID used in authentication for Windows administrative share must be specified in the following format if the ID is to be authenticated as a domain user: User ID@FQDN (fully qualified domain name), or Domain name\user ID.

  • A procedure for specifying display names of departments and locations for each language was added.

  • The following description was added: Theioutils importfieldcommand can add items only by importing. Events with event numbers from 1085 to 1116 were added to the events for which action needs to be taken.

(10) Changes in version 10-00

(a) Changes in the manual (3021-3-154)

  • You can now manage a maximum of 50,000 devices when operating a system in a multi-server configuration.

  • Information to be displayed or operations to be executed can now be controlled in accordance with division of work responsibilities specified for user accounts.

  • You can now suppress only writing to FD drives and removable disks as well.

  • You can now link with the MDM service to manage smart devices.

  • You can now link with JP1/IM to send notifications concerning JP1 events.

  • The list in the operation window can now be displayed on each page.

  • The methods for applying and canceling simple filters were changed.

  • The following was added: A procedure to revert the security configuration items of a managed computer, which had been changed due to application of a security policy or security auto enforce, to the state before the change.

  • A solution for the following was added: When installing an agent by copying a disk, multiple devices are recognized as a single device.

  • A description was added about the method of removing a device from the network control list that was automatically added to the list.

  • A description of the following was added: If you removed a device discovered by the network monitoring functionality, to rediscover the device, you must disconnect from and then reconnect to the network.

  • A description of the targets of the network monitoring functionality was added.

  • The following description was added: If you install an agent in Windows 2000, Windows XP, or Windows Server 2003, in the Agent Configuration window, which you can select from Agent in the Settings module, the settings for Set the account to install Agent are enabled.

  • Notes on device discovery and agent delivery were changed for the following case: The network settings prevent unregistered devices from connecting to the network.

  • The URL of the login window for JP1/IT Desktop Management was added.

  • The following description was added: A timeout occurs if you have not clicked OK in the JP1/IT Desktop Management dialog box for 60 minutes or more.

  • The following description was added: Changing the Host Name of device information linked to hardware asset information does not automatically change Device Name in the hardware asset information.

  • The following description was added: Of the asset status or contract status information added by a system administrator, the asset status or contract status information that was saved as filter conditions cannot be removed.

  • The following description was added: Serial numbers that can become mapping keys when imported are classified as BIOS information.

  • The following description was added: The data type of Department or Location can be changed, but the data type of other added asset management items cannot be changed after it is specified.

  • The following was added: The time required to generate a new host name after the resetnid.vbs is executed.

  • Device information can now be exported by using the ioutils exportdevice command.

  • Detailed device information can now be exported by using the ioutils exportdevicedetail command.

  • Notes on IP addresses and MAC addresses to be registered in the network control list were added.

  • The following messages were added:

    KDEX1077-E, KDEX1078-W, KDEX1581-E, KDEX1582-W, KDEX1583-W, KDEX1584-E, KDEX1587-Q, KDEX1588-Q, KDEX1589-Q, KDEX1590-E, KDEX1591-W, KDEX1592-E, KDEX1593-E, KDEX4074-E, KDEX4075-E, KDEX4076-E, KDEX4202-E, KDEX4215-Q, KDEX4216-Q, KDEX4233-E, KDEX5399-E, KDEX5400-E, KDEX5435-E, KDEX5436-E, KDEX6119-E, KDEX6151-E, KDEX6152-E, and KDEX6511-E

  • The following messages were changed:

    KDEX1505-E, KDEX1506-E, KDEX4020-E, KDEX4023-E, KDEX4085-I, KDEX4100-E, KDEX4221-E, KDEX5071-W, KDEX5407-E, KDEX5415-E, KDEX5423-E, KDEX5426-E, KDEX5427-E, KDEX5428-E, KDEX5430-E, KDEX5431-I, KDEX5432-I, KDEX8003-I, KDEX8022-W, and KDEX8030-E

  • Events (event numbers 1120, 1121, and 1122) were added.

  • Events (event numbers 1107 and 1108) were changed.

  • Port numbers of the controller and remote control agent were modified.

  • The description of actions that trigger communication between a management server and an agent was corrected.

  • The description of the following was corrected: Timing at which a management server checks whether the update program information has been updated.

  • The conditions for automatically obtaining update information from the support service site were corrected.

  • The following description was added: If you edit External Device Restriction in Other Access Restrictions in the security policy, you must restart the computer to which the security policy is assigned.

  • The following was corrected: Details of event types output to audit logs, and the timing at which JP1/IT Desktop Management outputs audit logs.

  • The following items were added to the values output as object information in audit logs:

    • UpdateInfo (updated program information)

    • AntivirusInfo (anti-virus product information)

    • ActionDefinition (JP1/ITDesktop Management -Manager action definition file)

    • Agent

    • AssetInfo (asset information)

  • The values output as the request source for an audit log were corrected.

  • The description of the audit log save format was corrected.

  • The following information was combined into the JP1 Version 10 JP1/IT Desktop Management Overview and System Design Guide:

    • A description of Microsoft products

    • Icons and formats used in the manual

    • Online Help

    • Related manuals

    • Related documents

    • Notations used in the manual

    • Abbreviations used in the manual

    • Conventions, for example, kilobyte (KB)

    • Glossary

(11) Changes in version 09-51

(a) Changes in the manual (3020-3-S95-10)

  • You can now link with an MDM product to manage smart devices.

  • The total number of devices with software installed (Number of Used Licenses) is now displayed in the managed software information.

  • The timing at which you are asked to change your password at login was added. In addition, the following description was added: You must change your password at login after 180 days of setting it.

  • A procedure for logging out was added.

  • A procedure for releasing a user account lock was added.

  • The icon for editing definitions for departments and locations from the menu area was changed. In addition, procedures for adding, editing, and removing definitions for departments and locations were added.

  • Names of departments and locations can now be changed from the menu area. In addition, a procedure for changing the names of departments and locations was added.

  • A procedure for removing departments and locations was added.

  • The following note was added: In a network segment for which network monitoring is disabled, even if Deny is displayed for Connection to Network, the network connection is not blocked.

  • The following description was added: When action items for network control are specified, reconnecting to a network from a computer with an agent installed is controlled according to the security judgment.

  • A description about registration of USB devices was added for the following cases: Registering USB devices that are recognized by vendors and registering USB devices that are recognized individually.

  • Unnecessary operation logs can now be removed from the site server by using the deletelog command.

  • The following description was added: If a CSV file for hardware asset information contains blank values, items with blank values are not updated after import.

  • The following description was added: If a hyphen (-) is displayed in the information area, blank values are output after export.

  • The following description was added: A user ID used in authentication for Windows administrative share must be specified in the following format if the ID is to be authenticated as a domain user: User ID@FQDN (fully qualified domain name), or Domain name\user ID.

  • A procedure for specifying display names of departments and locations for each language was added.

  • The following description was added: The ioutils importfield command can add items only by importing. Events with event numbers from 1085 to 1116 were added to the events for which action needs to be taken.

  • The following messages were added:

    KDEX3299-I, KDEX3300-E, KDEX3301-I, KDEX3302-E, KDEX3303-I, KDEX3304-E, KDEX5104-I, KDEX5396-I, KDEX5397-E, KDEX5402-I, KDEX5403-E, KDEX5404-E, KDEX5405-E, KDEX5406-E, KDEX5407-E, KDEX5409-E, KDEX5410-I, KDEX5411-E, KDEX5412-E, KDEX5413-E, KDEX5414-E, KDEX5415-E, KDEX5417-E, KDEX5418-I, KDEX5419-E, KDEX5420-E, KDEX5421-E, KDEX5422-E, KDEX5423-E, KDEX5425-E, KDEX5426-E, KDEX5427-E, KDEX5428-E, KDEX5430-E, KDEX5431-I, KDEX5432-I, KDEX5434-E, KDEX8031-I, KDEX8032-W, KDEX8033-E, KDEX8034-E, KDEX8035-W, KDEX8036-E, KDEX8037-E, KDEX8038-E, and KDEX8039-E

  • The following messages were changed:

    KDEX5000-I and KDEX5010-W

  • Events (event numbers 1105 to 1116) were added.