Using Application Control

The Management Console provides direct access to system management, configuration, file authorization, reporting, and logging functions.

The Management Console allows the user to communicate with an Application Server to send and retrieve file authorization data from the database. The data is sent from the server to a client, thereby establishing application control on the client. The Management Console provides direct access to system management, configuration, file authorization, reporting, and logging functions.

Logging In to the Management Console

You access the application by logging in to the Management Console.

  1. Select Start > Programs > Ivanti > Endpoint Security > Ivanti Device and Application Control Management Console > Ivanti Device and Application Control Management Console.
    Each time you access the Management Console, the Connect to Ivanti Device and Application Control Application Server dialog appears.
  2. From the Application Server drop-down list, select the Application Server you want to connect to.
    You can type the server name as an IP address with port if required in square brackets, NetBios name, or fully qualified domain name in the Application Server field.
  3. Select one of the following options:
  4. Option

    Description

    Use current user

    By default, the system connects to the Application Server using your credentials.

    Log in as

    Type the user name in the Username field and type the password in the Password field.

    Tip: Precede the user name by a computer workstation name and backslash for a local user, or by a domain name and backslash for domain users.

  5. Click OK.
    The Connect to Ivanti Device and Application Control Application Server dialog closes.

The Ivanti Device and Application Control Management Console window opens.

Logging Out of the Management Console

When you log out from the Management Console you can choose to terminate the administrative session or disconnect from the Application Server.

  1. To disconnect from the Application Server, select File from the navigation bar.
  2. Select one of the following options:
  3. Option

    Description

    Disconnect

    The Management Console remains open.

    Exit

    The Management Console closes.

The Disconnect or Exit action terminates your current administrative session.

Application Control Modules

The Application Control Modules provide access to the functions necessary for configuring and managing and are grouped into several modules, represented by the icons in the Modules section of the Control Panel.

The Application Control Modules provide access to the functions necessary for configuring and managing Ivanti Device and Application Control and are grouped into five modules, represented by the icons in the Modules section of the Control Panel:

Module

Icon

Description

Database Explorer

Database explorer icon

Shows the list of executable files, scripts, and macros that are stored in the Ivanti Device and Application Control database and manages file assignment details.

Exe Explorer

Exe explorer icon

Builds a list of executable files, scripts, and macros that are allowed to run on Ivanti Device and Application Control clients, and assigns files to file groups.

Log Explorer

Log explorer icon

Shows logs of applications, scripts, and macros that were run, files for which access was denied, and files authorized locally.

Scan Explorer

Scan explorer icon

Scans a computer or domain to identify executable files, scripts, and macros to be authorized, and assigns files to a file group using templates.

User Explorer

User explorer icon

Links users or user groups with file groups, granting permission to use the files assigned to file groups.

Getting Started

The Management Console can only be accessed by authorized network administrators.

Before you begin to use Ivanti Device and Application Control, you must define the following users in the domain:

  • An administrative user with local Administrator rights.
  • An Ivanti Device and Application Control client user with domain user rights.