- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Hello, I'm trying to setup Intel EMA Server and I was asked by the Azure team for the recommended settings when putting it behind Azure Web Application Firewall. Can you provide some guidelines for this?
Link Copied
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Hi,
We are glad to know you are interested in Intel® EMA. The complete installation guideline is available in our document Intel® Endpoint Management Assistant (Intel® EMA) Server Installation Guide v 1.12.1 https://www.intel.com/content/dam/support/us/en/documents/software/manageability-products/intel-ema-server-installation-and-maintenance-guide.pdf
In production environments, we suggest creating a virtual machine in Azure and installing Intel® EMA on it. The Database can be in the same machine or any other physical or virtual machine.
Please carefully read the sections:
1.3.4 Pre-installation Instructions for Microsoft Azure AD Environments
Network ports required in sections 1.3.9 Network and 1.3.10 Network Ports
As a general recommendation, Intel recommends provisioning the endpoints in Client Control Mode, testing the connection then, jump to the Admin Control Mode if your company requires it.
The latest software version is 1.12.2.0.
Intel® Endpoint Management Assistant (Intel® EMA); the zip file contains all the PDF guides.
I will gladly provide further assistance if necessary.
Regards,
Miguel C.
Intel Customer Support Technician
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Hi,
Do not hesitate to reply, I will gladly provide further assistance if necessary.
Regards,
Miguel C.
Intel Customer Support Technician
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Hi again, I've installed EMA for testing using the recommended option, it's a one server install with an Azure SQL DB. I can login to the web interface but I cannot connect via Platform Manager, I get this:
What should I check?
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Hi Endpoint_Engineer,
Intel® EMA requires a full SQL 2017 or higher version, the Azure SQL DB is not supported yet.
Please review the supported SQL versions and Azure AD instructions.
Sections: 1.3.3 Database and 1.3.4 Pre-installation Instructions for Microsoft Azure AD Environments.
Regards,
Miguel C.
Intel Customer Support Technician
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
But this is in you Azure deployment guide (Intel EMA web deployment guide for Azure):
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Hi Endpoint_Engineer,
Excuse me for the misunderstanding. You are installing the Intel® Endpoint Management Assistant (Intel® EMA) Cloud Start Tool for Azure. Before giving you further details, please answer the questions below:
You are evaluating Intel® EMA. Please let me know which template you are going to install:
1- Simplified template
2- Advanced Template
3- Enterprise Template
Intel® Endpoint Management Assistant (Intel® EMA) Cloud Start Tool for Azure
- How many endpoints are you planning to provision in this evaluation?
- Please let me know the Server OS version.
- And the SQL version as well.
The on-premises Intel® EMA software and installation manual is below:
Intel® Endpoint Management Assistant (Intel® EMA)
Intel® Endpoint Management Assistant (Intel® EMA) Server Installation and Maintenance Guide
Look forward to hearing back from you.
Regards,
Miguel C.
Intel Customer Support Technician
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Hi Miguel,
answering your questions: it's the advanced template with Azure SQL DTU. It's a single server install just for testing with the database hosted with Azure SQL. The server OS is Windows Server 2019 Standard.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Hi Endpoint_Engineer,
Thank you for sharing your configuration, please allow me to do a lab with a similar environment.
Regards,
Miguel C.
Intel Customer Support Technician
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Hi Endpoint_Engineer,
Do you mind confirming if you tried accessing the Platform Manager with the Global Admin account? Also, let us know if accessing the EMA Web console works with the Global Admin account. Please try from the server (localhost) and remotely if that use case is required.
Please confirm if you are using Windows Active Directory or Azure AD.
Regards,
Miguel C.
Intel Customer Support Technician
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Yes, I tried accessing the Platform Manager with the Global Admin account via localhost:8000 on the same server. Yes, the web console works with Global Admin account either locally or remotely. I'm using local accounts.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Hi Endpoint_Engineer,
Thank you for your reply.
Please tell us about the port 8000. Is it open in the Server and Azure?
Regards,
Miguel C.
Intel Customer Support Technician
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Hi Endpoint_Engineer,
You are using the Local Authentication for EMA. Are you using the same authentication method to access the machines (endpoints and Server), or you are Windows AD or Azure AD?
Regards,
Miguel C.
Intel Customer Support Technician
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
I'm in an Active Directory environment. The server is domain joined.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Hi Endpoint_Engineer,
You are using AD authentication.
Please review the following on your configuration and perform the tests.
1- Switch the user of the endpoint and use the Global Admin credentials, then open Platform Manager and try again localhost:8000 / localhost.
2- For remote accessing, review the host firewall, Azure NIC, and Azure Segment firewall, all need to be open to the IP you are requesting 8000 from.
Regards,
Miguel C.
Intel Customer Support Technician
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
I'm not sure if I understood correctly but during install I selected local accounts:
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Hello, Endpoint_Engineer,
I am going to send you an email; we need some private information about your configuration.
Regards,
Miguel C.
Intel Customer Support Technician
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Hello, Endpoint_Engineer,
If further assistance is necessary, do not hesitate to reply using the forum or to my emails.
Regards,
Miguel C.
Intel Customer Support Technician

- Subscribe to RSS Feed
- Mark Topic as New
- Mark Topic as Read
- Float this Topic for Current User
- Bookmark
- Subscribe
- Printer Friendly Page