Kaseya Final Exam
Which log is written to when:
...a VSA user edits the Schedule of a task - Configuration changes ...a VSA user clicks the agent icon - Kaseya remote control log ...a step in a task executes against an agent - agent procedure log ...a network interruption has occurred between the server and agent - legacy remote control log ...a defined threshold is exceeded - monitor action log
Select the statements which are true. David, you are a VSA admin, You can assign roles and/or scopes:
...to yourself, if you have access to the appropriate functions ...to any user, if you have access to the appropriate functions
What is the default working directory path for mac devices.
/Library/Kaseya/kworking
What is the default working directory path for Linux devices?
/tmp/kworking
Place the policy layers in order, from least precedence to most
1. Machine 2. Global 3. Sub Group 4. Organization 5. Machine Group
What is the default port used for agent check-in?
5721
What is an Event Set?
A way to ignore specific events within an event log A defined set or rules to match against generated event logs
Select the statement(s) which are true
ATSE can be configured to run an Agent Procedure when a monitored state or threshold is met. ATSE is not required when assigning a monitor to an endpoint.
Select the statements which are true
After switching to a different role or scope, the VSA will refresh and automatically display the appropriate info A VSA user can have more than one role assigned A VSA user can have more than one scope assigned
Which items are eligible for the functions of Import Center?
Agent Procedures Monitor Sets Event Sets Reports Views
Agent Profiles can include:
Agent icon badges Custom notes End user contact info Language preference for the agent menu
Select the statements which are true about Quick View and KkC
Agent procedures can be added to Krc Agent procedures can be run from within Quick View Quick View is accessible anywhere the agent icon... The information provided in Quick View is visible else... The agent procedures that appear in the "Run Procedure Now"...
Match the module to its functions.
Agent: Manually manage basic Kaseya config... Audit: Gather device info such as installed applications Agent Procedures: Create scripts to execute custom... Policy Management: Automatically assign config... Monitor: Track machine performance... Info Center: Review dashboards and create...
Views are used to filter
Agents
Scope controls the ability to see which of the following
Agents Machine groups
Select the statement which are true
Alarms are informational records created by monitors and stored in the vsa database An alarm will be created when the performance of a machine or devices matches a predefined criteria or alert condition
Are alarms required for monitoring of computers? Select all that apply
Alarms are not required for monitors to function The alarm action can be applied if desired, but is not required.
Which alert types are event-based monitors?
Alerts Event log alerts Log monitoring
If a machine does not have at least one patch policy assigned:
All missing patches will be installed during initial update Patches denied by kb override will be installed All missing patches will attempt to install during automatic update
Select the function used to view specific data for multiple machines at one time.
Audit Summary
Match the audit to the recommended recurrence
Baseline - Once System - Annually or bi-annually; also upon known changes Latest - Frequently; daily to weekly
Match the patch term to the most appropriate definition
Cancel updates - prevents a manually-scheduled installed from firing Terminate updates - Deletes any downstream patch Initial update - Logs the begin and end times, as well as reboots Patch update - Allows the manual schedule of approved or denied patches
What must you do to launch Kaseya remote control (KRC)?
Click on the agent icon
What must you do to launch Kaseya remote control (krc)?
Click on the agent icon
Dashboard can be configured to do all of the following
Dashboard can be created by any vsa user who has access to the page Dashboard can be configured to contain one or more dashlets Dashboards can be configured to launch on start up
Select the function. On the image to the right, click on the menu function used to access Agent Install Packages, then click submit.
Deploy Agents
Select one function which can be used to deploy an agent to an IP address without performing a scan.
Discovered Devices
Select the statements which are true
Domain watch scans only active directory environments Discovery by network can discover network devices such as printer, laptops... The base functions of domain watch require a domain controller to act as a probe Discovery by network can automatically deploy agents on the network Domain watch can deploy agents across subnets and vlans which are members of a domain
Select the statements which are true
Event log alerts can be configured for any system-created or custom event log If an event set filter does not match the event log entry exactly, it will not obey the event set rules
Select the methods Kaseya uses to monitor agents and assets
Event logs Performance monitor counters snmp
A machine group can belong to multiple organizations
False
A single Machine Group can belong to multiple Organizations.
False
Select the statements which are true
Fixed alerts can be used to notify an administrator or technician when an agent checks into an machine group for the first time.
Place the appropriate match for each choice when scheduling reports
Generates and displays the report in real time - execute a report immediately The report will run based on the defined schedule and will distribute to recipients based on the report config - schedule an individual report Multiple reports if applicable will run based on the defined... - schedule a report set
Select all of the considerations that are true with individual reports
If multiple reports are to be scheduled, they must each be scheduled individually The report will run based on the defined schedule and will distribute to recipients The report is stored for future reference
Select the statement(s) which are true
If the Windows Auto Updates setting has been changed outside entry is made in the Config... A patch scan must complete before patch management
Select the statements which are true
If wuauserv is disabled, Scans and installs cannot complete Even when the windows update client is disabled, end users may still be able to scan for and install patches
Select the statements which are true about audit
Information collected includes shared folders on... Connected printers can be reviewed within machine... External drive information is captured during audit Information collected during audit can be used to notify... System audit should run after known hardware changes
What are the primary patch installation options available in the Kaseya VSA
Initial Update Automatic Update Machine Update Patch Update
Match the patch installation method to its most common use
Initial update - install patches on pre-production machines Patch update - install select patches on specific machines Machine update - install select patches on a single machine Automatic update - schedule recurring installation of patches
Select the statements which are true about patch installation
Initial update installs only those patches approved by patch policy Initial update will reboot the machine without warning the end user Patch update allows patches denied by patch policy to be installed on the machine
Match the function to its purpose
Installed Applications - Sortable listing of all executables Add/Remove - Display all applications Audit Summary - Review selected audit a data for all visible endpoints Machines Summary - Review audit data for a single endpoints
Portal access
Is a version of live connect available to the end user Is accessed via the agent icon in the system tray
Select all statements which are true about Kaseya live connect (KLC)
It is possible to reboot a machine using kc Klc can be customized klc may require installation of browser plugins at launch
Match the patch components to its description
KB Number - a unique reference to an issue Classification - A Microsoft defined category defining... Product - A Microsoft defined grouping associating... Update Identifier - A unique key assigned to each patch
Select all statements which are true about Kaseya Remote Control (KRC).
KRC can connect to a machine booted into Safe Mode Connections to remote systems are logged KRC supports private sessions KRC supports copy/paste of plain text between the loc KRC supports shared sessions
Select the statements which are true about patches flagged as "internet-based install only"
Kaseya always leverages the local windows update agent to install internet-only patches In most environments, internet-only patches do not require any additional consideration or configuration
Match the remote control activity to the method used to launch
Kaseya remote control - Click the agent icon Kaseya live connect - Ctrl + click agent icon Quick view - Hover over agent icon KRC Private Session - Hover over agent icon and select the appropriate option form the menu
Select the Audit types available within the Kaseya VSA.
Latest Baseline System Information
What does limiting a VSA user role do?
Limits which modules and functions a VSA user has access to
Select the statements which are true
Log retention periods can be customized Script log is another term for the agent procedure log
The Kaseya VSA uses several different groupings to create logical structure to stored data. Match the grouping to the data it categorizes.
Machine Group organize: Agents Staff organizes: End Users VSA Organizations organize: Machine Groups Departments organizes: Staff
Select the area used to display a single machine based on the name of the agent.
Machine ID
Select the statement which are true about patch rollback
Microsoft documentation should be reviews prior to rolling back any patch Patches will appear on the patch rollback page only is the patch is eligible for rollback
The amount of free space available can be monitored using monitor sets and fixed alerts. Select the statements which are true.
Monitoring disk space using monitor sets in real time Monitoring disk space using fixed alerts will not fire any. Monitor sets allow the administrator and tech to define Monitoring disk space using fixed alerts is not real-time Once a threshold has been met, fixed alerts will not re-notify admin...
Select the statements which are true about the Scheduler.
None of these statement are true
Select all statements which are true.
None of these statements are true
Which scan source will be used?
Online patch scan - The end user has internet browse access Offline patch scan - The endpoint is restricted from the internet - Security policies block end user internet access - The agent can check into the vsa but internet access is disrupted
Place the organizational hierarchy in the correct order, from largest to smallest
Organization Machine Group Agent
Select the statements which are true
Patches are discovered during patch scan Patches appear in the vsa only if appropriate for at least one managed machine Only patches in the Microsoft catalog are discovered during patch scan
Something
Port Connection Check DNS Server Check Custom check
For which reasons might a technician suspend alarms?
Prevent alarms from being generated during a maintenance cycle. Prevent excessive alarm notifications when a machine is experiencing hardware or software failures.
Select the statement(s) which are true.
Product license keys are gathered during Audit. Information gathered via Audit can be displayed in custom groupings.
Within the scheduler, the distribution window is used to:
Randomize the schedule of the task within the selected distribution across the selected agents.
Select the function used to schedules a batch of reports at one time.
Report Sets
Select the statements(s) which are true
Report can be executed to include data from a single Access to the VSA is not required to review reports Reports can be automatically distributed to targeted Reports can be created as .pdf, html, or csv files
Executing a task using the "run now" option will:
Run the task one time Place the task in queue to run after any pending tasks complete
Select the method for manually installing an agent on a target machine
Send the agent installer package as an attachment and instruct the end-user to execute Provide the URL to the agent install package and instruct the end-user to execute Log into the VSA from the target machine, download the agent installer package, and execute
Create a View. Use the check boxes to create a view to display agents meetings specific criteria. Agent which are members of a specific string in the display name, and which have recently restarted.
Set Machine ID Set Group ID Show machines that ___ have ___ have not rebooted in the last ___
Create a view. Agents belonging to a specific organization running any Windows Operating System.
Set group ID OS Type
Create a view. Agents which have not recently restarted, are currently active, have check in within the past hour, and contain a specific string within the agent name
Set machine ID Show machines that ___ been online in the last ___ Show machines that are ___ Show machines that ___ rebooted in the last ___
Compare the images below. Select the View which will display offline agents running Windows 7 and scheduled to reboot.
Show matches that have not been online in the last 1 min OS type Windows 7 With agent procedure root
Select the following statements which are true
System fixed alerts are only available for on-premise vsas System fixed alerts can notify when an admin account is disabled, the Kaseya server stopped, a database backup has failed, or email...
Select all statements which are true
The Kaseya agent icon is accessible via the system tray Allowing the end user to disable remote control via the local agent icon menu will also affect KLC functions The Kaseya agent menu can be customized
Select the statements which are true
The Kaseya agent will recreate the working directory if the folder is deleted from the endpoint
The test credential function tests whether
The account can access the defined working directory The password is correct The account is not locked The account is disabled The account exists on the local machine or domain
After a domain watch probe discovers computers, what is necessary to deploy an agent? Assume the directory services feature set is not in use
The admin must configure and apply the computer policy to the device.
Select the statements which are true
The global level is visible only to master or system users
Internet-based install patches. Periodically, patches may be flagged as "internet-based install only."
The install process will leverage the windows update agent, regardless of the defined file sources.
If a defined Event set filter does not match exactly, what happened?
The intended alert will not trigger.
What are the limits of the offline patch scan?
The offline patch scan file, wsusscn2.cab, contains only current, supported security updates, update rollups, and service packs The endpoint may be missing more patches than reported... The file contains info about a limited subset of available patches
Select the causes of a patch being flagged as "Internet-based Install Only":
The patch has been recently released and the patch... The patch does not include the info necessary to determine... Microsoft has not released a .msi, .msu, or .exe version... A master administrator has removed the patch download url
Select the statement which are true about patch test:
The patch test allow vsa technicians to mimic most functions of a patch install cycle A successful credential test followed by a successful patch test is a strong indication the installation process will likely be successful
What is indicated when Policy Object Types appear in red within the Policy Matrix
The policy object are inactive
Match the patch test error to its most common resolution
The windows service... was not running - Start wuauserv The local credential is invalid or lacks rights - execute a credential test, verify credential... Missing credential - configure agent > set credential Network credential is invalid or lan server unavailable - Verify credential can access the appropriate network... File source configuration is invalid - define a valid file source
What is the purpose of the offline patch scan
To ensure the most critical patches, as defined... To detect patches when... is experiencing temporary To detect patches when... is purposefully restricted...
A remote agent must be installed properly and checking in with Kaseya server in order to receive instructions
True
Alarms can be suspended for a recurring period during a specific time frame
True
Suspending the Kaseya Agent will stop all agent functions
True
The ATSE code will always be located at the top of any page where monitors can be assigned to an endpoint.
True
Match the function to its description or use
Update List by Scan - Queries an endpoint to return... Monitor Sets - Monitor specific tasks on Mac OSx... Enable Matching - Define a group of counters, services.. Process Status - Customize thresholds for a single endpoint Individual Monitor Sets - Monitor only those counters...
Which statement is true?
Views can be shared with other VSA technicians
Which statement is true?
Wildcards are supported in view definitions
As the VSA admin, you have copied a link from the Agent Deploy function and send the URL...
Your server does not support the dl.asp function. You have not selected...
What is the default working directory path for windows devices.
c:\kworking
As a VSA technician, you need to remotely assist an end user, lucy. You ____ the ____ to launch Kaseya remote control (krc). This is the first time you have launched krc, so you must download and install the ____ in order to launch the ____ on lucy's computer. You assist Lucy and end the remote session. You would like to know how long you were connected to Lucy's machine. Reviewing the ____ provides start, end, and duration of the session.
click agent icon krc viewer krc server krc log
Complete the registry value
kausrtsk .exe " (space) - remote
Select all statements which are true about Kaseya remote control (KRC)
krc can connect to a machine booted into safe mode krc supports copy/paste of plain text... krc supports shared sessions Connections to remote systems are logged krc support private sessions
Which alert types are state-based monitors?
snmp monitors Monitors sets
When items are exported from the VSA, what is the extension (file type) of the resulting file?
xml