Documentations

Configuration of the supervision accounts

On the page

Do you need help?

Introduction

The supervision accounts are the accounts necessary for the good execution of the unitary services. For example, an SNMP Community type supervision account will allow to collect information on the equipment via the SNMP protocol.
This procedure explains how to use supervision accounts in the configuration or reconfiguration stage of supervision.
This module is accessible from the user interface by navigating to Configuration > General > Supervisory Accounts.

General principles

Definitions

The supervision accounts are the accounts necessary for the good execution of the unitary services. For example, an SNMP Community type supervision account will allow to collect information on the equipment via the SNMP protocol.

Supervisory accounts are defined for each unit service. The purpose of ServiceNav is to define a supervisory account only once, at a company, site or equipment level. Once the unit services are defined for a device, ServiceNav then automatically configures the unit services from the information provided at the supervisory account level.

It is necessary to keep the possibility of setting an account different from the account defined at the company level. To do this, the user will be able to modify the account at the level of a site, an equipment, or a unitary service.
This supervisory account will be protected: any modification of a supervisory account at the higher level in the hierarchy (company ⇒ sites ⇒ equipment) will not be reflected in the configuration of this supervisory account.

The account types are as follows:

The information to define depends on the type of account. For example, for a Windows - Admin account, you need to define the domain (optional), the user and the password.

Management rules

Supervisory account information is defined at the company level, company site level, equipment level, or unit service level.

When updating a company level supervision account, ServiceNav updates all unit services of all equipment in all company sites, except those marked as protected either at site level, equipment level or unit service level.

When updating supervisory account information at a site, ServiceNav updates all unit services for all equipment at that site and subordinate sites, except those marked as protected at an equipment or unit service level.

The protection on a supervision account is total on all the fields of the account (example for a Windows account, the domain, the account name and the password are protected).

A unitary service is configured with a single supervisor account: there is no case of a unitary service requiring multiple supervisor accounts.

If a user wants a specific configuration on a unitary service, they must protect the supervisor account in the unitary service configuration record.

Deployment recommendations

It is recommended to define at the time of deployment the supervision accounts at the company level, then at the company sites level, and finally at the equipment level if exceptions are necessary.

Thus, if the password of a supervision account is changed later, a simple change of this account defined at the highest level in the company/site hierarchy will be propagated to all equipment at all sites that need it.

Supervisory Account Definition Sheets

Company, site

Supervisory accounts are defined at company code or site level. To access the definition :

  • Navigate to Supervision Setup > General > Supervision Accounts.
  • Select the company code or site in the company tree.

Supervisory Accounts

Status the symbol padlock-farm indicates that the supervisory account is protected at this site. The symbol Open padlock indicates that the supervisor account is defined and protected at a higher site in the tree.

Type indicates the type of supervision account.

Company Site: Indicates the site or company where the supervision account is protected.

Values Password: indicates the values of the supervision account. Passwords are hidden.

Description The description of the supervision account.

From this list, you can :

  • Protect or unprotect a supervisory account by clicking on the column symbol Status
  • Change the values of a supervision account by clicking on the column symbol Status or on the column Type

Equipment

Supervisory accounts are defined at the equipment level. To access the definition :

  • Navigate in the menu Configuration > Equipment > List
  • Select the company or site in the company tree
  • Open the configuration sheet of the equipment by clicking on it in the list
  • Click on the tab Accounts

Equipment - Accounts tab

The symbol Locked padlock indicates that the supervisory account is protected at the equipment level.

The symbol Open padlock indicates that the supervision account is defined and protected at the site associated with the equipment in the tree, or at a higher site in the hierarchy, or at the company level. By clicking on the account, the site or the company at which the account is defined is displayed:

Equipment - Accounts tab

The symbol red-lock indicates that a unit service defined for the equipment requires a supervisor account to be configured at the equipment, site or company level, if this account is not defined and protected at the unit service level.

From this form, you can modify the supervision account at the equipment level (protect it or not, modify its values) by clicking on the account :

Equipment - accounts tab - change

Unitary service

Supervisory accounts are defined at the unit service level. To access the definition :

  • Navigate in Supervision configuration > Services > List
  • Select the company or site in the company tree
  • Open the service configuration sheet by clicking on it in the list
  • Click on the tab Availability and controls

Unitary service - unprotected supervisory account

In this form, if the account is not protected, the account information is not visible. In the opposite case, they are visible and can be modified.

Unitary service - protected supervisory account

Scenarios

Adding a supervisor account at the company or site level

  • Navigate in Configuration > General > Supervisory Accounts.
  • Select the company code or site in the company tree.
  • Click on Add.

Company - Supervisory Accounts

  • Select the type of account from the list (accounts of the type already defined are not proposed in this list)

Company - Supervisory Accounts - added

  • Enter the requested values and click on Validate. The defined account type is immediately propagated to the unit services of the company's equipment and subordinate sites.

Changing a supervisory account at company code level

To change the supervisory account information :

  • Navigate in Configuration > General > Supervisory Accounts.
  • Select the company in the company tree.
  • Click on the supervision account to be modified (column Type).
  • Modify the desired data and click on Validate.
  • A warning message states: "These changes will be propagated to all unprotected supervisor accounts on this site's equipment and sub-sites. Click on Yes.

Modification of a supervision account at a site level

To change the supervisory account information :

  • Navigate in Configuration > General > Supervisory Accounts.
  • Select the company in the company tree.
  • Click on the supervision account to be modified (column Type).
  • Modify the desired data and click on Validate.
  • A warning message states: "These changes will be propagated to all unprotected supervisor accounts on this site's equipment and sub-sites. Click on Yes.

To protect a supervisory account already defined at the company level :

Supervisory accounts - overload

  • Navigate in Configuration > General > Supervisory Accounts.
  • Select the site in the company tree.
  • Click on the symbol of the supervision account to be modified (Status column).
  • Click on Yes and enter the account information, then click on Validate :

Supervisory account - overload - change

  • A warning message states: "These changes will be propagated to all unprotected supervisor accounts on this site's equipment and sub-sites. Click on Yes.

To stop protecting a supervision account defined at the site level, i.e. to use the supervision account defined at the level of a higher site in the tree structure, or at the company level, the account defined at the site level must be deleted.

 

Deleting supervisory accounts at a company or site level

To delete one or more supervisory accounts:

  • Navigate in Configuration > General > Supervisory Accounts.
  • Select the company in the company tree.
  • Select the supervisory account(s) to be deleted.
  • Click on the trash button.

Supervisory accounts - delete

  • A confirmation window is displayed. This window indicates which accounts can be deleted and which cannot.

Supervisory account - deletion - confirmation

It is not possible to delete accounts that are used by one or more unit services, and for which no supervisory account is found in a higher-level site or in the company.

It is possible to delete accounts that are used by one or more unit services, and for which a supervisory account of the same type is found in a higher-level site or in the company.

Accounts can be deleted if they are not used by any unitary service.

  • Click on Validate to proceed to the effective deletion of the indicated accounts, or on Cancel to undo this delete action.

 

Adding a supervision account at the equipment level

Position yourself in the equipment configuration sheet, in the tab Accounts.

This tab contains the accounts necessary for the unitary services associated with the equipment: it is therefore not necessary nor possible to manually add supervision accounts at this level.

Modification of a supervision account at the equipment level

The information that can be modified is as follows:

  1. Change an account from "unprotected" to "protected": in this case, the information associated with the account becomes editable.
  2. For protected accounts, change the associated information.
  3. Change an account from "protected" to "unprotected" (action: by clicking on radio button).

To change a supervisory account at the equipment level :

  • Navigate in Configuration > Equipment > List.
  • Select the company code or site in the company tree.
  • Open the configuration sheet of the equipment by clicking on it in the list.
  • Click on the tab Accounts.

To change an account from "unprotected" to "protected":

  • Select the account on the left.
  • Select Yes The values associated with the supervision account are reset.
  • Fill in the values associated with the supervision account.
  • Click on Validate.

Equipment - accounts tab - change

To change the information associated with a protected account :

  • Select the account on the left.
  • Fill in the values associated with the supervision account.
  • Click on Validate.

 

To change an account from "protected" to "unprotected":

  • Select the account on the left.
  • Select No A supervisory account of the same type is displayed.
  • Click on Validate.

Equipment - Accounts tab

The account of the same type is the one defined at the equipment site level, if it exists, or at the level of the first site by going up the site tree to the company code.

If no account of the same type is found in the equipment site, or in a higher level site, or at the company level, it will not be possible to make the supervision account unprotected: it will be necessary to first define a supervision account at the site or company level.

Equipment - Accounts - Unable to change

Deleting a supervisory account at a device level

The supervision accounts defined at the equipment level are those required by the unit services associated with the equipment: it is therefore not necessary to manually delete supervision accounts at this level.

When a unitary service is deleted at the equipment level, the associated supervision account does not appear anymore in the equipment configuration sheet (tab Accounts).

Adding a piece of equipment

A piece of equipment can be added from the census or manually, from the list of equipment.

During a census, the SNMP community and a Windows administration account are pre-populated with the accounts of the same type defined at the site level (or, failing that, at the level of a parent site, or of the company):

Census - Supervisory Accounts

The following rules apply when adding an equipment listed using an SNMP community and a Windows administration account: if the supervision account (SNMP, WMI) entered in the listing form is identical to a supervision account in the site associated with the equipment, or in a parent site, or in the company, the supervision account (SNMP, WMI) is not protected at the equipment level. Otherwise it is protected.

In the equipment survey form, displayed by clicking on the equipment in the list of surveyed equipment, the supervision accounts used to survey the equipment are displayed:

Census - Supervisory Accounts - Posting

Whether from the census or from the equipment list, adding a piece of equipment involves defining equipment models for that equipment.

Once the equipment has been added, finalize the configuration by going to the equipment configuration sheet, tab Accounts.

Equipment - Accounts - not configured

Accounts identified by a red padlock must be configured and protected, or a similar account must be added at the site or company level.

Adding equipment models to a piece of equipment

Adding one or more equipment models to a piece of equipment implies adding unitary services to this equipment: you must finalize the configuration by clicking on the Accounts.

Equipment - Accounts - not configured

Accounts identified by a red padlock must be configured and protected, or a similar account must be added at the site or company level.

 

Adding a unitary service to a piece of equipment

From the list of unitary services, adding a unitary service to a piece of equipment means checking the configuration of the unitary service in the Accounts tab of the equipment.

In the following example, the IBM-AS400-Cpu unit service is added to a device.

Unit services - IBM-AS400-CPU addition

The Accounts tab of the equipment configuration sheet indicates that the AS400 supervision account should be defined either at the department, equipment, site or company level.

Equipment - accounts - add AS400

 

Checking the configuration

To check the configuration :

  • Navigate in Configuration > General > Generation.
  • Select the company or site in the company/site tree.
  • Select the supervision box on which you want to check the configuration.
  • Click on Validate.

The section Detail of configuration errors describes the list of errors encountered.

Supervision account - generation configuration - error

You may also be interested in

Import and update in bulk

Create companies and sites

ServiceNav Configuration Time range

Set up a time slot

en_GB

Welcome to ServiceNav!

Do you need some help? More information about our products? Write to us!
You have taken note of our privacy policy.
We use cookies to ensure the best experience on our site. If you continue to use this site, we will assume that you are satisfied with it.

Reserve your place

You have taken note of our privacy policy.