Tag Archives: Keyserver

KeyServer – Client specific files that should not be included in cloned image

Before Capturing any master image be sure to delete these files:

(For details see: http://www.sassafras.com/hrl/7.0/clone.html )
The following is from the above link …

Windows file list

The following files and directories should NOT be copied from one computer to another:

KeyAccess Audit, which is located in one of these directories depending on OS version and KeyAccess version:
C:\ProgramData\KeyAccess\
C:\Documents and Settings\All Users\Application Data\KeyAccess\
C:\Documents and Settings\All Users\Application Data\
C:\ProgramData\
C:\WINDOWS\
C:\WINNT\
KeyAccess Offline, which is located in one of these directories depending on OS version and KeyAccess version:
C:\ProgramData\KeyAccess\
C:\Documents and Settings\All Users\Application Data\KeyAccess\
[User Profile Dir]\Local Settings\Application Data\
C:\WINDOWS\
C:\WINNT\
portable.dir, which is a directory and is located in one of these directories depending on OS version and KeyAccess version:
C:\ProgramData\KeyAccess\
C:\Documents and Settings\All Users\Application Data\KeyAccess\
[User Profile Dir]\Local Settings\Application Data\
C:\WINDOWS\
C:\WINNT\
[Any Drive]:\portable.dir\

The following registry settings should NOT be copied from one computer to another:

registry: HKEY_CURRENT_USER\SOFTWARE\Sassafras\KeyAccess\Settings\pref
registry: HKEY_CURRENT_USER\SOFTWARE\Sassafras\KeyAccess\Settings\settings
registry: HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\KeyAccess\Settings\pref
registry: HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\KeyAccess\Settings\settings

Note: The KeyAccess client install creates a keyacc.ini file in the windows directory even when you accept the default, “store settings in registry”. The line, “registry=2” in keyacc.ini tells KeyAccess to consult the registry for additional settings, so keyacc.ini must be included in the cloned image. If you have customized the client install (using the k2clientconfig utility) so it stores all settings in the keyacc.ini, then this file must be edited before cloning. Remove all lines beginning “previd” or “prevhw”.
OS X file list

The following files should NOT be copied from one computer to another:

/var/root/Library/Preferences/KeyAccess Audit
/var/root/Library/Preferences/KeyAccess Offline
/var/root/Library/Preferences/KeyAccess Prefs
/var/root/Library/Preferences/Portable Keys (don???t move)/ — nothing in this directory should be copied to another computer
/Library/Preferences/KeyAccess/KeyAccess Audit
/Library/Preferences/KeyAccess/KeyAccess Offline
/Library/Preferences/KeyAccess/KeyAccess Prefs
/Library/Preferences/KeyAccess/Portable Keys/ — nothing in this directory should be copied to another computer

If you want cloned clients to point to the same KeyServer as the computer you took the image from, you should be sure to copy the file /Library/Preferences/com.sassafras.KeyAccess.plist

Software – Keyserver Client Silent Install

To build an installer for the Sassafras Software’s K2 – Keyserver Key Audit client use the client customization application they provide.  This is found in the
“client – misc”  folder of their computer installer archive that can be reached by logging into their Support and Downloads web page.

Their documentation…

http://www.sassafras.com/hrl/7.0/k2clientconfigW.html

I put the client installers and the k2clientconfig application in the same folder and the ran this command:

k2clientconfig.exe -s 3 -c no -b no -h keyserver.williams.edu k2Client-x64.exe

The output was:

Changing PROP_SILENCE
Changing PROP_HOSTNAME from ‘keyserver’ to ‘keyserver.williams.edu’
Changing PROP_KEYCHECKOUT from ‘2’ to ‘0’
Changing REBOOT from ‘Force’ to ‘Suppress’
Digital signature has been removed from k2Client-x64.exe