How to collect and upload Windows data (ZENfra Collection, EMC Grab & Tanium)

ZENfra

Last Update 3 years ago

ZENfra allows users to collect data from Windows servers using the below data collection procedures. Users can choose between ZENfra Data Collection, EMC Grab and Tanium to collect data from the Windows servers. ZENfra can identify the platform and process the data accordingly

ZENfra Data Collection Method (Recommended)

ZENfra data collection allows users to collect data from multiple servers. The user can provide a list of servers as input to the script and the ZENfra data collection script can read through the list of servers and login into each server from the jump server and collects the data and sends the collected data back to the jump server. On reaching the end of the server list, ZENfra data collection on the jump server creates one master ".zip" file. which can be either uploaded to ZENfra or can be moved to an FTP server and ZENfra can be configured to import the file from the FTP server.

Collecting data on a Single Server

Note: The script requires privileged access to the Local server

1. Log in as an administrator to the server where the configuration data is to be collected.

2. Download “ZENfra_WindowsCollectionScript.ziphere

3. Open the PowerShell/PowerShell ISE.

4. Under the script’s root directory, run the script as follows,

     Select-1 - For Local Server (single server) collection

5. Log file will be stored in the $Home\Desktop\ZENLog directory.

6. Please refer to the below ZENfra Log Upload Steps for uploading the data into ZENfra

Collecting data on Multiple Servers

Note: The script requires privileged access to the Local and Remote servers

To collect data from multiple servers from a Jumpserver, the below criterias should be met

    The Jump server should have WINRM enabled. (For remote login)

    The Jump server's Firewall should have allowed this WINRM-HTTP-In-TCP-PUBLIC -RemoteAddress Any

1. Log in as an administrator to the Jump server.

2. Download “ZENfra_WindowsCollectionScript.zip” from here

3. Open the PowerShell/PowerShell ISE.

4. Create a serverlist.txt file

    Sample server list file

        server_abc.example.com

        server_bcd.example.com

        server_xyz.example.com

5. Under the script’s root directory, run the script as follows,

    Select-2 - For Multiple server collection.

5. The Master.zip file will be stored in the home directory $Home\Desktop.

6. Upload the Master.zip file into ZENfra. Please refer to the below ZENfra Log Upload Steps for uploading the data into ZENfra


EMCgrab Data Collection Method (Secondary)

Note: The script requires administrator access to the server

1. Log in as an administrator to the server where the configuration data to be collected

2. Download the Windows data collection script from here.

3. Execute the EMCRPTS_X64_V58.exe or EMCRPTS_X86_V56.exe application depending on the architecture of the Operating System installed and wait for the program to close automatically and a new window will open with the Output file in ".rar" format.

4. Collect the ".rar" file and zip all the server’s log files.

5. Please refer to the below ZENfra Log Upload Steps for uploading the data into ZENfra


How to upload Data in ZENfra

Uploading Data manually into ZENfra

1. Navigate to "Data Upload ➜ Data Upload ➜ Log Upload"

2. Select the "Upload Data" option.

3. Select the "Server" option.

4. Select the "Unix & Windows (EMC Grab & ZENfra Collection)" option.

5. Click on the "Select Files to Upload" button to choose the files or "drag" the files from your system to the area above this button.

6. Click on the "Upload Only" button for just uploading the log file or click on the "Upload & Process" button to upload the log and parse the data from the log file. Click on the "+" button to upload additional logs.

7. The Status Field of the "Uploaded Data History" table shows the status of the file processing. Once the report is generated, the status will be changed to "Successfully Processed". The status will be "File Processing" while the uploaded data is being processed. The status will be "Process not Started" if the data is uploaded and not processed. If the status is "Process Failed", the reason could be any of the below.

  • Data may be uploaded in different device type
  • Uploaded data may not be in the supported format
  • Incomplete data collection

If the user faces any issue, they can reach ZENfra support


Uploading Data using FTP into ZENfra

Refer to the FTP Configuration on ZENfra for configuring the FTP location in ZENfra


Uploading Data collected using Tanium

1. Navigate to "Data Upload ➜ Data Upload ➜ Log Upload"

2. Select the "Upload Data" option.

3. Select the "Server" option.

4. Select the "Tanium" option.

5. Click on the "Select Files to Upload" button to choose the files or "drag" the files from your system to the area above this button.

6. Click on the "Upload Only" button for just uploading the log file or click on the "Upload & Process" button to upload the log and parse the data from the log file. Click on the "+" button to upload additional logs.

7. The Status Field of the "Uploaded Data History" table shows the status of the file processing. Once the report is generated, the status will be changed to "Successfully Processed". The status will be "File Processing" while the uploaded data is being processed. The status will be "Process not Started" if the data is uploaded and not processed. If the status is "Process Failed", the reason could be any of the below.

  • Data may be uploaded in different device type
  • Uploaded data may not be in the supported format
  • Incomplete data collection

If the user faces any issue, they can reach ZENfra support