Appsense 101
Appsense 101
Environment Manager
Policy Configuration
Able to personalize automated custom actions and configurations based on conditions and
IF statements
User Personalization
Others
Access Rights
Analysis
Application Manager
Replace Run as admin with an audited option (Users are unable to run as admin without providing a
reason, which is logged)
Can prevent child processes from running (Running programs from cmd.exe, etc.)
URL Redirection (Global Settings -> URL Redirection)
Can close applications based on certain criteria (Global Settings -> Application Termination)
Management Console
Track and deploy different configuration versions, for created deployment groups
Monitor activity, push changes using update now, and manage computers on assigned deployment
groups
Insight
Accessible through the browser, able to monitor users, applications, OSs, devices, and data
Able to generate reports to track login times, and show the cause of long login times
Can track application installs, usage, errors, blocks, CPU usage, etc.
OnDemand
Allows users to get past the specified restricted rights by using a challenge/response code
Shared key on the web console and Application Manager program must match in order to work
EM Browser
A limit of 5 (May be changed) archives are stored, any more will be purged and deleted; Archives are
saved at reoccurring set times
Windows settings are saved during log off, lock, or disconnect (May be changed), does not apply
until re-logged
o Last log off takes priority when saving Windows data with multiple logins
Applies the configuration and manages the versions for different deployment groups
Computer management
Can deploy AppSense Agent and Insight to targeted computers
Can move computers into specified deployment groups (Test/Prod)
Poll now pushes set configurations to the selected computer (Otherwise, autochecks in every
minute)
Apply the configurations to applications, profile, GPO (Conditions and actions/If decision
statements)
Actions can be set to activate during certain conditions (Network connect, Process start,
Logon/Logoff, Session disconnect, etc.)
Set default locations for user specific folder redirection
Policy Configuration
Opening a configuration file
1. RDP into the personalization server
3. File -> Open -> Configuration from Management Center to open the configuration file
4. Select appsnsmslc01 from the list; If the server is not listed, add it through the circled icon
below
2. Create a series of decision statements that runs through multiple checks. There are multiple
combinations of actions, conditions and lockdowns available from the menu. If a desired action
is missing, there is a custom option to include a VB or Powershell script
2. A review prompt will appear, once all changes are reviewed, select OK
3. A prompt will appear to include a description to detail the changes made to the configuration
4. Review the changes and submit via the Review and Submit button in the bottom right
Accessible through
1. Help desk will enter the provided user information on their end, (Username/Resource
type/File Name/ Manufacturer/Request Type/ Expiration time/Request Code)
2. Once authorized, OnDemand will generate a response code to give back to the user to
input
3. Users will also have a desktop icon which allows them to request certain rights for
windows functions
End user
1. End user will right click on the application to request challenge code
2. User will then receive a prompt with information to give to helpdesk via phone
4. If the response is entered incorrectly, the user will receive an error prompt
Servers
Personalization Servers:
Management Servers:
Desktop and document data stored here: