By default, the communication protocol used between the DualShield computer logon client and agent is a custom application-level protocol on top of TLS, similar to how HTTPS protocol works. Although its security level is regarded to be on the same level as HTTPS,  some customers find that using a custom protocol is inconvenient (as they would have to set up special firewall rules if they plan to implement the DualShield Computer Logon system for offsite logins, for instance), or is not compliant with their security policies. Therefore, a new option is added to allow customers to configure the DualShield computer logon solution to work on the HTTPS protocol. To use the HTTPS protocols, you need to install an addon called Chisel. Chisel is a fast TCP/UDP tunnel, transported over HTTP and secured via SSH. (Please note, although Chisel is a popular open source project used by many products, some Antivirus software might falsely flag it as malware). 

The Chisel addon needs to be installed on both ends, on the computer logon agent machine and the computer logon client machine. 

There are two installation files that you need to download from https://support.deepnetsecurity.com/visit.asp?pg=download/dualshield

The "computer-logon-chisel-agent-addon-installer" is for the logon agent. It needs to be installed on the same machine you have installed the Computer Logon Agent.

The "windows-computer-logon-chisel-client-addon-installer" is for the logon client. It needs to be installed on all the machines which are protected by the Computer Logon Client.



Run the computer-logon-chisel-agent-addon-installer-x.x.xx.xxxx.msi file and follow the on-screen prompts

Click: Next and agree to the License

Click: Next

Click: Next

Click: Install and let it run through...

Click: Finish

 

Following installation of the Chisel Agent please check the following:

Check the DualShield Computer Logon Agent service is still running.

Make sure you can browse to C:\Program Files\Deepnet Security\ComputerLogonAgent\addon\dualcs  and you can see the following files inside the folder..

Launch Task Manager and check for a process called dualcs.exe




Run the windows-computer-logon-chisel-client-addon-installer-x.x.xx.xxxx.msi file and follow the on-screen prompts

Click: Next and agree to the License

Click: Next

Click: Next

Click: Install and let it run through...


Click: Finish

 

Following installation of the Chisel client please check the following:

Check the DualShield Computer Logon Client service is still running.

Make sure you can browse to C:\Program Files\Deepnet Security\ComputerLogonClient\addon\dualcs and you can see the following files inside the folder..

Launch a browser and go to http://localhost:12845/agents


Check to see if there is an HTTPS agent port 12843 listed, and if its status is connected.





  • No labels