Chat now with support
Chat with Support

KACE Desktop Authority 11.2.1 - Administrator Guide

Administrator's Guide
Product Improvement Program Installation Help Concepts User Interface Validation Logic Configuration Computer Management User Management Reference File Paths
Setup Tool

IIS Mgmt


This section shows the status of IIS. IIS may be Started, Stopped or Restarted by clicking the respective button.

Security Certificate

Desktop Authority uses a security certificate for use with the DesktopAuthorityConsole web site in IIS. Upon installation of Desktop Authority a certificate is automatically created. However, if you feel that the security model has been compromised in some way, you can create a new security certificate here. Select the 'Create self-signed certificate' option and click Apply to create a new certificate and update the Desktop Authority configuration files with the new information. You can also remove or refresh an existing certificate be selecting the 'Select an existing certificate' option, select the certificate in the list and then click the Refresh or Remove button. The last option you have is to import a certificate, this might be a certificate created by a third party. Select 'Import certificate' and then select the certificate file. Click Apply to use the imported certificate.

Web Site

Shows the status of the Desktop Authority IIS Web Site.

Session timeout

The Session timeout value represents the amount of time the Desktop Authority Console session can remain active while not in use. Once the selected timeout value is reached, the user logged into the console will automatically be logged out. Select a timeout value from the session timeout drop list and click Apply.

Global Mgmt

After updating system settings, click the Update settings button to save the changes.

System SMTP settings

The Reporting object includes a report scheduler and can email reports to specific users or a distribution list. Configure the SMTP settings here.

SMTP Server

The name of the SMTP server that email will be sent through.


The SMTP port that the server is listening on.


Send the email securely through SMTP by checking the SSL checkbox.

SMTP User name

Some SMTP servers require a user name and password in order to send mail. Enter the SMTP User name here.

SMTP Password

Some SMTP servers require a user name and password in order to send mail. Enter the SMTP Password here.

SMTP From Address

Enter the email address that will be used as the email's From Address.

SMTP To Address

Enter the email address that will be used as the email's To Address.

Default log file location

Enter the default path to be used when pushing client log files to a server.

System HTTP settings

The Desktop Authority Operations service runs Web Services and uses the following options to communicate:

HTTP Server

The server that the Operations service is running on.

Admx files location

Enter the path where ADMX files will be copied to when imported into Desktop Authority. This is the folder DA will use to manage all imported ADMX files. Click the Browse button to locate the ADMX file location.

Report scheduler plugin settings

Check for scheduled reports every xx minutes

Enter the number of minutes the ReportScheduler should use to poll for reports that are ready to be run. The default value is 10 minutes.

Impersonation settings

Select the checkbox to allow Desktop Authority to access Active Directory and network objects under the context of the user logged into the web console. If this is unchecked, the default option, these actions are performed under the context of the Desktop Authority Manager Service.


By default, Desktop Authority will automatically search for resources on the domain to which the Desktop Authority Manager is installed to. If other domains need to be part of this search for resources, add the extra domains to this list. Click Add to add a new domain or highlight a domain in the list and click Remove to delete it from the list.

Remote Mgmt

Configure Off Network Remote Management Feature


This shows the current status of the Off Network Remote Management feature. Click Disable or Enable button at the bottom of the tab to change the current status.

IIS Configuration

The default IIS Virtual Directory is set to ONRM, however, you can change that directory name to something else following the procedure below.


The default TCP Port is set to 1529, however, you can change that port following the procedure below.

Changing the Virtual Directory Name or TCP Port

The default directory name and port can be changed during the installation of Desktop Authority. However, if Desktop Authority is already installed, you can use the DA Setup tool to change it.

To make a change to the directory name or port

  1. Click the Disable button at the bottom of the ONRM tab. This will disable the feature. When you see the Disabled status it has been disabled successfully.
  2. Enter your desired Virtual Directory name and TCP Port.
  3. Click the Enable button at the bottom of the ONRM tab.
  4. You will see the status change to Enabled.

EA Connection Configuration

Use HTTPS to connect to EA

By default, the connection to ExpertAssist uses HTTP protocol. Selecting this box will force the use of HTTPS instead.

Use the parameters in the URL

By default the URL that is used to launch ExpertAssist is http://computernameport. An additional parameter can be automatically appended to the end of the EA connection URL by specifying it in the Parameters string field.


Parameters string: /ntlm will launch all ExpertAssist connections with the following URL format: http://computername:port/ntlm

Related Documents

The document was helpful.

Select Rating

I easily found the information I needed.

Select Rating