Security Compliance can query unmanaged endpoints in the network to which the OSCE server belongs.
On networks with clients being managed by several OSCE servers, endpoints appear in the Unmanaged Endpoints report with “Unresolved Active Directory assessment” status.
The Unmanaged Endpoints Query Results differ from one OSCE server to another, even though the client machines are reachable by all of the OSCE servers.
The Unmanaged Endpoints Query Results for the domain will show different values on different OSCE servers if the servers use different communication port numbers to connect to their clients.
To allow the assessment to get an accurate number of the unmanaged endpoints, specify all the communication ports being used on all OSCE servers to connect to their respective client machines.
To view the communication port used by an OfficeScan server:
- Log on to the OSCE server's web console.
- Click Agents > Agent Management.
- Under the Agent Tree View, select the domain that you want to check.
The Listening Port number is displayed next to the IP Address column.
With the port information gathered, perform a security assessment using the steps at the Security Compliance for Unmanaged Endpoints Online Help article. This will provide a more accurate assessment of the number of unmanaged endpoints.
If the issue still persists, collect all CDT logs and contact Trend Micro Technical Support.