Click the Properties tab to enable or configure the different features supported by the Unit Assistant role. It can also be used to configure advanced settings.
Diagnostic settings
- Traceroute
- Enable this setting to monitor cameras and produce diagnostic information when there
is a camera connection issue with the Archiver role. The results of the diagnostics are
recorded in the Camera events task. Traceroute runs on each
Archiver role when enabled and it can consume a small amount of resources. Make sure to
validate the Archiver resources after enabling the feature.
- Hop timeout
- Specify the timeout, in seconds, for traceroute connection hops. The default value is 10 seconds. Increase the value if there are too many timeout errors in the report.
- Maximum concurrency
- Specify the maximum number of simultaneous traceroute executions allowed per Archiver role. The default value is 30.
- Maximum number of timed out hops
- The maximum number of hops that can time out before the execution is canceled. The default value is 3.
- Retention period
- Specify, in days, how long to keep traceroute entries. The default value is 30 days.
Security settings
NOTE: This section is only visible if the Certificate Signing plugin is installed on your
system.
- Security policies
-
- Allow renewal of expired certificates
- Turn on this setting (on by default) to allow the system to renew unit certificates automatically, even after they are expired. If you do not want expired certificates to be automatically renewed, turn off this setting. You can always manually renew expired certificates from the Hardware inventory task.
- Enable HTTPS on units after successful certificate installation
- Turn on this setting (on by default) to force the unit to switch to HTTPS after the certificate is successfully installed. The HTTPS ports configured in Security Center for the units might change during the process if the Unit Assistant can detect the correct port.
- Notifications
- Specify, in days, how soon you want the system to trigger a warning before a
certificate expires (default = 7 days).
If you configured your system to automatically renew certificates X days before they expire, set this value to X minus N, where N is the number of days you give the system to try to automatically renew a certificate before issuing a warning. Also be sure to give yourself enough time to investigate why a certificate was not renewed after you received the warning.
- Certificate information
-
- Validity period
- This is the validity period of a certificate after a renewal. This value is inherited from the CA. It can only be modified from the Certificate profile page.
- Show advanced
- Click this button to show the optional properties that you can assign to certificates created by your system. The Country, State, Locality, Organization, and Organizational unit help you identify certificates issued for your organization. These values can be overwritten on specific certificate renewals.
- Public key infrastructure
- The Unit Assistant role must rely on a trusted CA to sign the certificates it deploys. The
Endpoint is the URL of the CA that the Unit Assistant role must
connect to.NOTE: For Security Center 5.12, the CA is the Certificate Signing role.The syntax of the URL is as follows:where hostname is the hostname or IP address of the server hosting the Certificate Signing role, and port is the port number configured in the Properties page of the Certificate Signing role. Make sure the server hosting the Unit Assistant role can access this URL.
https://hostname:port/management
IMPORTANT: To simplify the failover configuration, the URL is set by default tohttps://localhost:port/management
. This assumes that both the Unit Assistant role and the Certificate Signing role are always hosted on the same server. If you choose to host the two roles on separate servers, then when a failover occurs, you must manually change the value of the URL here and restart the Unit Assistant role. - Advanced settings
- The advanced settings are reserved for use by Genetec Technical Assistance Center.