Unit Assistant - Properties tab - Click the Properties tab to enable or configure the different features supported by the Unit Assistant role. It can also be used to configure advanced settings. - Security Center 5.12

Security Center Administrator Guide 5.12

Product
Security Center
Content type
Guides > Administrator guides
Version
5.12
ft:locale
en-US
Last updated
2025-03-31

Click the Properties tab to enable or configure the different features supported by the Unit Assistant role. It can also be used to configure advanced settings.

Diagnostic settings

Traceroute
Enable this setting to monitor cameras and produce diagnostic information when there is a camera connection issue with the Archiver role. The results of the diagnostics are recorded in the Camera events task. Traceroute runs on each Archiver role when enabled and it can consume a small amount of resources. Make sure to validate the Archiver resources after enabling the feature.
Hop timeout
Specify the timeout, in seconds, for traceroute connection hops. The default value is 10 seconds. Increase the value if there are too many timeout errors in the report.
Maximum concurrency
Specify the maximum number of simultaneous traceroute executions allowed per Archiver role. The default value is 30.
Maximum number of timed out hops
The maximum number of hops that can time out before the execution is canceled. The default value is 3.
Retention period
Specify, in days, how long to keep traceroute entries. The default value is 30 days.

Security settings

NOTE: This section is only visible if the Certificate Signing plugin is installed on your system.
Security policies
Allow renewal of expired certificates
Turn on this setting (on by default) to allow the system to renew unit certificates automatically, even after they are expired. If you do not want expired certificates to be automatically renewed, turn off this setting. You can always manually renew expired certificates from the Hardware inventory task.
Enable HTTPS on units after successful certificate installation
Turn on this setting (on by default) to force the unit to switch to HTTPS after the certificate is successfully installed. The HTTPS ports configured in Security Center for the units might change during the process if the Unit Assistant can detect the correct port.
Notifications
Specify, in days, how soon you want the system to trigger a warning before a certificate expires (default = 7 days).

If you configured your system to automatically renew certificates X days before they expire, set this value to X minus N, where N is the number of days you give the system to try to automatically renew a certificate before issuing a warning. Also be sure to give yourself enough time to investigate why a certificate was not renewed after you received the warning.

Certificate information
Validity period
This is the validity period of a certificate after a renewal. This value is inherited from the CA. It can only be modified from the Certificate profile page.
Show advanced
Click this button to show the optional properties that you can assign to certificates created by your system. The Country, State, Locality, Organization, and Organizational unit help you identify certificates issued for your organization. These values can be overwritten on specific certificate renewals.
Public key infrastructure
The Unit Assistant role must rely on a trusted CA to sign the certificates it deploys. The Endpoint is the URL of the CA that the Unit Assistant role must connect to.
NOTE: For Security Center 5.12, the CA is the Certificate Signing role.
The syntax of the URL is as follows:
Code
https://hostname:port/management
where hostname is the hostname or IP address of the server hosting the Certificate Signing role, and port is the port number configured in the Properties page of the Certificate Signing role. Make sure the server hosting the Unit Assistant role can access this URL.
IMPORTANT: To simplify the failover configuration, the URL is set by default to https://localhost:port/management. This assumes that both the Unit Assistant role and the Certificate Signing role are always hosted on the same server. If you choose to host the two roles on separate servers, then when a failover occurs, you must manually change the value of the URL here and restart the Unit Assistant role.
Advanced settings
The advanced settings are reserved for use by Genetec Technical Assistance Center.