Dell Wyse Management Suite Version 1.0 Quick Start Guide September 2017 Rev.
Notes, cautions, and warnings NOTE: A NOTE indicates important information that helps you make better use of your product. CAUTION: A CAUTION indicates either potential damage to hardware or loss of data and tells you how to avoid the problem. WARNING: A WARNING indicates a potential for property damage, personal injury, or death. Copyright © 2017 Dell Inc. or its subsidiaries. All rights reserved. Dell, EMC, and other trademarks are trademarks of Dell Inc. or its subsidiaries.
Contents Chapter 1: Introduction................................................................................................................. 5 Chapter 2: Getting started with Wyse Management Suite............................................................. 6 Logging in to Wyse Management Suite on public cloud............................................................................................ 6 Getting started with Wyse Management Suite on private cloud..........................................
Appendix I: Registering Linux device manually............................................................................. 57 Appendix J: Terms and definitions...............................................................................................
1 Introduction Wyse Management Suite is the next generation management solution that lets you centrally configure, monitor, manage, and optimize your Dell Wyse thin clients. The new Suite makes it easier to deploy and manage thin clients with high functionality and performance, and ease of use. It also offers advanced feature options such as cloud versus on-premises deployment, manage-from-anywhere using a mobile application, enhanced security such as BIOS configuration and port lockdown.
2 Getting started with Wyse Management Suite Topics: • • • Logging in to Wyse Management Suite on public cloud Getting started with Wyse Management Suite on private cloud Prerequisites to deploy Wyse Management Suite on private cloud Logging in to Wyse Management Suite on public cloud To log in to the Wyse Management Suite console, you must have a supported web browser installed on your system. For a list of supported web browsers, see Supported web browsers.
Getting started with Wyse Management Suite on private cloud Prerequisites to deploy Wyse Management Suite on private cloud Table 1.
3 Installing Wyse Management Suite on private cloud Prerequisites A simple installation of Wyse Management Suite consists of the following: ● Wyse Management Suite server (includes repository for application and operating system images) ● Optional—Additional Wyse Management Suite repository servers (repositories for additional images, applications, and AD authentication) ● Optional—HTTPS certificate from a Certificate Authority such as www.geotrust.com/.
3. Select the Setup Type you want to install, and click Next. The available options are: ● Typical—Requires minimum user interaction and installs embedded databases. ● Custom—Requires maximum user interactions and is recommended for advanced users. For more information, see Custom installation. NOTE: A notification window is displayed, when the Internet Explorer Enhanced Security Configuration feature is enabled.
Figure 4. Credentials 5. Select a path to install the software, and the path to install the local tenant file repository, and then click Next. The default path of the destination folder to install the software is C:\Program Files\DELL\WMS. Figure 5. Destination 6. Click Next.
Figure 6. Summary The Pre-Installation Summary page is displayed. 7. Click Next to install the software. The installer takes approximately 4–5 minutes to complete the installation. However, it may take longer if dependent components such as VC-runtime are not installed on the system. Figure 7. Installation complete status 8. Click Launch to open the Wyse Management Suite web console. 9. On the web console, click Get Started.
Figure 8. Welcome page 10. Select your preferred license. ● If you select the license type as Standard, then click Next to proceed with the standard Wyse Management Suite installation. ● If you select the license type as Pro, you must import a valid Wyse Management Suite license. To import the Wyse Management Suite license, enter the requested information to import license if your server has internet connectivity.
● EU datacenter—eu1.wysemanagementsuite.com/ccm-web b. Go to Portal Administration > Subscription. Figure 10. Portal administration c. Enter the number of thin client seats. d. Click Export. NOTE: To export the license, select WMS 1.1 or WMS 1.0 from the drop-down list. The summary page shows the details of the license after the license is successfully imported. 11. Enter your SMTP server information, and click Save. NOTE: You can skip this screen and make changes later in the console.
Figure 11. Email alert NOTE: You must enter valid SMTP server information to receive email notifications from the Wyse Management Suite. 12. Import your SSL certificate to secure communications with the Wyse Management Suite server. Enter the public, private, and apache certificate and click the Import button. Importing the certificate takes three minutes to configure and restart tomcat services.
Figure 12. Key or certificate value pair Figure 13. PKCS-12 13. Click Next. 14. Click Sign in to WMS. The Dell Management Portal login page is displayed.
Figure 14. Sign in page Figure 15. Dell Management Portal NOTE: Licenses can be upgraded or extended at a later point from the Portal Administration page.
• • • • • Logging in to Wyse Management Suite Functional areas of management console Configuring and managing thin clients Creating policy group and updating configuration Registering new thin client Logging in to Wyse Management Suite To log in to the management console, do the following: 1. If you are using Internet Explorer, disable the Internet Explorer Enhanced Security and the Compatibility View settings. 2.
● Settings or policies that apply to all devices in the tenant account which are set at the Default Policy group. These settings and policies are the global set of parameters that all groups and subgroups inherit from. ● Settings or parameters that are configured at lower-level groups take precedence over the settings that were configured at the parent or higher-level groups. ● Parameters that are specific to a particular device which can be configured from the Device Details page.
d. Enter the group token. e. Click Save. 3. To update or edit a policy group, do the following: a. Click Edit Policies, and select the operating system that the policy is intended to manage. b. Select the policies to be modified, and complete the configuration. c. Click Save and Publish. NOTE: ● For more details on various configuration policies supported by Wyse Management Suite, see Dell Wyse Management Suite Administrator’s Guide.
Figure 16. Central Configuration 3. Select the Enable Wyse Management Suite check box to enable Wyse Management Suite. 4. Enter the Group Registration Key as configured by your administrator for the desired group. 5. Select the Enable WMS Advanced Settings option, and enter the WMS server or MQTT server details. 6. Enable or disable CA validation based on your license type—public cloud or private cloud.
GroupKey=quarantine MQTTServer= CAValidation=no Discover=no WDMService=yes WDMServer=ServerIP/DNS Name(s) WDAService=yes Priority=CCM;WDM For more information, see Dell Wyse ThinOS 8.4 INI guide NOTE: For ThinOS 8.3 (ThinOS Lite 2.3) and later versions, a WDA Service Priority command allows you to specify the management protocol. This command is used to discover the management server.
Table 2. Registering device by using DHCP option tags (continued) Option Tag Description Data Type—String This tag is optional to register the Windows Embedded Standard or ThinLinux devices with Wyse Management Suite on private cloud. If the tag is not available, then the devices are automatically registered to the unmanaged group during on-premise installation.
Table 3. Configuring device by using DNS SRV record (continued) URL/Tag Description Record Type—TEXT Enter True, if you have imported the SSL certificates from a well-known authority for https communication between the client and Wyse Management Suite server. Enter False , if you have not imported the SSL certificates from a well-known authority for https communication between the client and Wyse Management Suite server.
4 Deploying applications to thin clients The standard application policy allows you to install a single application package and requires reboot before and after installing each application. Using the advanced application policy, you can install multiple application packages with only two reboots. The advanced application policy also supports execution of pre and post installation scripts that may be needed to install a particular application. For more information, see Appendix B.
Figure 17. Add Standard App Policy a. Select Policy Name, Group, Task, Device Type, and TC Application. b. To deploy this policy to a specific operating system or a platform, select either OS Subtype Filter or Platform Filter. Timeout displays a message on the client which gives you time to save your work before the installation begins. Specify the number of minutes the message dialog should be displayed on the client. c.
● If you select Apply the policy to devices on check in, the policy is automatically applied to the device at check-in to the Wyse Management Suite server. 6. To allow a delay in execution of the policy, select the Allow delay of policy execution check box. If this option is selected, the following drop-down menus are enabled: ● From the Max Hours per Delay drop-down menu, select the maximum hours (1–24 hours) you can delay execution of the policy.
5 Uninstalling Wyse Management Suite To uninstall Wyse Management Suite, do the following: 1. Double-click the WMS icon. The uninstaller wizard is initiated, and the Wyse Management Suite uninstaller screen is displayed. 2. Click Next. By default, the Remove radio button is selected that uninstalls all the Wyse Management Suite installer components.
6 Troubleshooting Wyse Management Suite This section provides troubleshooting information for Wyse Management Suite. Problems with accessing Wyse Management Suite web console ● Problem: When you attempt to connect to the Wyse Management Suite console, authentication GUI is not displayed and an HTTP Status 404 page is displayed. Workaround: Shut down and start the services in the following order: 1. Dell WMS: MariaDB 2. Dell WMS: memcached 3. Dell WMS: MongoDB 4. Dell WMS: Mosquitto 5.
○ Check if you can register the device manually. ○ Check if you are using self-signed or well known certificates. NOTE: By default Wyse Management Suite installs self-signed certificates. CA validation must be disabled for devices to communicate with the Wyse Management Suite server. Error while sending commands to the device Problem: Not able to send commands such as package update, reboot to device and so on.
A Introduction to remote database A remote or cloud database (DB) is a database that is built for a virtualized environment, such as hybrid cloud, public cloud, or private cloud. In Wyse Management Suite, you can configure either the Mongo database (MongoDB) or the Maria database (MariaDB) or both DBs based on your requirement.
use admin; 11. After the MongoDB sheet is displayed, run the following commands: db.createUser( { user:"wmsuser", pwd:"PASSWORD", roles:[{role:"userAdminAnyDatabase",db:"admin"}, {role:"dbAdminAnyDatabase",db:"admin"}, {role:"readWriteAnyDatabase",db:"admin"}, {role:"dbOwner",db:"stratus"}] } ) 12. To switch to the stratus database, run the following command: use stratus; 13. To stop the MongoDB services, run the following command: net stop mongoDB 14. Add an authentication permission to the admin DB.
9. Provide all privileges on *.* to 'stratus'@'IP ADDRESS' identified by 'PASSWORD' with a grant option. 10. Provide all privileges on *.* to 'stratus'@'localhost' identified by 'PASSWORD' with a grant option. Next steps In the Wyse Management Suite installer, the administrator must use the same user name and password that was created to access the stratus databases in MariaDB. For information about setting the MariaDB on the Wyse Management Suite installer, see Custom installation.
B Custom installation In custom installation, you can select a database to set up Wyse Management Suite, and you must know the basic technical working knowledge of Wyse Management Suite. Dell recommends custom installation only for advanced users. 1. Select the Setup Type as Custom, and click Next. Figure 19. Setup type The Mongo Database Server page is displayed. 2. Select either Embedded MongoDB or External MongoDB as the Mongo database server.
Figure 20. Mongo Database Server ● If External MongoDB is selected, then provide user name, password, database server details, and the port details, and click Next. NOTE: The port field populates the default port which can be changed. Figure 21. Mongo Database Server The MariaDB Database Server page is displayed. 3. Select either Embedded MariaDB or External MariaDB as the MariaDB database server. ● If Embedded MariaDB is selected, provide user name and password, and click Next.
Figure 22. MariaDB Database server ● If External MariaDB is selected, provide user name, password, database server details and the port details, and click Next. The port field populates the default port which can be changed. Figure 23. MariaDB Database server 4. The Port page is displayed which allows you to customize the ports for the following databases: ● Apache Tomcat ● MySQL database ● Mongo database ● MQTT v3.
Figure 24. NOTE: Wyse Management Suite uses the Maria database and Mongo database for the following: Maria database—Relational database for data that requires well-defined structure and normalization Mongo database—No-SQL database for performance and scalability To complete the installation, follow the steps in the section Installing WMS on-premise and initial setup.
C Wyse Management Suite feature matrix The following table provides information about the features supported for each subscription type: Table 4.
Table 4. Feature matrix for each subscription type (continued) Features Wyse Management Suite Standard Wyse Management Suite Pro-private cloud Wyse Management Suite Pro-cloud edition Two-factor authentication Supported Supported Supported Active directory authentication for role based administration.
D Supported thin clients on Wyse management Suite The following table lists the supported thin clients on Wyse Management Suite: Table 5. Supported thin clients Operating System Device Type Build number Linux Wyse 5010 thin client 11.3.106 Wyse 7010 thin client WDA version 2.0.11-00.1 and later Wyse 5020 thin client Platform utility version 1.0.3-0.1 and later Wyse 7020 thin client ThinLinux Wyse 5020 thin client 1.0.3 Wyse 5060 thin client WDA version 2.0.24-00.
Table 5. Supported thin clients (continued) Operating System Device Type Build number Wyse 5060 thin client 7038 WDA versions 14.x and later. merlin version 3.4.6 and later Windows 10 IoT Enterprise (WIE10) Wyse 5020 thin client 0A0F Wyse 7020 thin client WDA versions 14.x and later. Latitude 3480 mobile thin client merlin version 3.4.6 and later Latitude 5280 mobile thin client Windows Embedded 8 Standard (WE8S) Wyse 5010 thin client 924 Wyse 7010 thin client WDA versions 14.x and later.
E Creating and configuring DHCP option tags About this task To create a DHCP option tag, do the following: Steps 1. Open the Server Manager. 2. Go to Tools and click DHCP option. 3. Go to FQDN > IPv4 and right-click IPv4. Figure 25. DHCP 4. Click Set Predefined Options. The Predefined Options and Values window is displayed. 5. From the Option class drop-down menu, select the DHCP Standard Option value.
Figure 26. Predefined Options and Values 6. Click Add. The Option Type window is displayed. Figure 27. Option Type Example The options need to be either added to the server options of the DHCP server or scope options of the DHCP scope. Configuring the DHCP option tags ● To create the 165 Wyse Management Suite server URL option tag, do the following: 1. Enter the following values and click OK. ○ Name—WMS ○ Data type—String ○ Code—165 ○ Description—WMS_Server 2. Enter the following value and then click OK.
String—WMS FQDN For example, WMSServerName.YourDomain.Com:443. Figure 28. 165 Wyse Management Suite server URL option tag ● To create the 166 MQTT server URL option tag, do the following: 1. Enter the following values and click OK. ○ Name—MQTT ○ Data type—String ○ Code—166 ○ Description—MQTT Server 2. Enter the following value and click OK. String—MQTT FQDN For example, WMSServerName.YourDomain.
Figure 29. 166 Wyse Management Suite server URL option tag ● To create the 167 Wyse Management Suite CA Validation server URL option tag, do the following: 1. Enter the following values and click OK. ○ Name—CA Validation ○ Data type—String ○ Code—167 ○ Description—CA Validation 2. Enter the following values, and click OK.
Figure 30. 167 Wyse Management Suite server URL option tag ● To create the 199 Wyse Management Suite Group Token server URL option tag, do the following: 1. Enter the following values and click OK. ○ Name—Group Token ○ Data type—String ○ Code—199 ○ Description—Group Token 2. Enter the following values and click OK.
Figure 31.
F Creating and configuring DNS SRV records About this task To create a DNS SRV record, do the following: Steps 1. Open the Server Manager. 2. Go to Tools and click DNS option. 3. Go to DNS > DNS Server Host Name > Forward Lookup Zones > Domain > _tcp and right-click the _tcp option. Figure 32. DNS Manager 4. Click Other New Records. The Resource Record Type window is displayed. 5.
Figure 33. Resource Record Type a. To create Wyse Management Suite server record, enter the following details and click OK.
Figure 34. _WMS_MGMT service b. To create MQTT server record, enter the following values, and then click ÓK.
Figure 35. _WMS_MQTT service 6. Go to DNS > DNS Server Host Name > Forward Lookup Zones > Domain and right-click the domain. 7. Click Other New Records. 8.
Figure 36. Resource Record Type a. To create Wyse Management Suite Group Token record, enter the following values, and click OK.
Figure 37. _WMS_GROUPTOKEN record name b. To create Wyse Management Suite CA validation record, enter the following values, and then click OK.
Figure 38.
G Creating and deploying advanced application policy to thin clients About this task To deploy an advanced application policy to thin clients, do the following: 1. Copy the application and the pre/post install scripts (if necessary) to deploy to the thin clients in the thinClientApps folder in the local repository or the Wyse Management Suite repository. 2. Go to Apps&Data > AppInventory and select Thin Client to verify if the application is registered. 3. Click Thin Client under App Policies. 4.
d. If you want to deploy this policy to specific operating system or platform, select OS Subtype Filter or Platform Filter. e. Timeout displays a message on the client which gives you time to save your work before the installation begins. Specify the number of minutes the message dialog should be displayed on the client. f.
H Registering Windows Embedded Standard device manually Windows Embedded Standard devices can be registered manually by launching the WDA UI icon on the taskbar. 1. Select Wyse Management Suite-WMS as the management server. 2. Enter an appropriate tenant and group name. If this field is left blank, devices are registered to an unmanaged group. (Optional) 3. Click Register. Figure 41.
I Registering Linux device manually Linux devices can be registered manually by launching the WDA UI icon from System Settings. 1. Enter the WMS Server details. 2. Enter an appropriate tenant and group name. If this field is left blank, devices are registered to an unmanaged group. (Optional) 3. Click Register. The device is registered to the Wyse Management Suite console. Figure 42.
J Terms and definitions The following table lists the terms used in this document and their definitions: Table 6. Terms and definitions Terminology Definition Private cloud Wyse Management Suite server installed on the cloud that is private to your organization’s datacenter. WDA Wyse Device Agent which resides in the device and acts as an agent for communication between server and client.