All, I have edited my original picture post, to include a little more detail. Let me know if this isn't enough, and I'll crack it open and try to improve some more. Sorry for the delays! You can see from the start of this thread, I was one of the early ones trying to sort this out, and Darren was a huge help.
Sounds like you have an issue with the other script, probably not this here. I'd suggest ignoring that other script for a bit, and make sure you setup the steps in my earlier comment. That at least gives you a way to test whether the bitlocker role detection is working, before you add another layer of complexity (that other script.)
Edited 12/6/19, added detail to the pictures.
@fguiliano, sorry for the delay in answering here.
OK, if memory serves... This basically just adds a role check into your automated role checks.
You need to-
Create an EDF checkbox, and set the default value to UNchecked.
Create a "status check" script, that will change the EDF value to checked or unchecked, depending on whether the ROLE is detected...
Schedule this script to run on a GROUP.
NOTE: A search based on this EDF, can only be as accurate as the last times
Inventory cycle was run on the agent template (you could either make inventory more frequent on agent template, OR you could add another script to your group to run more often, that just does a 'resend everything' on the group. I found that I had to use resend Everything, to capture this role detection.)
Your status check script last ran (if you plan to make changes, and then check up on those changes frequently, be sure to schedule this to run often.)
Once you install this package, the "role" detection is baked in, but pretty invisible. I used this process to 'bring it to the front' where you could actually make use of it. You can search for an EDF value, but it didn't show up as a role for me, under searches.
Pictures attached - ask away if you have any questions. Excuse my mad artistic skills...
In your System Dashboard-
Go to Config, Additional Field Defaults, Computers, Computer Role;
Here, you should see the new EDF, for BitlockerEnabled, as a yes/no, 1/0 valued checkbox. (You should also be able to view the status on any given machine, by opening the machine's view, and going to the Automation, EDF, Computer Roles window.
Create yourself a SCRIPT, that looks like this. What you see here is-
If ROLE DETECTED, "Bitlocker Enabled", then-
Set EDF "BitlockerEnabled", to = 1 (yes/checked box)
In the ELSE field on the bottom of the script, do the opposite, setting the EDF checkbox to = 0, or 'unchecked'.
Now, build yourself an Advanced Search, that you can use with GROUPS as an autojoin search.
Search for the details shown below - ROLE is true, Client name (if that matters to you, did to me,) and whether or not it's a Server (depending on your needs here.)
The search example below, was for a specific client, that only wanted to know about workstations.
Once you have the Search built, you can:
Manually run the search, and export to Excel, or-
Create a GROUP, and use this as an autojoin script, then-
Run any other commands or scripts against the entire group
@fguiliano, any chance you're at Automation Nation right now? If so, I can show you - should take like 5 minutes or so. If not, I can try to answer later this afternoon - unless someone else can help out sooner!
Two things --
First, mrmmbels, you can identify it by 'roles'. For example, under advanced search, you would use computer.extra data field.computer role.bitlockerenabledis (true or false).
Second - Has anyone seen issues with this not properly detecting on the agent itself, since the v12 udpate? We were running about 95% accuracy with this, but after the update, we're probably around 60%. Techs are getting tired of checking on machines that have already been updated with Bitlocker, and asking me to fix it.
Thanks!
Gavsto,
At the risk of sounding completely ignorant here, how do we *use* this? We have a need right now that it sounds like your add-on here will fit the bill perfectly, and I just installed it, and reloaded the system cache. So far though, I do not see anywhere that this new information could be viewed. Does it show up under the information on an individual agent, as detected roles? Does it show up as an EDF value (or can we create an EDF that pulls this data?)
Thanks in advance,
Michael