ACMP Agent

Last modified by Sabrina V. on 2026/07/29 06:59

The agent is deployed to the network clients directly from the ACMP Console. It is required to send Client Commands directly to a client and to maintain continuous communication between the client and the server.

ACMP Kiosk

On this page, you can configure the ACMP Kiosk.

Einstellungen: ACMP Kiosk

Settings (ACMP Kiosk)

In the General section, you specify the icon properties. You have the following three options:

OptionDescription
Do not display a tray iconAs a result, your users will not see a tray icon for either the ACMP Kiosk or the Command Launcher
Display ACMP Kiosk Tray IconThis causes the ACMP Kiosk tray icon to be displayed, replacing the Command Launcher.

Agent Task

In this section, you can configure the scope of the software scanner and file scanner.

Software scanner

The software scanner assists you in using Licence Management.

You can specify whether the software scanner should ignore updates and system components during the scan. This will reduce the number of results accordingly. You can also specify whether to enable the search for user-specific setup and uninstallation paths. This option is disabled by default. Once activated, the uninstall string will be displayed in the Client Details.

File Scanner

The File Scanner can also assist you with Licence Management, since not all applications leave an entry in the client’s software.

Hinweis  Note:  

During activation of the search function, please note that this involves user-specific data as defined by the GDPR.

Specify whether %WinDir% should be included in the scan. This option is disabled by default during installation. Additionally, specify the file extensions you want to scan for. Here, you can expand the scan to include the following file extensions:

  • .exe
  • .dll
  • .sys
  • .jar

Now specify additional devices to be scanned. You have the following options:

  • Fixed devices
  • Include USB devices
  • Removable data drives
  • Include USB devices

General

Agent Installation and Network Account

On this page, you first specify the agent installation and network identification account. Here, you can access existing global accounts, create new ones, or specify a specific account. To do so, enter the username and corresponding password in the appropriate fields.

Systemeinstellungen: ACMP Agent

System settings (Agent)

You can specify that the system first check whether the specified account has sufficient rights for installation on all computers found on the network. To do this, select the “Check rights on target computers” checkbox.

Hinweis  Note:  

If the ACMP Server is installed on an operating system newer than Windows Server 2003, the specified account is also used for network discovery. This account must therefore have sufficient rights for RPC and for scanning the network.

Agent Installation Folder

Specify the storage location for the ACMP Agent files. After installation, this is also where you’ll find CommandLauncher.exe, which you can use to launch the Client Command Launcher and execute Client Commands as an alternative to the tray icon.

Client Settings

To uniquely identify computers on the network, ACMP offers various options for Windows and Unix clients. Select the value that is unique on your network.

  • Windows Clients:
    • Computer SID
    • Computer Name
    • Primary MAC
    • SMBIOS system UUID
  • Unix Clients:
    • Machine ID
    • Computer Name
    • Primary MAC

Warning  Warning:  

If the selected value is ambiguous, scan data from another Client will be overwritten, and your database will become corrupted.

Online Status

The online status feature allows you to define a time period for all client-based queries, which is displayed in the Query Management interface. Here, you can specify the number of minutes after which the client’s last contact with the ACMP Server is no longer considered online. The default value is 60 minutes. Active Clients that are displayed as online in the Query are marked with a green dot; Offline Clients are displayed with a gray icon. Manual Clients, OSC, etc., are not considered online Clients and are displayed without an icon.

If you want to verify the Clients’ online status, you must enable the corresponding checkbox. Only then will the ACMP Agent contact the ACMP Server at the interval you specified.

Job Execution Mode

The job execution mode allows you to configure how jobs should behave once their start condition is met. This currently applies only to jobs of the types “Windows Update Management,” “Managed Software,” and “BitLocker.” Choose between the two available options, Always and Only when changes are applied:

OptionDescriptionExample
AlwaysIn this mode, the job always runs as soon as the start condition for that job is met. A Job Log is always generated.A Managed Software job will not make any changes on a client if the same version of the software included in the Managed Software job is already installed. The job log created for this simply indicates that the job ran but that no changes were made.
Only when changes are appliedWith this option enabled, the job is executed, and a Job Log is created only if the job also performed an update (either for Managed Software or a Windows Update).With this configuration, there will be no Job Log, since no “actual execution” took place—the software did not need to be updated.
69_Einstellungen ACMP Agent_Job-Ausführungsmodus_749.png

Job Execution Mode for the Start Conditions

Login History and Primary User

In general, you can designate one contact as the primary user for each client. Designating a primary user is generally helpful for quickly determining, in day-to-day operations, which user primarily uses a client. Additionally, designating a primary user is mandatory if you wish to claim the secondary usage right for a client.

There are two ways to designate a primary user for a client: You can either designate the primary user manually or enable automatic primary user detection so that the primary user is determined automatically and dynamically based on logins to the client.

Hinweis  Note:  

Please note that to view the login history, you need a user who has the appropriate right. You can assign and enable this right via User Management (Rights of User > Client Management > Query Management > Client Details > Open Client Details > “View Client Login History”).

68_Benutzerverwaltung_Rechte des Benutzers Anmeldeverlauf_988.png

Required rights in user management for using the sign-in history

Manually Designating a Primary User

You can manually designate a primary user in the Client Details. To do this, you must first open a client using a Query and then display the Client Details.

Within the Client Details, navigate to the Linked Contacts entry. There, all contacts currently linked to the client are displayed. The following functions are available in the detail view of the linked contacts:

FunctionDescription
Add a shortcut Click this button to open the contact list. From this list, you can then select a contact to link to the client. 
Delete a shortcutYou can use this button to remove a contact that has already been linked. 
Reset the primary userThis button deletes the currently active primary user. The Client will then no longer have a primary user. 

You can now select which of the linked contacts should be the client's primary user. To do so, check the checkbox in the Primary User column next to the specific contact.

Manuelle Festlegung des Hauptbenutzers in den Client Details

Manually Setting the Primary User in Client Details

Automatic Primary User Detection

With automatic primary user detection, it is possible to automatically and dynamically determine a client’s primary user based on logins to that client. To do this, there are two linked functions in the ACMP Console’s system settings—“Login History” and “Primary User”—that must be enabled for automatic primary user detection.

Hinweis  Hinweis: 

Both functions are disabled by default for privacy reasons.

Enable Login History Tracking

By enabling the first function, Scan Login History, logins can be tracked and saved. Only “real” logins are counted - that is, Windows logins in which a full session is established. Both RDP sessions and local logins are tracked.

Example: For example, it is not considered a login when a user logs back into the Client after the screen has been locked.

After activation, you can view the client's login history in the Client Details under the Software > Operating System folder in the Login History entry. Please note that the data for the login history is retrieved via the System Scanner. This means that the login history can only be stored for clients that were detected via the ACMP Agent or the OneScanClient.

Anmeldeverlauf eines Clients

A Client's Login Process

For all clients that were added in other ways, a login history cannot be generated. Accordingly, the primary user must still be set manually, even if the clients are not explicitly on the blacklist. 
You can also specify in the settings how many days after they are created the recorded login histories should be deleted by a server job.

Hinweis  Note:  

If you have many clients and your system retains login histories for a long time, large amounts of data may accumulate, which can slow down your system. Therefore, you should not set the number of days before login histories are deleted to be too high.

Enable Setting the Primary User

The activation of the second function, Automatically Set Primary User, automatically designates a user as the primary user after a specified number of consecutive logins. You can set the number of consecutive logins required in the settings.

Warning  Warning:  

The calculation of the primary user is not triggered directly by a user login, but takes place 10 minutes after the first login. Therefore, there may be a delay between logins and the designation of the primary user.

Static or dynamic blacklisting allows you to exclude specific clients from this automatic process. To do this, you can either statically add selected clients to the list of clients without a primary user in the settings, or apply filter options to dynamically manage clients without a primary user.

Hinweis  Note:  

Login history tracking is also activated even if the client is excluded from automatic primary user detection due to blacklisting. 

Automatische Hauptbenutzererkennung aktivieren

Enable Automatic Primary User Detection

Once you have enabled automatic primary user detection, the Linked Contacts entry in the Client Details will display a banner at the bottom of the window indicating that the primary user for the selected client is set automatically. The client also detects and remembers the user type. If the user is an Active Directory user, the user’s contact is automatically listed as a linked contact and set as the primary user.

Hinweis  Note:  

Automatic contact linking works only for AD users. Other user types are not linked.

Anzeige des automatisch verknüpften Hauptbenutzers in den Client Details

Display of the automatically linked primary user in the Client Details

Once automatic primary user detection is enabled, you can no longer reset or manually change the primary user. You can still manually add new Shortcuts and delete manually added Shortcuts, provided that the linked contact is not the primary user.

Remote Desktop Services

Here you can define how data collected from Remote Desktop connections is handled.

Remotedeskotp Dienste.PNG

Remote Desktop Services settings

Cleaning Up Collected Data

By default, data collected by the ACMP Agent via Remote Desktop connections is deleted after 180 days.

Data Collection Methods

When the ACMP Agent logs in via Remote Desktop, you can choose which method to use for data collection. You can select one of the following three options:

  • Never send collected data
  • Send only if the client has Remote Desktop Services installed
  • Always send collected data

By default, the “Send only if the client has Remote Desktop Services installed” option is selected.

 

© Aagon GmbH 2026
Besuchen Sie unsere aagon-Community