Service Manual

Cryptography
AES-256 and AES-128 are used for encryption in Wyse Management Suite. TLS 1.1 and 1.2 are enabled by default with
on-premise installation. It is recommended to use the TLS 1.2 protocol.
Certificate management
You can import your SSL certificate to secure communications with the Wyse Management Suite server. You can import the
console by logging in to the Wyse Management Suite private cloud and importing from the Portal Administration page.
By default, the Wyse Management Suite imports the self-signed SSL certificate that is generated during the installation to
secure communication between the client and the Wyse Management Suite server. If you do not import a valid certificate for
your Wyse Management Suite server, a warning message is displayed when you access the Wyse Management Suite from a
device other than the server where it is installed.
A warning message is displayed if the self-signed certificate that is generated during installation is not signed by a Certificate
Authority such as geotrust.com. You can either import a .pem or .pfx certificate.
Wyse Management Suite provides a provision to enable the CA validation. Enabling it ensures that the transactions such as file
operations, image push or pull with the clients work in a secure way and with certificate signature validation.
Auditing and logging
Event audit
Wyse Management Suite manages events by event types such as group creation, device registration, configuration modification,
and file upload.
For each event, a static audit message is generated. Go to Events > Audit to view the event audit messages. They can be
exported from Portal Administration > Reports.
Log management
By default, Wyse Management Suite manages logs with the default configuration. You must have sufficient disk space to store
the logs. The log levels are categorized into INFO, WARN, and ERROR.
Wyse management suite provides event logs in the console for the events that are related to device, configurations, and other
required events.
Log protection
Dell Wyse Management Suite product does not share sensitive information in logs, and users outside the cluster cannot access
these logs. Only authenticated and authorized users can access the logs.
Logging format
Logs from Wyse Management Suite include timestamp and log levels consistently. A new line separates each log entry. Some log
entries such as exception stack traces may span multiple lines. The timestamp indicate the start of a new entry, and the entries
usually include origination information to distinguish similar entries.
Code or product integrity
Dell Wyse Management Suite enables you to update system packages and install third-party applications. All firmware and
application packages that are used in Wyse Management Suite are Dell-signed packages. All files that are distributed by Dell
are signed applications. You can download the packages from www.dell.com/support and deploy the packages from Wyse
10
Product and subsystem security