Administrator Guide

Table Of Contents
Wyse Device Agent
The Wyse Device Agent (WDA) is a unied agent for all thin client management solutions. If you install WDA, you can manage thin clients
using Wyse Management Suite.
The following three types of customer security environments are supported by the Wyse Device Agent:
Highly secured environmentsTo mitigate the risk against rouge DHCP or DNS server for new device discovery, administrators must
log in to each device individually and congure the Wyse Management Suite server URL. You can use either CA-signed or self-signed
certicates. However, Dell recommends that you use a CA-signed certicate. In Wyse Management Suite private cloud solution with
self-signed certicate, the certicate should be manually congured in every device. Also, the certicate must be copied to the Agent
Conguration folder to preserve the certicate and mitigate the risk against rouge DHCP or DNS server even after you reimage the
device.
The Agent Conguration folder is available at the following location:
Windows Embedded Standard devices—%SYSTEMDRIVE%\\Wyse\\WCM\\CongMgmt\\Certicates
ThinLinux devices—/etc/addons.d/WDA/certs
ThinOS devices—wnos/cacerts/
NOTE
: You must import the certicate to a thin client running ThinOS operating system using a USB drive or FTP
paths.
Secured environmentsTo mitigate the risk against rouge DHCP or DNS server for new device discovery, administratos must
congure Wyse Management Suite server using CA-signed certicates. The device can fetch the Wyse Management Suite server URL
from the DHCP/DNS records and perform the CA validation. Wyse Management Suite private cloud solution with self-signed certicate
requires the certicate to be pushed to the device after rst registration if the device does not have the certicate before registration.
This certicate is preserved even after you reimage or restart the device to mitigate the risk against rouge DHCP or DNS server.
Normal environmentsThe device obtains the Wyse Management Suite server URL from the DHCP/DNS records for Wyse
Management Suite private cloud that is congured with CA-signed or self-signed certicate. If CA validation option is disabled on the
device, Wyse Management Suite administrator is notied after you register the device for the rst time. In this scenario, Dell
recommends that the administrators perform a certicate push to the device where the server is congured with self-signed
certicate. This environment is not available for public cloud.
15
Wyse Device Agent 211