IEM OS Deployment/Bare Metal Air-Gapped Network
Setup OS Deployment and Bare Metal Imaging site in an Air-Gapped Network
To setup the OS Deployment and Bare Metal Imaging site in an air-gapped environment, you need to manually download and cache specific files on the machines where the IBM Endpoint Manager Console is installed as well as on the IBM Endpoint Manager Server. To set up your environment, you must perform the following steps:
1. Obtain OS Deployment and Bare Metal Imaging Site content
You must use the Make Mirror Archive utility, to download the OS Deployment and Bare Metal Imaging external site content from an internet connected machine. This utility requires the external site masthead file and cannot be run on the Endpoint Manager Server.
For details see the following wiki article: OSD in an Air-gapped environment .
2. Pre-cache OS Deployment and Bare Metal Imaging Site downloads
To pre-cache the OS Deployment site files, you must obtain the OS Deployment and Bare Metal Imaging site masthead file, and create a cache folder for the pre-cached SHA1 files on an internet connected machine. Download and run the BES Download Cacher utility available at the following link: TEM Download Cacher . The utility copies files in the cache folder you specified. You must then transfer these files to the SHA1 download cache on the Endpoint Manager Server. The default location of the download cache is:
...\Program files (x86)\BigFix Enterprise\BES Server\wwwrootbes\bfmirror\downloads\sha1.
For details see: OSD in an Air gapped environment .
3. Pre-cache additional files on the IBM Endpoint Manager Server:
Important: The OS deployment and Bare Metal Imaging site requires the Upload Maintenance Service (UMS) on the Endpoint Manager Server. This service must be installed and running to manage and maintain files correctly. You can install this service from the BES Support site, using the "Install BES Server Plugin Service" Fixlet.
You must pre-cache additional files on the server. The following files must be downloaded to the SHA1 download cache on the Endpoint Manager Server.
The default location of the download cache is: ...\Program files (x86)\BigFix Enterprise\BES Server\wwwrootbes\bfmirror\downloads\sha1
If you are installing the Endpoint Manager Client during a Linux System provisioning, you must pre-cache the selected Client installation packages (see the TEMImageCatalog.xml file).
Note: You can use the relevance debugger (QnA debugger) to find the sha1 of each of these files by using the following relevance expression:
(name of it, sha1 of it) of files of folder "c:\AirgapOSD"
where c:\AirgapOSD is the folder to which you downloaded the files on the internet connected machine.
4. Download additional files to the machines where the Endpoint Manager Console is installed:
The following files must be downloaded and placed within %USERPROFILE%\OSDeployment on the console machines. This step also applies if your console machines are behind a proxy.