Verify Managed Server Access
Applies To: Windows Server 2012 R2, Windows Server 2012
Checklist: Deploy IPAM Server > Install IPAM Server > Choose an IPAM Provisioning Method > Configure Server Discovery > Discover Servers on the Network | Manually Add a Server to Server Inventory > Create IPAM Provisioning GPOs | Manually Configure DHCP Access Settings | Manually Configure DNS Access Settings | Manually Configure DC and NPS Access Settings > Choose Managed Servers > Verify Managed Server Access
After you have selected servers that will be managed by IPAM, you can verify IPAM access settings. If the automatic, GPO-based provisioning method is used, selecting a manageability status of Managed will automatically add a managed server to security filtering in the appropriate role-based IPAM GPOs. If the manual provisioning method is chosen, you can manually apply IPAM provisioning GPOs, or manually configure managed server access settings. In some cases, application of IPAM access settings requires that role services are restarted. For more information about applying and verifying IPAM access settings, see Getting Started with IPAM.
Membership in the Administrators group, or equivalent, is the minimum required to complete this procedure. Review details about using the appropriate accounts and group memberships at Local and Domain Default Groups (https://go.microsoft.com/fwlink/?LinkId=83477).
Verifying managed server access
The SERVER INVENTORY view is used to display the IPAM access status for managed and unmanaged servers. Servers will display a status of Blocked, Unblocked, or Not checked. Depending on the manageability status that is selected, a recommended action is also displayed. If the recommended action is Unblock IPAM Access, review information in the Details View to understand what type of access status is currently blocked, verify that the correct access settings are applied, and refresh server access status.
To verify managed server access
In the upper IPAM navigation tree, click SERVER INVENTORY. The list of servers that have been discovered or manually added is displayed.
Under Recommended Action, verify that IPAM Access Unblocked is displayed.
If Unblock IPAM Access is displayed, verify that IPAM access settings have been applied and refresh server access status.
Verify IPAM access settings.
To verify IPAM access settings
If IPAM access settings are applied using GPOs, update Group Policy and display the Resultant Set of Policy (RSoP) information on the target managed server by typing the following commands at an elevated command prompt on the target server, and then pressing ENTER:
In the command output, verify that Computer Policy update has completed successfully is displayed.
In the command output, under COMPUTER SETTINGS, verify that the GPO name that is applicable to the managed server is displayed under Applied Group Policy Objects. For example, if the Group Policy based provisioning method is used with a GPO prefix of IPAM1, and the managed server type is DHCP, then IPAM1_DHCP should be displayed.
Refresh server access status.
To refresh server access status
In the SERVER INVENTORY view, select one or more servers to refresh. Hold down CTRL or SHIFT to select multiple servers.
Right-click the selection and then click Refresh Server Access Status. The IPAM ServerDiscovery task will run.
Wait for the IPAM ServerDiscovery task to complete, and then refresh the SERVER INVENTORY view (click Refresh next to the notification flag in Server Manager).