Previous Topic: View or Reset Security Settings for a Selected EnvironmentNext Topic: Enable an Operator Category and Override Inherited Settings


Configure Environment Properties

Configure the properties for a selected environment from the Configuration tab. Environment Configuration Administrator rights are required to configure environment properties or override settings at a level that can inherit from the environment.

Follow these steps:

  1. Click the Configuration tab.
  2. Expand the Domain node, right-click the appropriate environment name, and then click Lock.
  3. Click the Properties tab, and then view or update properties as appropriate.
    Operators Autorecovery

    Specifies whether to automate recovery. Recovery applies to specific operators that fail with a SYSTEM_ERROR and have recoverable processes that are in a BLOCKED, RUNNING, or WAITING state. Select True to begin recovery when the inactive Orchestrator or agent becomes active. Recovery resets operators that were in SYSTEM_ERROR and resumes their processes. The reset operators in a resumed process begin running on the associated targets. The Operator targets can be Orchestrators, touchpoints, hosts that are connected to proxy touchpoints, or hosts in a host group.

    Values: This property has the following values:

    • Selected - Automates recovery.
    • Cleared - Prevents automated recovery.

    Default: Selected.

    Touchpoint Security

    Specifies whether to inherit the value that is configured in the Domain properties or to set the value at the environment level.

    Values: This property has the following values:

    • Inherit from Domain - Use the value that is configured for this field in the Domain properties.
    • Enabled - Enforce the Touchpoint Security policies for this target and allow access only if the user has been granted this permission.
    • Disabled - Do not verify whether the user running the process has execute rights on the current target.

    Default: Inherit from Domain.

    Match target in Host Groups only?

    Specifies the search scope for an operator target when the Target field entry is an IP address or a host name (FQDN). The operator execution on the target can proceed only when the target is known to CA Process Automation. Select Disabled to allow the broadest search. Select Enabled here and Disabled for the next field for the most restricted search.

    Note: A DNS lookup of a specified hostname finds associated IP addresses; a DNS lookup of the IP address finds associated hostnames.

    Values: This property has the following values:

    • Inherit from Domain - Use the value that is configured for this field in the Domain properties.
    • Enabled - The scope of the search depends on whether the "Lookup DNS when matching target in Host Groups" field is enabled or disabled.

      If a DNS lookup is disabled, searches: Host group reference to a remote host (exact)

      If a DNS lookup is enabled, searches: Host group reference to a remote host (exact or DNS lookup result)

    • Disabled - Search the Domain components in the following order:

      Touchpoint (exact or a DNS lookup result)

      Orchestrator (exact or a DNS lookup result)

      Agent (exact or a DNS lookup result)

      Proxy touchpoint mapping to a remote host (exact or DNS lookup result)

      Host group reference to a remote host (exact or DNS lookup result)

    Default: Inherit from Domain.

    Lookup DNS when matching target in Host Groups?

    Note: This field is enabled when the "Match target in Host Groups only" is set to Enabled.

    Specifies whether to limit the search through Host Group references to the entry type. For example: When the Target field entry type is an FQDN, search only host name patterns. When the Target field entry type is an IP address, search only subnets. When a DNS lookup is included, the search can also accept a host group reference to the other type, as resolved by a DNS lookup.

    Values: This property has the following values:

    • Inherit from Domain - Use the value that is configured for this field in the Domain properties.
    • Enabled - Search all host group references. Host group references for hostnames are patterns (regular expressions) that can include the specified host name. Host group references for IP addresses are IP address subnets that are expressed in CIDR notation that can include the specified IP address. Extend the search to all host group references. Let the search find either an exact match or a match to the DNS lookup result.
    • Disabled - Restrict the search to host group references that include an exact match to the Target field entry.

    Default: Inherit from Domain.

  4. Click Save.
  5. Select the environment and click Unlock.

    The environment property updates are active.

More information:

Approach to Configuring Touchpoint Security

Customize Operator Category for a Selected Agent