DEVICES
The Devices section provides a centralised view of devices registered with the GuardWare server across licensed products. Administrators can monitor device status, manage assignments, and send commands directly from this section.
Devices are displayed according to the products licensed for the organisation. If a product is not licensed, its associated device data will not appear.
View Devices
The device list shows devices that register with the server when the relevant GuardWare agent is installed. Use this view to monitor agent status, verify assigned settings, and identify devices that need attention, such as devices that have not been online recently or are running an outdated agent version.

Device Name
The hostname of the device.
User Name
The user currently or last logged in to the device.
Serial Number
The device serial number.
IP
The device IP address.
Setting Assigned
The Advanced Setting currently assigned to the device.
Location
The physical or network location of the device.
OS
The operating system installed on the device.
Last Online Time
The date and time the device last communicated with the server.
Hardware
Hardware specification reported by the device.
Software
Applications reported as installed on the device.
Agent Installation
The installation status of the INSIGHT agent.
Agent Version
The version of the INSIGHT agent installed on the device.
Report packet size, client status interval, settings interval, and command interval are configured under INSIGHT > Advanced Settings > Report Upload and Communication Settings.
Export Devices List
The device list can be exported in PDF or CSV format.
Navigate to DEVICES.
On the top-right,
Click the Excel icon to download the files in a
.csvformat.Click the PDF icon to download the files in a
.pdfformat.

Assign an Advanced Setting
An Advanced Setting defines the monitoring policy and configuration applied to a device. Assigning the correct setting ensures each device is monitored in line with organisational requirements, whether that means applying stricter policies to high-risk user groups or adjusting communication intervals to suit specific network conditions.
Each device can hold one Advanced Setting at a time. A single setting can be assigned to multiple devices. When a new setting is assigned to a device, the existing setting is automatically removed and replaced.
Navigate to INSIGHT > Devices.
Select one or more devices from the list.
Click Assign Advanced Setting.

In the side drawer, select an Advanced Setting from the list to assign to the selected devices.

Click Confirm.
If no Advanced Settings have been created yet, create an Advanced Setting first. After creating, assign the setting here, or from the Assign Devices action in Advanced Settings.
Assign a Command
Commands allow administrators to act on devices immediately, outside of normal scheduled intervals. This is useful when a change needs to take effect without waiting for the next settings sync, when troubleshooting a specific device, or when preparing a device for decommissioning.
Commands trigger one-off actions on selected devices without changing the assigned Advanced Setting. Use them to troubleshoot a device, force an update, collect current device data, or apply a temporary device action.
Assigned commands are picked up by the device agent during its next communication with the server. Only one command can be assigned per operation; however, multiple devices can be selected and assigned.
Review the effect of each command before assigning it broadly. Commands such as Uninstall Client, Driver Options, and Network Monitoring Approach can affect monitoring coverage, user experience, or device connectivity.
Before you assign a command
Confirm the device has checked in recently.
Select only the devices that need the action.
Check whether the command is diagnostic, temporary, or permanent.
Consider whether the command may interrupt the user or require follow-up.

Navigate to INSIGHT > Devices,
Select one or more devices, and click Assign Command.
Enable Test Communication Settings
Switches the device Communication Settings to a configuration optimised for fast settings downloads and report uploads. This is intended for testing and diagnostic purposes only.
Use this when validating connectivity, testing server communication, or checking whether a device can receive updates promptly.
Applying this command to all devices simultaneously will overload the server. Use selectively on individual or small groups of devices.
Navigate to INSIGHT > Devices.
Select one or more devices from the list and click Assign Command.
Select Enable Test Communication Settings.
Click Confirm to assign the command.
Disable Test Communication Settings
Reverts the device Communication Settings to their default values, undoing any changes made by the Enable Test Communication Settings command.
Use this after testing is complete so the device returns to its standard communication behaviour.
Navigate to INSIGHT > Devices.
Select one or more devices from the list and click Assign Command.
Select Disable Test Communication Settings.
Click Confirm to assign the command.
Update User Policies on Device
Instructs the agent to immediately apply the current policy and Advanced Settings, rather than waiting for the next scheduled settings interval.
Use this after changing an Advanced Setting or policy when you want the device to apply the latest configuration without waiting for the next scheduled sync.
Navigate to INSIGHT > Devices.
Select one or more devices from the list and click Assign Command.
Select Update Setting.
Click Confirm to assign the command.
Application Scan
Instructs the agent to report all applications currently installed on the device. Use this command to retrieve an up-to-date software inventory outside of the normal reporting schedule, for example, after a suspected unauthorised installation.
Use this when software inventory needs to be refreshed after an installation, removal, or other application change on the device.
Navigate to INSIGHT > Devices.
Select one or more devices from the list and click Assign Command.
Select Application Scan.
Click Confirm to assign the command.
Hardware Scan
Instructs the agent to report the device hardware specifications, installed peripherals, and available disk space. Use this command to get a current hardware snapshot when auditing or troubleshooting a device.
Use this when auditing device specifications or confirming changes to storage, peripherals, or other hardware components.
Navigate to INSIGHT > Devices.
Select one or more devices from the list and click Assign Command.
Select Hardware Scan.
Click Confirm to assign the command.
Reresolve PC
Assigns a new unique identifier to the device. Send this command when a device has been provisioned from an image that had INSIGHT pre-installed. Without it, cloned devices may share the same identifier and conflict when communicating with the server.
Use this after imaging or cloning a machine if multiple devices appear to be reporting as the same endpoint.
Navigate to INSIGHT > Devices.
Select one or more devices from the list and click Assign Command.
Select Reresolve PC.
Click Confirm to assign the command.
Reresolve User
Assign this command when the same non-Active Directory user account is shared across multiple devices. Without it, INSIGHT may treat those users as a single entity rather than separate individuals.
Use this when shared local accounts cause user activity to be grouped incorrectly across multiple devices.
Navigate to INSIGHT > Devices.
Select one or more devices from the list and click Assign Command.
Select Reresolve User.
Click Confirm to assign the command.
Network Monitoring Approach
The Network Monitoring Approach command specifies the method INSIGHT uses to monitor network traffic. The default approach is Windows Filtering Platform (WFP). If a conflict exists with another network monitoring application on the device, an alternative approach can be selected to maintain compatibility.
Change this only when troubleshooting compatibility issues with another networking product or when instructed to do so during support.
Navigate to INSIGHT > Devices.
Select one or more devices from the list and click Assign Command.
Select Network Monitoring Approach and select the monitoring approach (only one).
WFP - Windows Filtering Platform. The default approach.
LSP - Layered Service Provider. Use if WFP conflicts with another application.
OFF - Disables network monitoring entirely.
Click Confirm to assign the command.
Driver Options
Allows individual INSIGHT drivers to be disabled. Use this command to resolve driver conflicts or compatibility issues without affecting other components.
Disable individual drivers only for troubleshooting or compatibility testing. Disabling drivers may reduce monitoring visibility on the device.
Navigate to INSIGHT > Devices.
Select one or more devices from the list and click Assign Command.
Select Driver Options and uncheck the box next to the driver to be disabled.
Process Guardian- GWPG
USB Monitoring- GWScanner
USB File Transfers- GWUSBMon
File Guardian- GWDogFile
File System Monitoring- GWChatDocMon
Click Confirm to assign the command.
Refresh SSL Certificate
Renews the SSL certificate INSIGHT uses to monitor SSL traffic. Certificates are valid for two years and renew automatically on restart when close to expiry. This command allows renewal without restarting the agent, avoiding any interruption to the user.
Use this when SSL traffic monitoring needs to continue without restarting the agent or interrupting the user session.
Navigate to INSIGHT > Devices.
Select one or more devices from the list and click Assign Command.
Select Refresh SSL Certificate.
Click Confirm to assign the command.
Enable SSL Cache
Re-enables SSL encryption key caching if it has previously been disabled. Use this command to restore the default SSL monitoring behaviour after a Disable SSL Cache command has been applied.
Use this after troubleshooting is complete and normal SSL cache behaviour should be restored.
Navigate to INSIGHT > Devices.
Select one or more devices from the list and click Assign Command.
Select Enable SSL Cache.
Click Confirm to assign the command.
Clear SSL Cache
The Clear SSL Cache command clears the SSL encryption keys cached by INSIGHT to speed up SSL traffic monitoring. If webpages are becoming corrupted for a user, clearing the cache will resolve the issue in most cases.
Use this as a first troubleshooting step when monitored web sessions become corrupted or pages do not render correctly.
Navigate to INSIGHT > Devices.
Select one or more devices from the list and click Assign Command.
Select Clear SSL Cache.
Click Confirm to assign the command.
Disable SSL Cache
Disables SSL encryption key caching entirely. If webpage corruption is occurring on a regular basis and clearing the cache has not resolved the issue, disabling the cache will prevent it from contributing to the problem.
Use this only if repeated web corruption continues after clearing the SSL cache.
Navigate to INSIGHT > Devices.
Select one or more devices from the list and click Assign Command.
Select Disable SSL Cache.
Click Confirm to assign the command.
Enable CLOSE_WAIT Management
Enables management of CLOSE_WAIT TCP connection states. CLOSE_WAIT occurs when the remote side of a connection initiates a close, but the browser fails to close the socket. This typically manifests as blank pages appearing in the browser. Enabling this command addresses the issue.
Use this when users report blank browser pages or symptoms that point to sockets remaining in a CLOSE_WAIT state.
Navigate to INSIGHT > Devices.
Select one or more devices from the list and click Assign Command.
Select Enable CLOSE_WAIT Management.
Click Confirm to assign the command.
Disable CLOSE_WAIT Management
Disables the management of CLOSE_WAIT TCP connection states.
Use this only if CLOSE_WAIT management was enabled for troubleshooting and is no longer required.
Navigate to INSIGHT > Devices.
Select one or more devices from the list and click Assign Command.
Select Disable CLOSE_WAIT Management.
Click Confirm to assign the command.
Uninstall Client
The Uninstall Client command removes the INSIGHT agent from the selected devices.
Use this when permanently removing INSIGHT from a device, during device decommissioning, or before a clean reinstall.
Navigate to INSIGHT > Devices.
Select one or more devices from the list and click Assign Command.
Select Uninstall Client.
Select either Immediate or Silent.
Selecting Immediate uninstalls the agent straight away. The user's session is interrupted and
explorer.exeis restarted.Selecting Silent uninstalls the agent in the background. Cleanup completes on the next device restart with no user interruption.
Click Confirm to assign the command.
After assigning a command, verify the result from the device record. Check the last online time, reported hardware or software data, assigned settings, agent version, or the expected change in endpoint behaviour.
Last updated

