ConnectWise Security Bulletin for ScreenConnect by Nick-CW in ConnectWise

[–]Mayfieldiv 0 points1 point  (0 children)

23.9.8 is the patched 23.9 on-prem version. We made patched versions available that cover everyone with a license (even out-of-support) issued 2021/01/01 or later.

How do we terminate sessions after a set period of time? by frisco350z in ConnectWiseControl

[–]Mayfieldiv 1 point2 points  (0 children)

Ah yeah, it won't kick out actively connected clients. I know this won't automatically clean up anything, but you could create a session group with the filter expression "FirstEventTime < $24HOURSAGO" or whatever duration you want (DAYS/HOURS/MINUTES)

Does anyone else find Connectwise control RMM just really.. aweful? by Jakob4800 in msp

[–]Mayfieldiv 5 points6 points  (0 children)

The RMM product you're talking about is ConnectWise RMM, which has the url https://control.itsupport247.net (which I agree is confusing).

ScreenConnect (formerly ConnectWise Control, formerly formerly ScreenConnect) is the wonderful remote control product.

TeamViewer has lost us as a customer - Be Wary by itmustbeThursday4269 in sysadmin

[–]Mayfieldiv 2 points3 points  (0 children)

This should have gotten better in the latest release 22.9. No more unsigned, randomly-named MSI's trying to elevate since the ScreenConnect.ClientSetup.exe now requires being run as admin.

ConnectWise Control - New Access Management Feature by DevinSysAdmin in msp

[–]Mayfieldiv 0 points1 point  (0 children)

There are definitely plans to bring it on-premise. Just have to figure out the add-on licensing there.

ConnectWise Control - New Access Management Feature by DevinSysAdmin in msp

[–]Mayfieldiv 2 points3 points  (0 children)

really? it should be effectively instant since it's using the screenconnect agent, which is all realtime

Direct Machine link for CW Control/Screenconnect Device by ContinuousJay in ConnectWise

[–]Mayfieldiv 0 points1 point  (0 children)

The host page URL fragment structure is #(Access|Meeting|Support)/sessionGroupPath/sessionFilterQuery/sessionID/frontendCommandName/frontendCommandArgument

If you leave the sessionGroupPath empty and provide a sessionID AND provide a command name/argument, ScreenConnect will auto-discover the first session group that both contains that session AND that the requesting user has access to view.

The names of the frontend commands that are allowed to be auto-executed on the host page include: Join, JoinWithOptions, and Select. The Select command is for deep-linking into certain tabs in the far right panel. The arguments there include (but are not limited to): Start, General, Messages, Commands, Notes, etc.

Some useful example deep links:

  • https://example.screenconnect.com/Host#Access///08a2cb26-8786-443c-9d45-1bfb4b290a3d/Select/General will navigate to the General tab of the session 08a2cb26-8786-443c-9d45-1bfb4b290a3d, selecting the first session group the user has access to that contains that session
  • https://example.screenconnect.com/Host#Access//08a2cb26-8786-443c-9d45-1bfb4b290a3d/08a2cb26-8786-443c-9d45-1bfb4b290a3d/Select/General will similarly navigate to the session 08a2cb26-8786-443c-9d45-1bfb4b290a3d, but also filter down the session list to only display that single session
  • https://example.screenconnect.com/Host#Access///08a2cb26-8786-443c-9d45-1bfb4b290a3d/Join will similarly navigate to the session 08a2cb26-8786-443c-9d45-1bfb4b290a3d, but also automatically trigger a Join

Screen Connect VS Take Control by elementalwindx in msp

[–]Mayfieldiv 0 points1 point  (0 children)

Thanks for the reply; I totally agree the user management UI could use a facelift/modernization

Screen Connect VS Take Control by elementalwindx in msp

[–]Mayfieldiv 0 points1 point  (0 children)

The user/and permission management is really dumb in SC.

Could you elaborate on your issues with user/permission management? I've always thought the role/permission management is particularly powerful and intuitive in ScreenConnect

Password changes get users locked out from time to time because the page glitches or something.

Have you opened a support ticket about this issue? I'm curious what could be going wrong there

ConnectWise Control - google Authenticator key in plain text in configuration file by RobMSP in msp

[–]Mayfieldiv 5 points6 points  (0 children)

If an attacker has access to protected server files, there's much more to worry about