Disable Endpoint Standard data stream with RepCLI
search cancel

Disable Endpoint Standard data stream with RepCLI

book

Article ID: 287043

calendar_today

Updated On:

Products

Carbon Black Cloud Endpoint Standard

Issue/Introduction

Disable the Sensor's Endpoint Standard data stream to the backend for troubleshooting purposes

Environment

  • Carbon Black Cloud Console: Current Version
  • Carbon Black Cloud Windows Sensor: 3.5.x.x and higher
  • Microsoft Windows: All supported versions

Resolution

  1. Log into the machine with a user account that matches the AD User or Group SID configured for RepCLI authentication 
  2. Launch a Command Prompt
  3. Change directory to C:\Program Files\Confer 
    cd C:\Program Files\Confer
  4. Enter the command to disable Defense
    repcli defense 0
  5. The following message will print to the command line
    Defense is disabled
  6. Re-enable Defense after data gathering or troubleshooting is completed
    repcli defense 1
  7. The following message will print to the command line
    Defense is enabled

Additional Information

  • Disabling the Endpoint Standard data stream to the backend is not a standard troubleshooting method
  • This method should only be used as advised by the Broadcom Engineering team for gathering data and/or troubleshooting