I was reading 6.3.3 in the cfengine3 reference manual tonight. I am not
sure I fully understand how it works.

Is it reporting that the executing host hasn't talked with the
policyserver in x days? Is it intended to be executed on the
policyserver and report that host x hasn't checked in for so many days?
If the latter, I don't understand how to include the tardy clients
hostname in the report. Log entries only telling me that one out of all
my hosts hasn't checked in is only marginally useful.

It would be nice to know from both ends how long it has been since a
host had a successful policy update. There might be situations where
fencing off a host no longer getting policy updates would be beneficial
(removing from pools, and fire-walling off services on the host that may
be providing suspect content come to mind).

-- 
Nick Anderson <n...@cmdln.org>
_______________________________________________
Help-cfengine mailing list
Help-cfengine@cfengine.org
https://cfengine.org/mailman/listinfo/help-cfengine

Reply via email to