How to Restrict the Execution of ITOMRemoteExecutor.exe

How to Restrict the Execution of ITOMRemoteExecutor.exe

Overview

ITOMRemoteExecutor.exe is a legitimate executable used by Applications Manager during discovery operations. It is responsible for performing certain remote discovery tasks and can be trusted as part of the product’s normal functionality.
Specifically, it is used for:
  1. Connecting to the remote Windows server
  2. Executing discovery-related commands
  3. Fetching the output of the netstat command (and other required system commands) from the remote server

Execution Scenarios for ITOMRemoteExecutor.exe

The executable runs when any of the following actions are performed:
  1. Running Network Discovery
  2. Adding or updating a Windows monitor with “Perform Application Discovery” enabled
  3. ADDM Promotion
However, if your environment requires preventing its execution, you can follow the guidance below.

Preventing ITOMRemoteExecutor.exe Execution

To stop `ITOMRemoteExecutor.exe` from running, ensure the following:
      ❌ Do not run Network Discovery
      ❌ Disable “Perform Application Discovery” when adding or updating Windows monitors
      ❌ Disable ADDM Promotion and restart Applications Manager

Steps to Disable ADDM Promotion

Follow these steps carefully:
  1. Navigate to the following path:
       <Applications Manager Home>\working\conf\itomdiscovery\AutomaticDiscovery.properties
  2. Locate the parameter and update the value as follows:
    1. ADDM_PROMOTION=disable
  3. Save the file.
  4. Restart Applications Manager for the changes to take effect.

Important Notes

  1. Disabling ADDM Promotion will stop automatic promotion of discovered applications.
  2. Ensure this change aligns with your monitoring and discovery requirements before applying it.
  3. Restart of Applications Manager is mandatory after updating the property file.

                    New to ADSelfService Plus?