Create VM profiles

Prev Next

You must configure each image file that you convert with a single, unused VM profile. You can convert the same virtual disk file image files multiple times. This enables you to create multiple image files from one virtual disk file.

VM profiles contain the operating system and applications in an image file. This enables you to identify the images that you uploaded to Intelligent Sandbox and then use the appropriate image to dynamically analyze files. You can also specify the number of licenses that you possess for the operating system and the applications. Intelligent Sandbox factors this in when creating concurrent analyzer VMs from the corresponding image file.

  1. Log on to the Intelligent Sandbox web interface, then select PolicyVM ProfileNew.

  2. From the Image drop-down list, select the image, then click Activate.

    Based on your browser settings, the activation window opens in a new tab or window.

    Note

    • Ensure the pop-up blocker for your browser is not blocking the pop-up window. Add the ATD appliance IP under your pop-up blocker exceptions.

    • Ensure that ports 6000 and higher (port 6000–6000 + number of VMs existing on ATD appliance) are open between the ATD Client and ATD Appliance. Check that the client's firewall allows connections on these ports. All firewalls between ATD and the client must allow connections through these ports.

    • When in activation mode, the DNS does not function in the analyzer VM. To enable internet access, the customer must configure static DNS and reset DNS to DHCP prior to shutting down the VM.

  3. Activate Windows on the VM.

    1. Click StartControl PanelWindows ActivationActivate Windows now.

    2. Open Microsoft Word, then click Activate.

    3. On the Microsoft Office Activation Wizard, follow the on-screen prompts.

    4. Shut down the VM, then click Disconnect.

  4. On the Intelligent Sandbox web interface, click Validate.

  5. Close the 5n. flash not exist OK message.

  6. Download Flash Player.

    1. To run the original virtual disk image, use VMware ESXi or Microsoft Hyper-V.

    2. On the running VM, download Flash Player.

    3. Unzip the file.

    4. From the command line, run the following commands, then press Enter.

      • flashplayerX_X_X_win.exe

      • flashplayerX_X_X_win_debug.exe

      • flashplayerX_X_X_win_sa_debug.exe

    5. Close the Flash Player window.

    6. Stop the VM, then copy the virtual disk image to the Intelligent Sandbox Appliance.

    If the validation fails, create a new virtual disk file with the correct settings, then create the analyzer VM.

  7. Click Check Status, then verify that the following validation tests are successful on the Image Validation Log window.

    • FTP connect to <VM IP address> OK

    • FTP login OK

    • FTP file upload OK

    • Telnet login successful

    • OS winxp

    • Multiprocessing OK

    • FTP OK

    • TELNET OK

    • AUTOLOGON OK

    • ADMINISTRATOR OK

    • FIREWALL OK

    • Sigcheck OK

    • Scan Complete

    If the validation tests fail, create a new virtual disk file, then create the analyzer VM.

  8. Create the VM profile.

    1. Enter a name and short description for the VM profile.

    2. Select Default Profile, to set this as your default VM profile.

    3. In VM Login, enter the log on credential for the VM image.

      If you want to log on as an Administrator, leave this field blank.

    4. In Maximum Licenses, enter the number of licenses you have for the operating system that you are using for this VM profile.

    5. Click Save.

  9. On the Information window, click OK.

    • To monitor the VM creation progress, click Dashboard. The VM creation progress appears on the VM Status monitor.

    • To view the VM creation logs, click ManageSystem.