Installing Trellix Agent 5.8.x on Windows using a third-party tool

Prev Next

You can use a third-party deployment tool like Microsoft System Center Configuration Manager, IBM Tivoli, Novell Zenworks, BMC Client Automation or simple logon scripts to install Trellix Agent 5.8.x on Windows systems.

  1. Create Trellix Agent installation package.

    1. On the ePO - On-prem console, select Menu Systems System Tree, then select New Systems.

    2. Select Create and download agent installation package.

    3. Select the appropriate Agent version for Windows from the list.

    4. Deselect Embed Credentials in Package checkbox to receive the default package.

      Note

      You can specify the embedded credentials only for the Agent Embedded package. For more information about using embedded credentials in a Trellix Agent installer package, see KB65538.

    5. Assign the appropriate Agent Handler to communicate with ePO - On-prem server for deployment:

      • All Agent Handlers: All Agent Handlers can communicate with ePO - On-prem server.

      • Select Agent Handler: Select a specific Agent Handler from the list that you prefer to communicate with ePO - On-prem server.

        Additionally, you can select one more Agent Handler from Secondary Agent Handler if the agents are unable to communicate with the primary Agent Handler.

    6. Click OK.

      The installation package file FramePkg.exe is created.

    7. Right-click and save the file.

  2. Embed credentials on systems not belonging to a domain by changing the local security policy on the target systems.

    1. Log on to the target system with local administrator rights.

    2. On the command line interface, run SECPOL.MSC to open the Local Security Policy dialog.

    3. Select Security SettingsLocal PoliciesUser Rights Assignment.

    4. In the Policy column of the details pane, double-click Impersonate a client after authentication to open the Local Security Setting dialog.

    5. Click Add User or Group to open the Select Users or Groups dialog.

    6. Select the user or user group, then click Add.

  3. Use a third-party tool to distribute the installation package file FramePkg.exe to endpoint users.

    Note

    By default, User Access Control is enabled on Windows Vista operating systems and later. You must disable User Access Control to allow endpoint user to deploy Trellix Agent manually on client systems.