Requirements
- Internet.
- Agent / Installer Package
To ensure that sensors function as expected, don’t shut down or reboot the host while the sensor is being installed. Doing so can cause the host to repeatedly crash on boot or omit the uninstall option.
Step 1 - Download the installer package (agent/sensor)
Login to your ArmourZero console. Go to Manage > Subscriptions. Find your services. Scroll to the right. Click on the three dots button. Click 'View details'.
Step 2 - Open the downloaded installer (agent/sensor)
Open the downloaded file and run the installer for your platform. When prompted, accept the end-user license agreement and click “INSTALL”.
Step 3: Confirm that the installer (sensor/agent) is running.
Unlike legacy endpoint security products, Endpoint Protection with EDR and Threat Intelligence powered by Crowdstrike does not have a user interface on the endpoint. There are no icons in the Windows System Tray or on any status or menu bars.
From the windows command prompt, run the following command to ensure that “STATE” is “RUNNING”: $ sc query csagent
Once you run the command, you will see a window pop-up to allow the Endpoint Protection with EDR and Threat Intelligence powered by Crowdstrike to make changes to the system. Select 'Yes' to allow the agent/ sensor to complete the installation.
Once the installer install is completes, you can check to validate that the installer deployed by using the SC query csagent command at the command prompt. You will notice that the agent state shows a stopped state. This is expected due to the NO_START=1 flag used in the sensor install command. This allows a new unique AID to be generated per WorkSpace that is created from the image.
sc query csagent
Step 3: Check the 'Connected Devices'
Lastly, check if all devices on your server is listed in your ArmourZero console. The page can be found on the same page where you downloaded the sensor. If successful, you will see all devices that are connected to your server listed here.
Alternatively, you also can navigate to Manage > Devices.
Related reading :