Deployment using GPO or SCCM
Apart from installing ESET Endpoint Antivirus directly on a client workstation, you can also install using management tools such as Group Policy Object (GPO), Software Center Configuration Manager (SCCM), Symantec Altiris or Puppet.
Managed (recommended)
For managed computers, we first install ESET Management Agent, then deploy ESET Endpoint Antivirus via ESET PROTECT. ESET PROTECT must be installed in your network.
- Download the standalone installer for ESET Management Agent.
- Prepare the GPO/SCCM remote deployment script.
- Deploy ESET Management Agent using either GPO or SCCM.
- Ensure that the client computers has been added to ESET PROTECT.
- Deploy and activate ESET Endpoint Antivirus to your client computers.
The following ESET Knowledgebase article may only be available in English: |
Unmanaged
For unmanaged computers, you can deploy ESET Endpoint Antivirus directly to client workstations. This is not recommended because you will not be able to monitor and enforce policies for all your ESET endpoint products on workstations.
By default, ESET Endpoint Antivirus is not activated after installation and therefore not functional.
Option 1 (Software installation)
- Download the .msi installer for ESET Endpoint Antivirus.
- Create an .mst transform package from the .msi file (for example by using the Orca .msi editor) to include the product activation property (see ACTIVATION_DATA in Command-line installation).
Show steps for creating .mst in Orca
- Optional: To import your customized ESET Endpoint Antivirus .xml configuration file (for example, to enable RMM or configure proxy server settings), put the cfg.xml file in the same location as the .msi installer.
- Deploy the .msi installer with the .mst file remotely using one of the method - GPO (via Software installation) or SCCM.
Option 2 (using a scheduled task)
- Download the .msi installer for ESET Endpoint Antivirus.
- Prepare a Command-line installation script to include the product activation property (see ACTIVATION_DATA).
- Make the .msi installer and the .cmd script accessible in the network for all workstations.
- Optional: To import your customized ESET Endpoint Antivirus .xml configuration file (for example, to enable RMM or configure proxy server settings), put the cfg.xml file in the same location as the .msi installer.
- Apply a prepared command-line installation script using either GPO or SCCM.
- For GPO, use Group Policy Preferences > Group Policy Schedule Tasks > Immediate task
If you do not want to use ESET PROTECT to remotely manage your ESET endpoint products, ESET Endpoint Antivirus contains the ESET plugin for RMM which allows you to supervise and control software systems using a locally installed agent that can be accessed by a management service provider. |