Agent Deployment

Remote deployment of the ERA Agent is performed from the Admin section. You can use the following written instructions in our Knowledgebase article. Alternatively, you can watch our Knowledgebase instructional video:

icon_details_hoverNOTE: We recommend you to first test mass Agent deployment in your environment. Once it's working fine, then you can begin with actual deployment on users client computers. Also, before you start testing mass deployment, change Agent connection interval.

Click Server Task > Agent Deployment > New... to start configuring your new task.


icon_section Basic

Enter basic information about the task, such as the Name, Description (optional) and Task Type. The Task Type defines the settings and behavior of the task. Select the check box next to Run task immediately after finish to have the task run automatically after you click Finish.


icon_section Settings

Automatic resolution of suitable Agent - If you have multiple operating systems (Windows, Linux, Mac OS) in your network, select this option and this task will automatically find the appropriate server-compatible Agent installation package for each system.
Targets - Click this to select the clients that will be the recipients of this task.
Username/Password - The username and the password for the user with sufficient rights to perform a remote installation of the agent.
Server hostname (optional) - You can enter a server hostname if it is different on the client side and the server side.
Peer certificate/ERA Certificate - This is the security certificate and certification authority for the agent installation. You can select the default certificate and certification authority, or use custom certificates. For more information, see the Certificates chapter.
Custom certificate - If you use a custom certificate for authentication, navigate to the certificate and select it when installing the Agent.
Certificate passphrase - Password for the certificate, either the password you entered during Server installation (in the step where you created a certification authority) or the password for your custom certificate.


icon_details_hoverNOTE: ERA Server can select the appropriate Agent installation package for operating systems automatically. To choose a package manually, deselect Automatic resolution of suitable Agent and then choose the package you want to use from the list of available Agents in ERA repository.

icon_section Target

The Target window allows you to specify the clients (individual computers or groups) that are the recipients of this task. Click Add Targets to display all Static and Dynamic Groups and their members.


Select clients, click OK and proceed to the Trigger section.

icon_section Trigger - Determines what event triggers the task.

As Soon As Possible - Executes the task as soon as the client connects to ESET Remote Administrator Server and receives the task. If the task cannot be performed until the Expiration date, the task will be removed from the queue - the task will not be deleted, but it will not be executed.
Scheduled Trigger - Executes the task at a selected time. You can schedule this task once, repeatedly or using a CRON Expression.
Event Log Trigger - Executes the task based on events specified here. This trigger is invoked when a certain event occurs in logs. Define the log type, logical operator and filtering criteria that will trigger the task.
Joined Dynamic Group Trigger - This trigger executes the task when a client joins the Dynamic Group selected in the target option. If a Static Group or individual client(s) have been selected, this option will not be available.

icon_details_hoverNOTE: For more information about triggers, proceed to the Triggers chapter.

icon_section Advanced settings - Throttling - Throttling is used to restrict a task from being executed if a task is triggered by a frequently occurring event, for example the Event Log Trigger or the Joined Dynamic Group Trigger (see above). For more information, see the Throttling chapter.

Click Finish when you have defined the recipients of this task and the triggers that execute the task.

icon_section Summary

All configured options are displayed here. Review the settings and click Finish if they are ok. The task is now created and ready to be used.

ERA Agent deployment can be performed in a few different ways. You can deploy the Agent:

Remotely using GPO and SCCM - we recommend you this method for mass deployment of the ERA Agent on client computers (alternatively, you can use Server Task to deploy ERA Agent)

Locally - using an Agent installation package or Agent Live Installers, for example, if problems occur during remote deployment

Local deployment can be performed in three ways:

Agent Live Installers - using a generated script from within the ERA Web Console, you can distribute Agent Live Installers via email or run them from removable media (USB flash drive, etc.)
Server assisted installation - using the Agent installation package downloads certificates from the ERA Server automatically (recommended local deployment method)
Offline installation - using the Agent installation package, you must manually export certificates and use them in this deployment method

The Remote Agent deployment server task can be used for mass distribution of the Agent to client computers. It is the most convenient distribution method since it can be performed from Web Console without the need to deploy the Agent to each computer manually.

ERA Agent is very important because ESET security solutions running on client computers communicate with ERA Server exclusively through the Agent.

icon_details_hoverNOTE: Should you experience problems when deploying the ERA Agent remotely (the Server task Agent deployment fails) see the Troubleshooting guide.