ESET Online Help

Search English
Select the category
Select the topic

Create Agent script installer - Windows/Linux/macOS

This type of Agent deployment is useful when the remote and local deployment options do not suit you. You can distribute the Agent script installer via email and let the user deploy it. You can also run the Agent script installer from removable media (a USB flash drive, for example).


The client machine needs to have an internet connection to download the Agent installation package and to connect to ESET PROTECT On-Prem.

You can create Agent script installer for Windows/macOS/Linux in several ways:

Quick Links > Deploy Agent

Installers > Create Installer > Windows/macOS/Linux > Deploy Agent first (Agent script installer)



1.Select the Participate in product improvement program check box to send anonymous telemetry data and crash report to ESET (OS version and type, ESET product version and other product-specific information).

2.Parent group - Select the Parent group where the ESET PROTECT Web Console will place the computer after an Agent installation.

You can select an existing static group or create a new one to which the device will be assigned after the installer is deployed.

Selecting a Parent group will add all policies applied to the group to the installer.

Selecting the Parent Group does not affect the installer location. After you create the installer, it is placed in the current user's Access Group. Access Group sets the object's Static Group and access to the object based on the user's access rights.

The parent group is mandatory if you use ESET Business Account with sites or ESET MSP Administrator and optional if you use ESET Business Account without sites.

3.Server hostname (optional) - Type the ESET PROTECT Server hostname or IP address. If necessary, specify the Port number (default is 2222).


The Server hostname field does not support special characters—for example, letters with diacritics.

4.Peer certificate:

ESET PROTECT certificate - A Peer Certificate for Agent installation and ESET PROTECT Certification Authority are selected automatically. To use a different certificate, click the ESET PROTECT Certificate Description to select from a drop-down menu of available certificates.

Custom certificate - If you use a custom certificate for authentication, click Custom Certificate > Select , upload the .pfx certificate and select it when installing the Agent. For more information, see Certificates.

Certificate passphrase - Type the certificate passphrase if needed - if you have specified a passphrase during ESET PROTECT Server installation (in the step where you created a Certification Authority) or you use a custom certificate with a passphrase. Otherwise, leave the Certificate passphrase field blank.


The certificate passphrase must not contain the following characters: " \ These characters cause a critical error during the initialization of the Agent.

5.arrow_down_business Customize more settings

6.Click Save & Download.

7.Extract the downloaded archive file on the client computer where you want to deploy ESET Management Agent.

8.Run PROTECTAgentInstaller.bat (Windows) or script (Linux or macOS) to install the Agent. Follow the detailed Agent installation instructions:

Agent deployment - Windows

Agent deployment - Linux

Agent deployment - macOS


ESET PROTECT On-Prem supports the automatic upgrade of ESET Management Agents on managed computers.


arrow_down_business Deployment from a custom remote location


arrow_down_business Deployment from a local shared folder