Download the relevant Policy.zip file to the endpoint.
Example: Production-LowEnforcement.zip
Extract the contents to a temporary location.
Example: C:\Temp\Production-LowEnforcement\
.Execute the parityhostagent.msi installation file.
Note: On Windows XP / Server 2003 the parityhostagent_sha1.msi file must be used. XP and 2003 do not support the SHA256 signed version. This was not included by default in the .zip policy package until server 8.9+. It can be manually obtained from C:\Program Files (x86)\Bit9\Parity Server\hostpkg.
Manually:
Gather "ParityHostAgent.msi" and "configlist.xml" files from the App Control servers hostpkg folder
The default location is C:\Program Files (x86)\Bit9\Parity Server\hostpkg)
The unencrypted version of configlist.xml is required. Using configlist.xml.egk or configlist.xml.enc will result in a failed install attempt.
Gather the necessary detail:
B9_SERVER_IP: This needs to match the "Server Address" listed in the console under System Configuration (gear icon) > general tab
B9_SERVER_PORT: This must match the "Server Port" mentioned in System Configuration > general tab
B9_SERVER_ID: This is found by navigating to https://yourconsole/support.php > Advanced Configuration > Server ID field
B9_CONFIG: This will be the path to the configlist.xml that you copied
B9_HOSTGROUP: This value will be the name of the policy you want to assign it to after install, policy name should be in quotes.
Optional (B9_REGISTRATION_CODE) Confirm if Registration Codes have been enabled. If so, this must have a valid code specified.
Navigate to https://ServerAddress/hostpkg and download the relevant macOS install package.
Open a Terminal window and change directory to the location where the installer was downloaded (by default, the user-specific Download directory - cd ~/Downloads
Double-click on the agent installation file you downloaded (policyname-mac.dmg). A standard package installation dialog begins.
Respond to the installation dialog prompts, and when the dialog indicates the installation was successful, click Close.
The Mac firewall may detect the agent as a new application and block access to the network. Instruct users to permanently allow incoming connections to b9daemon.
Linux
Navigate to https://ServerAddress/hostpkg and download the relevant Linux install package.
Extract the Agent installer:
tar -xvzf <policyname>-Red Hat.tgz
Note: If the Policy name contains characters not accepted in command arguments, such as spaces or parentheses, escape each character with a backslash.
Change to the directory matching the download tarball name:
cd <policyname>-Red Hat
Note: App Control Server versions 8.9.0 and lower will require the attached bit9cs_sha2.asc in the same folder as b9install.sh.
Validate the b9install script against the Public Key and Detached Signature with the following commands: