FortiDLP
FortiDLP is a cloud-native endpoint DLP and Insider Risk Solution which is aimed at monitoring and Preventing Data Theft on the endpoint, across Windows, macOS and Linux.
Anthony_E
Community Manager
Community Manager
Article Id 354164
Description This article discusses Bulk Windows Agent Deployment: Getting Started.
Scope FortiDLP.
Solution

Fortinet provides an MSI installation package for installing the Reveal Agent on Windows and Windows Server-based devices.

 

Install the Reveal Agent on each device to monitor. In addition to installing the Reveal Agent, enroll it to enable communication with the Reveal Platform. This enrollment process requires instructing the running RevealAgent to initially contact the Reveal Platform using a piece of trusted information, i.e. an enrollment bundle or enrollment code.

 

The mechanism to install the Reveal Agent on an individual machine is to invoke the Windows Installer. This can be done through double-clicking the MSI file directly, or by invoking msiexec.exe in a variety of different ways.

There exist a variety of different bulk provisioning and fleet management tools for Windows-based devices, each of which should be able to take any MSI package and deploy it to target machines. Fortinet has currently tested the following fleet management solutions:

  • Windows Group Policy Objects - Software Push (GPO push).
  • Microsoft System Center Configuration Manager (SCCM).
  • PDQ Deploy, free edition.
  • ManageEngine Endpoint Central.

 

The following guides are intended to provide an overview of how to deploy using these systems. They should be read-only in conjunction with the official documentation from the deployment tool provider(s). The absence of a deployment tool from this list does not preclude use with the Reveal Agent installer, but it is recommended to contact Fortinet Support if planning to use it.

Contributors