Mcafee Endpoint Security 10.6.0 - Installation Guide (Unmanaged) - Windows
Mcafee Endpoint Security 10.6.0 - Installation Guide (Unmanaged) - Windows
0 -
Installation Guide (Unmanaged) -
Windows
Contents
Installation overview 3
Which type of installation do you need?. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 4
Installation and upgrade workflow. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 4
System requirements 7
Pre-installation tasks 8
Preparing your system. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 8
Preconfiguring the product. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 8
Export custom settings to import. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 9
ESConfigTool command-line options. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 9
Post-installation tasks 15
Verify the installation. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 15
Test malware detection. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 15
Test Real Protect scanning. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 15
Best practices
McAfee preconfigures features with default settings that protect systems in medium-risk environments. These settings ensure
that systems can access important websites and applications until there is time to customize the settings.
When customizing product features, make sure to configure:
• Where and how systems get updates.
• How often and what time of day systems check for updates.
• Access to required websites and applications without interruption.
Note: If you migrate or save settings from legacy products, settings included in a custom package take precedence over legacy
settings. In these cases, the custom settings are applied instead of the legacy settings.
Task
1. Configure your settings, then save them to a file.
2. Using the ESConfigTool command line, export the settings to create <file_name> and save this file to a folder that is not
protected by McAfee.
ESConfigTool.exe /export <file_name> [/module <TP|FW|WC|ESP> ]
The folder containing ESConfigTool is protected, so the export location should be a different, writable location.
Example:
ESConfigTool.exe /export C:\ENS\firewall.policy /module FW
This example exports the Firewall settings to C:\ENS\firewall.policy.
3. Using the SetupEP utility, install Endpoint Security and import <file_name>.
setupEP.exe <options> /import <file_name> /module <FW|TP|WC|ESP>
Example:
setupEP.exe ADDLOCAL="fw,tp,wc" /import C:\ENS\firewall.policy /module FW
This example installs Endpoint Security Firewall, Threat Prevention, Web Control product modules, and the Endpoint Security
Common module, which installs automatically. It also imports settings from the firewall.policy file and applies them to the
Firewall module.
Option Definition
/export <file_path_and_name> Saves settings to a file with the specified name and location.
Example:
/export C:\My Programs\Endpoint\preconfigured.policy
Exports settings to the file preconfigured.policy in the C:
\My Programs\Endpoint folder.
/import <file_path_and_name> Imports the settings from the specified file name.
The file must be encrypted.
Example:
/module TP FW WC ESP
Exports settings for all product modules.
/unlock <password> Sets the password for unlocking the client UI.
Note: It is recommended that you lock the client interface
with a password to avoid unauthorized access and
configuration of policies.
Task
1. Download the McAfee Agent client package from the download site.
2. Unzip the McAfee Agent package and locate the FramePkg_Upd.exe file.
3. Right-click FramePkg_UPD.exe, then select Run as administrator.
Task
1. Download the Endpoint Security .zip file, unzip the contents of the file, then double-click setupEP.exe.
If you purchase the product online, you receive an email with instructions and a URL for downloading the product.
2. On the License Agreement page, click Accept.
3. Resolve any conflicts detected by the wizard.
The wizard tries to remove conflicting virus-detection and firewall software products automatically. If it can't, it prompts you to
remove them manually, then prompts you to restart the system.
◦ If you restart the system immediately, installation resumes afterward.
◦ If you restart the system later, run the installation wizard again at your earliest convenience.
See KB85522 for a list of the software products removed automatically.
4. On the Install Options page, select each module to install.
Install with the default settings, or select options to customize your installation. The Endpoint Security Platform (Common
module) installs automatically with the first module you install.
5. (Upgrade only) Select whether to save your settings.
6. Click Install.
A dialog box shows the progress of the installation and notifies you when it is complete. You can cancel the installation at any
time, if needed.
7. Click Finish to close the wizard.
Tip: Best practice: Restart the system after installing this release of the product.
8. (Upgrade only) If you saved your custom settings, verify that they were saved.
Task
1. Copy the product files to the system where you want to install it.
Option Definition
/log"install_log_path" or /l"install_log_path" • Specifies where to save the installation log files for tracking
/l*v"install_log_path" installation events.
The installation wizard creates an Endpoint folder at the
specified location and saves the log files to this folder.
Example:
/l"D:\Log Files"
Installs the product log files under D:\Log Files.
By default, log files are saved in the Windows System TEMP
folder C:\windows\Temp\McAfeeLogs.
• *v — Specifies verbose (more descriptive) logging entries.
/qn or /quiet Specifies how the users can interact with the installation
/qb! or /passive wizard:
/qb • qn — Hide all installation notifications (silent mode). Users
have no interaction.
• qb! — Show only a progress bar without a Cancel button.
Users cannot cancel the installation while it is in progress
(passive mode).
• qb — Show only a progress bar with a Cancel button. Users
can cancel the installation while it is in progress, if needed.
Example:
/import mysettings /module TP FW
Imports settings from the file called mysettings to Threat
Prevention and Firewall.
/policyname <name> Assigns the specified settings to systems where the product is
installed.
/unlock <password> Sets the password for unlocking the client UI.
Task
1. Open the Windows Control Panel and verify that the name of each product you selected to install appears and that version
10.6 is installed.
◦ McAfee Endpoint Security Firewall
◦ McAfee Endpoint Security Threat Prevention
◦ McAfee Endpoint Security Web Control
◦ McAfee Endpoint Security Platform
◦ McAfee Endpoint Security Adaptive Threat Protection
2. Open the installation log file and make sure that no errors or failure messages appear.
By default, the installation wizard installs the installation log files in the user Temp folder as %Temp%\McAfeeLogs (for example,
C:\Users\username\AppData\Local\Temp\McAfeeLogs).
3. Open the Endpoint Security Client, then click Update Now to make sure that the system is up to date.
If your system is up to date, the page displays No Updates Available and the date and time of the last update.
4. (Upgrade only) If you upgraded legacy products with saved settings, check the client Settings page for each product module to
verify that legacy settings were saved.
Task
1. Download the EICAR file from this location:
http://www.eicar.org/download/eicar.com
If installed properly, Threat Prevention interrupts the download and displays a threat detection dialog box.
2. Click OK.
Results
If not installed properly, Threat Prevention does not detect the virus or interrupt the download process. In this case, use
Windows Explorer to delete the EICAR test file from the client computer, then reinstall the product and test the new installation.
Task
1. On the client system, download the compressed test file from this location: KB88828.
Results
If Real Protect does not detect the file and prevent it from running, check the Adaptive Threat Protection Activity log file and
troubleshoot the problem, then run the test again.
Task
1. On the system, open the Windows Control Panel, then go to the Uninstall Programs screen.
2. In the list of programs, select each product module in this order, then click Uninstall.
◦ McAfee Endpoint Security Adaptive Threat Protection
◦ McAfee Endpoint Security Firewall
◦ McAfee Endpoint Security Threat Prevention
◦ McAfee Endpoint Security Web Control
Endpoint Security Platform (Common module) is uninstalled automatically with the last product module. You can't uninstall it
while other product modules are installed.
3. If prompted, enter a password for each module.
By default, no password is required.
4. Wait for the wizard to report that it has uninstalled the support components. If you do not see a notification, check the Event
Log to verify that the Common module was removed successfully.
5. If no other McAfee products are installed, select McAfee Agent in the Uninstall Programs screen of the Windows Control Panel,
then click Uninstall.
McAfee websites
• Visit the ServicePortal to find the complete library of Technical Articles about McAfee products. Go to http://
support.mcafee.com, click Knowledge Center, then select Product Documentation from the Knowledge Base list.
• See the online McAfee community for information about installing, migrating, and integrating Endpoint Security with other
McAfee security products. Also provides links to related documentation.
Conflicting McAfee Error code: 16002 Uninstall the conflicting products, then try
product(s) found. Displays temporarily in Windows Defender installing again.
Security Center after a restart.
Administrator rights Error code: 16002 Log on as an administrator, then launch the
required. You must have administrator rights to run installation wizard.
the installation wizard.
Invalid Package. Error code: 16003 Download a valid package file, then try
Invalid package found. Please verify that installing the product again.
you have a valid package.
Removal failed. Error code: 16007 Remove these products manually before
The installation wizard couldn't remove a installing Endpoint Security.
previous version of this product (such as a Contact Technical Support if the issue
beta version) or a legacy product (such as persists.
VirusScan Enterprise or SiteAdvisor
Enterprise) from the system.
Restart required. Error code: 16015 Restart the system to continue with the
The installation wizard requires a system installation.
restart to continue the installation.
Restart required. Error code: 16016 Restart the system to complete the
The installation wizard requires a system installation.
restart to complete the installation.
Restart pending. Error code: 16017 Restart the system to continue with the
A system restart from a previous installation.
installation or removal operation is
pending.
Incompatible software Error code: 16018 Remove these products manually before
removal failed. The installation wizard tried and failed to installing Endpoint Security.
remove one or more incompatible software
products it detected on the system.
Installation failed. Error code: 16019 Run the installation wizard again at a later
The installation wizard was interrupted time.
before it finished installing Endpoint
Security. It made no changes to your
system.
Installation canceled. Error code: 16020 Run the installation wizard again.
The user canceled the installation before it
completed. The installation wizard made no
changes to the user's system.
Migration failed. Error code: 16025 Run the installation wizard again at a later
time.
Your system is not Error code: 16029, 16030, 16031 To protect your system against threats,
protected. Your previous The installation wizard was interrupted contact Technical Support as soon as
security software was before Endpoint Security was installed. possible.
uninstalled, but the Your previous software was uninstalled, but
installer was interrupted no other changes were made to your
before McAfee Endpoint system.
Security was installed.
Call McAfee support for
assistance as soon as
possible.
Your system is not fully Error code: 16032 To fully protect your system against threats,
protected. The installer One or more Endpoint Security product call Technical Support as soon as possible.
could not install [product modules failed to install. Your previous
name]. Call McAfee support software was uninstalled.
for assistance.
Policy import failed. Error code: 16502 Check that you selected the proper data to
The installation wizard installed Endpoint import. Contact Technical Support if the
Security successfully, but couldn't import issue persists.
the specified policy.
Policy import failed. Error code: 17001 Check that you selected the proper data to
The installation wizard couldn't import the import. Contact Technical Support if the
specified policy. issue persists.
Installation failed and Error code: 17002 Check the installation logs on the system
then rollback failed. The installation wizard couldn't install and contact Technical Support for
Endpoint Security or roll back the changes it assistance.
made to the user's system.
Installation canceled and Error code: 17003 Check the installation logs on the system
then rollback failed. The installation was canceled before it and contact Technical Support for
completed. The installation wizard couldn't assistance.
roll back the changes it made to the user's
system.
Endpoint Security Platform The system tray icon also is gray with a red See KB88029 for information about
is not running! exclamation point. troubleshooting this error.
An unknown third-party injection into
McAfee code might have been detected.
The installation wizard couldn't install Endpoint Security. It made no changes to the user's system.
Installation See
failed. MsiExec.ex
and
InstMsi.exe
Error
Messages
for
description
of
specific
error
codes.
If
the
issue
persists,
contact
Technical
Support.
After restarting a system, this message appears in the Virus & threat protection page in Windows Defender Security Center.
Threat Ignore
Threat
servicePrevention tries to send the Endpoint Security security status to the Security Center service. This fails because the this
Security
has Center service is not in a running state immediately after a restart. After about two minutes, when the Security message
Center service is in a running state, Threat Prevention successfully sends the security status and the message no longer
stopped. when
appears.
Restart displayed
it temporarily
now. after
a
restart.
The
security
status
is
automatica
corrected
about
two
minutes
after
the
restart.
2 Time out
3 Unknown failure
8 Process terminated
9 No network detected
McAfee and the McAfee logo are trademarks or registered trademarks of McAfee, LLC or its subsidiaries in the US and other countries. Other
marks and brands may be claimed as the property of others.