What is a one sentence summary of your feature request?
I need to be able to install the threat prevention agent to a DC using a script or Tanium deployment.
Please describe your idea in detail. What is your problem, why do you feel this idea is the best solution, etc.
I need to be able to install the threat prevention agent to a DC using a script or Tanium deployment. Currently, this doesn’t work because a new install key is required each time. We are trying to avoid the need to log in to consoles when promoting a DC, so that the process can be fully automated.
How do you currently solve the challenges you have by not having this feature?
Every time I add/remove/replace a DC, I have to go into the GUI console.
Hi Patrick,
Netwrix Threat Prevention offers two features that can help you achieve your goal.
1. Configure Auto Deploy Window | Netwrix Product Documentation
Using agents already deployed in your environment, Threat Prevention can detect newly promoted domain controllers and automatically install an agent on them. This is our recommended approach, since it doesn’t require any manual intervention on your part.
2. Agent Silent Install Option | Netwrix Product Documentation
Using our documented command-line options, including a silent installer flag, you can use third-party tools to deploy agents. However, this still requires you to access the Threat Prevention console to generate an enrollment secret, which is valid for one hour. This means you’d still need to take some manual action to deploy the agent each time a new domain controller is promoted.
1 Like