Deploying Mac Clients
You can distribute the client packages for Mac clients manually or automatically.
Getting the Mac Client
To get the Mac client package:
-
In the Deployment tab, under Mac Client, click Download.
-
In the window that opens, select which components to include in the package and click Download.
If more than one version is in the Package repository, select a client to download.
-
Optional: If Remote Access VPN is part of the package, you can configure a VPN site.
-
Select the location to save the package.
The package starts to download.
-
The package, Endpoint_Security_Installer.zip shows in the configured location. This is the file that you distribute to endpoint users.
Manual Deployment
To distribute the Mac client package:
Use a third party distribution method to distribute the Endpoint_Security_Installer.zip file to endpoint users.
To install the Mac client package on client computers:
-
Double-click the ZIP file to expand it.
-
Click the APP file that shows next to the zip file.
The Check Point Endpoint Security Installer opens.
-
Click Install.
-
Enter a Name and Password to authorize the installation.
-
Click OK.
Wait while package installs.
-
A message shows that the package installed successfully or failed for a specified reason. Click Close.
If the installation was successful, the Endpoint Security icon shows in the menu bar.
Automatic Deployment Using Tiny Agent
Tiny Agent is small executable file (less than 2 MB) that automatically downloads and installs the Initial Client.
It is available for:
-
Cloud-deployments with Endpoint Security Management Server
A Security Management Server that manages your Endpoint Security environment. Includes the Endpoint Security policy management and databases. It communicates with endpoint clients to update their components, policies, and protection data. R81.10 Take 45 or R81.00 Take 123 or higher.
-
On-premise deployments with Endpoint Security Management Server
Dedicated Check Point server that runs Check Point software to manage the objects and policies in a Check Point environment within a single management Domain. Synonym: Single-Domain Security Management Server. R81.20 or higher.
To download the Tiny Agent:
-
Click Overview > Download Endpoint (on the top banner).
-
Click Policy > Deployment Policy > Software Deployment, and click Download Endpoint (on the top banner).
The system downloads the EPS_TINY.zip file.
-
Unzip the EPS_TINY.zip file and run the application.
Uninstalling the Client
To uninstall the Endpoint Security client on Mac computers:
-
Open a terminal window.
-
Run:
sudo "/Library/Application Support/Checkpoint/Endpoint Security/uninstall.sh"
If the Endpoint Security client was encrypted, the uninstall script first prompts for a reboot so that the volumes can be decrypted. After decryption, the script continues to uninstall the client.
After you uninstall the Endpoint Security client, the administrator must reset the computer through SmartEndpoint
A Check Point GUI application which connects to the Endpoint Security Management Server, to manage your Endpoint Security environment - to deploy, monitor and configure Endpoint Security clients and policies. on the Security Management Server
Check Point Single-Domain Security Management Server or a Multi-Domain Security Management Server.. See Resetting a Computer.