Skip to main content

Endpoint Agent installation SOP

The installation SOP is the operator runbook for rolling the Endpoint Agent out to macOS and Windows devices. Work through the steps in order: each one gates the next. At the top of each step, pick your platform and your tenant environment, and the commands and hostnames on the page change to match.

What each step covers​

StepUse it to
PrerequisitesCheck the tenant environment, supported OS versions, MDM admin access, the network allow-list and the install bundle.
Prerequisites validationConfirm every QuilrAI host is reachable on TCP 443 and bypassed from SSL inspection, with the connectivity check scripts.
Manual installation and validationInstall on one device from the command line, then prove it works with a live interception test.
Installing using MDMRoll out to the fleet with Microsoft Intune, Jamf Pro, Kandji or ManageEngine Endpoint Central.
Enable PAC routingPoint devices at the PAC file and confirm traffic takes the route.
Verify MDM installConfirm the fleet rollout on the devices and in the console.
TroubleshootingTriage failures, find the logs and collect the diagnostic bundle for QuilrAI support.
note

Always deploy trust before traffic: the CA certificates first, then the configuration profiles, then the agent package. Confirm tenant-specific values (tenant ID, environment hosts, MSI product code) with QuilrAI support before you roll out.

  • Requirements: OS versions, privileges, network destinations and platform approvals.
  • Deployment and status: the silent install reference (tenant binding, detection rules, uninstall) and coverage tracking in Users › Endpoint deployment.
  • Agent kill switch: stop the agent on one device or across the tenant.