Application Control 지원



Installation

The guides below explain how to install the product using McAfee ePolicy Orchestrator (McAfee ePO) or standalone methods (third-party product deployments will use the standalone method). A standalone product deployment can be switched to McAfee ePO managed. Review the supported environments documentation before deploying McAfee Application Control or McAfee Change Control:

For details about supported Linux kernels, refer to the supported platforms KB article. The articles below state the minimum product versions needed to support a specific Linux kernel version.

For Linux kernels not listed with official support, there are other methods that can be used to build a custom McAfee Application Control and McAfee Change Control installation package.

Installation guides for Windows

Installation guides for Linux

If you have an issue during installation, see the following documentation:

Windows

Linux

  • Review the log file:
    • If the upgrade is successful, the solidcoreS3_install_<rel><build>.log file is created in the /var /log/mcafee/solidcore directory.
    • If the upgrade fails, the solidcoreS3_install.log file is present in the /tmp directory. For error details, review the most-recent bitrock_installer.log or bitrock_installer_.log file in the /tmp directory.
All Installation Resources

Upgrade

McAfee defines an upgrade as a deployment where a version of McAfee Application Control or McAfee Change Control already exists on the endpoint. Review the supported environments documentation to ensure that the environment is compatible before deployment.

Review the guides below for information about how to install McAfee Application Control and McAfee Change Control and for additional details regarding system requirements.

Windows

Linux

Configuration & Best Practices

The default settings typically require additional configuration and tuning for most environments. To get acquainted with the software, review the documentation below:

Product guides

Best practices guides

These guides cover installing in cloned or imaged environments, deployment strategy, guidelines for default policies, recommendations for fetching inventory, and managing applications.

Command line guides

If you want to go from standalone to managed with McAfee Application Control:

If you are running McAfee Host Intrusion Prevention, McAfee Endpoint Security, or McAfee VirusScan Enterprise with McAfee Application Control, here are some recommendations:

The memory protection that is provided via McAfee Host Intrusion Prevention, McAfee Endpoint Security, and McAfee VirusScan Enterprise is superior to what your installed version of McAfee Application Control provides, so there is no security risk in doing this.

We recommend that McAfee Application Control memory protection features be disabled on all machines that have memory protection technology from another McAfee product. You can safely use McAfee Application Control memory protection on all machines that do not have another product installed that includes memory protection technology.

Please see McAfee Application Control 8.2.0 Release notes for more information on configurable memory protection and SAU in McAfee ePO.

Additional Resources

Managing McAfee Application and McAfee Change Control

To disable McAfee Application Control and McAfee Change Control, you need access to one of the following:

  • The McAfee ePO server with the appropriate permissions
    • Utilize the McAfee Application Control and McAfee Change Control client tasks (SC: Disable, SC: Observe Mode)
  • Local administrator command line access
    • Administrative Windows command line access to the host with knowledge of the McAfee Application Control CLI password
  • How to disable McAfee Application Control and McAfee Change Control in safemode

Any of the above requires a reboot to disable McAfee Application Control and not have the drivers loaded. With current versions of McAfee Application Control and McAfee Change Control, it is not possible to disable the product without rebooting.

Note: Uninstalling the product, requires it to be in Disable mode first.

Learn how to enable McAfee Application Control and McAfee Change Control protection in Windows Safe Mode.

Refer to the following documentation about policy optimization. All require logging in to ServicePortal.

FAQ

Known Issues

Troubleshooting

Features

데이터시트

다운로드

무료 평가판

다운로드

자세한 내용

연락처