- A working Active Directory structure with users and groups. For more information, see Create a basic group and add members using Azure Active Directory.
- Account privilege requirement: Global Administrator or an Intune Service Administrator. For more information, see Role-based access control (RBAC) with Microsoft Intune.
- Enrolled Windows devices to Microsoft Intune or Endpoint Manager. For more information, see:
- Troubleshoot MSI Deployment via Microsoft Intune or Endpoint Manager, see:
- Login to the Apex Central portal and go to Administration > Security Agent Download.
- Select the target Operating System.
Selecting Windows 32-bit or 64-bit Operating system will create a 32-bit or 64-bit MSI installation package for Apex One Security Agents.
- Select the following:
- Installation Mode: Full feature set
- Package Type: Web Installer
The Full feature set installs the standard Apex One Security Agent with full feature capabilities. - Click on Download and save the file on your local machine.
- Sign in to the Intune as a Global Administrator or an Intune Service Administrator. Go to Microsoft Azure Portal > Microsoft Intune > Client apps > Apps.
- Click Add, and select Line-of-business app from the Select app type section. Click Select.
- Under Add app section, click on Select app package file, and select the installation file that you have on your local machine.
- Select the file. Microsoft Intune reads the installer and shows the file information. Click OK.
- Under App Information, specify the following information:
- Name: Trend Micro Apex One Security Agent
- Description: Trend Micro Apex One Security Agent installer
- Publisher: Trend Micro, Inc.
- Ignore app version: No
- Show this as a featured app in the Company Portal: Yes
- Keep Scope Tags at default. Click Next.
- In the Assignments tab, click Add group and select the target group for Required. Click Next.
Select the groups for which you want to make this app required. Required apps are installed automatically on enrolled devices. Some platforms may have additional prompts for the end user to acknowledge before app installation begins. Some platforms may have additional prompts for the end user to acknowledge before app installation begins like UAC.
- Click Create in the Review + Create tab. Wait for the MSI package to be uploaded completely.
- The Microsoft Intune administrator can view the deployment status of the Apex One MSI agent once the package is ready.
- Login to Microsoft Endpoint Manager Admin center portal.
- Go to Apps > All apps.
- Click Add, and select Line-of-business app from the Select app type section. Click Select.
- Under Add app section, click on Select app package file, and select the installation file that you have on your local machine.
- Select the file. Microsoft Intune reads the installer and shows the file information. Click OK.
- Under App Information, specify the following information:
- Name: Trend Micro Apex One Security Agent
- Description: Trend Micro Apex One Security Agent installer
- Publisher: Trend Micro, Inc.
- Ignore app version: No
- Show this as a featured app in the Company Portal: Yes
- Keep Scope Tags at default. Click Next.
- In the Assignments tab, click Add group and select the target group for Required. Click Next.
Select the groups for which you want to make this app required. Required apps are installed automatically on enrolled devices. Some platforms may have additional prompts for the end user to acknowledge before app installation begins. Some platforms may have additional prompts for the end user to acknowledge before app installation begins like UAC.
- Click Create in the Review + Create tab.
- Wait for the MSI package to be uploaded completely.
- Once done, the Microsoft Endpoint Manager shows the deployment status of the Apex One MSI agent.