Views:

To deploy the Secure Access Module from Microsoft Intune:

  1. In the TrendAI Vision One™ console, go to Zero Trust Secure Access > Secure Access Configuration > Secure Access Module.
  2. Click Download agent installer.
  3. Specify the agent installer package settings.
    • Select Windows (32-bit, 64-bit).
    • Select the proper the OS architecture.
    • Click the Download installer.

    Download Agent Installer

  4. On your local machine, unzip the agent installer package to a folder that is easy to find.
  5. Download the Microsoft Win32 Content Prep Tool, and unzip it.
  6. Run IntuneWinAppUtil.exe and specify the information when prompted.
    Prompt Setting
    Source folder Specify the directory where the agent installer is located.

    The following example uses D:\TMEndpointBasecampZTSAM-x86_64-active.

    Setup file Type the full file path with EndpointBasecamp.exe.
    Output folder Specify the destination for the created package.

    The following example uses the same location as the unzipped agent installer package.

    Specify catalog folder Type N

    IntuneWinAppUtil

    The tool creates a deployment package named EndpointBasecamp.intunewin.

  7. In Microsoft Intune, go to Apps > All apps and click Add.
    The Select app type window appears.
  8. Select Windows app (Win32).
    The Add App window appears.
  9. On the App information tab, click Select app package file.
  10. In the App package file screen, click the folder icon to locate the EndpointBasecamp.intunewin package.
  11. Click OK.
  12. Specify a unique Name for the app.
    TrendAI™ recommends using a name which includes the agent information, such as TrendAI Vision One Endpoint Sensor Agent.
  13. Specify a Description to easily identify the purpose of the app.
  14. For Publisher, type TrendAI™.
  15. Click Next.
  16. Configure the Program tab and click Next.
    • Install command: Type EndpointBasecamp.exe
    • Uninstall command: Type EndpointBasecamp.exe /qn
  17. Configure the Requirements tab and click Next.
  18. Configure the Detection rules tab.
  19. For Rules format, select Manually configure detection rules.
  20. Click Add to add new detection rules.
    Rule Type Settings
    File
    1. Path: %ProgramFiles%\Trend Micro\ZTSA
    2. File or folder: ZTSAWindows.exe
    3. Detection method: Select File or folder exists.
    4. Associated with a 32-bit app on 64-bit clients: Select No.
  21. Click Next, then click Next again to go to the Scope tags tab.
  22. Click Select scope tags to assign a scope tag for the agent installer.
  23. Click Next to go to the Assignments tab.
  24. Add the groups or users you wish to deploy the agent installer to, then click Next.
  25. Review the settings and then click Create.