Loading...

Knowledge Center


How to manage a manually deployed Solidifier installation with ePolicy Orchestrator
Technical Articles ID:   KB69408
Last Modified:  4/9/2017
Rated:


Environment

McAfee Application Control (MAC) 8.x, 7.x, 6.2.x, 6.1.x, 6.0.x, 5.1.x
McAfee Change Control (MCC) 8.x, 7.x, 6.2.x, 6.1.x, 6.0.x, 5.1.x

Summary

Perform the steps in this article to connect the Solidcore Agent to ePolicy Orchestrator (ePO) when deployed using third-party tools.

NOTE: The following steps are intended for a new Solidcore Agent installation. These steps are not supported for a Solidcore Agent upgrade.

Solution

Solidcore Agent version 5.1.x:

CAUTION: This article contains information about opening or modifying the registry.
  • The following information is intended for System Administrators. Registry modifications are irreversible and could cause system failure if done incorrectly.
  • Before proceeding, Technical Support strongly recommends that you back up your registry and understand the restore process. For more information, see: http://support.microsoft.com/kb/256986.
  • Do not run a REG file that is not confirmed to be a genuine registry import file.

Prerequisite:
Ensure the Solidcore Agent is in update mode when running this procedure. After you have successfully completed it, exit Solidcore Agent from update mode.
  1. Deploy McAfee Agent and modify the registry for ePO management:
    1. Deploy McAfee Agent to the system that hosts Solidifier.
    2. Use Remote Desktop to access the Solidifier system and log in with an Administrator account.
    3. Click Start, Run, type regedit, and click OK.
    4. Navigate to the following registry key:

      [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\swin\Parameters]
       
    5. Right-click Parameters, and select NewDWORD value.
    6. Name the new value IsSystemControllerEPO.
    7. Right-click the IsSystemControllerEPO value, and select Modify.
    8. Click Decimal, and change the Value data to 1.
    9. Click OK.
       
  2. Copy scormapl.dll to the C:\Program Files\McAfee\Solidcore folder:
    1. Click StartProgramsMcAfeeSolidifierMcAfee Solidifier Command Line.
    2. Run sadmin lockdown.
    3. Navigate to the folder that contains SOLIDCOR<version_number>-<build_number>_WIN.zip.
    4. Extract scormapl_x86.dll to the C:\Program Files\McAfee\Solidcore folder.
    5. Rename scormapl_x86.dll to scormapl.dll
       
  3. Modify the Solidifier Application Plugin registry key:
    1. Click Start, Run, type regedit, and click OK.
    2. Navigate to the following registry key:

      [HKEY_LOCAL_MACHINE\SOFTWARE\Network Associates\ePolicy Orchestrator\Application Plugins\SOLIDCOR5000_WIN]
       
    3. Add the appropriate string values as shown below:
       
      String name Value data
      Version <version_number>.<build_number>
      Plugin Path C:\Program Files\McAfee\Solidcore\scormapl.dll
      Software ID SOLIDCOR5000_WIN
      Product Name McAfee Solidifier
      Language 0000

       
  4. For 64-bit systems, use link_na_reg.exe to link the 64-bit and 32-bit versions of the ePO registry entries:
    1. Navigate to the directory that contains SOLIDCOR<version_number>-<build_number>_WIN.zip.
    2. Extract link_na_reg.exe from the .zip file.
    3. Click Start, Run, type cmd, and click OK.
    4. Change directory to the location of the extracted link_na_reg.exe.
    5. Type the following command and press ENTER:

      link_na_reg.exe /s "HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Network Associates" "HKEY_LOCAL_MACHINE\SOFTWARE\Network Associates" 
       
    6. Log on to the ePO console.
    7. Send an agent wake-up call with the Get full product properties entry selected.

Solidcore Agent version 6.0.0:
NOTE: Version 6.0 reached End of Life (EOL) on June 30, 2015. McAfee recommends that you upgrade to a supported version.
  1. Install the Solidifier Agent on the computer. Select Install without license key in the installation wizard.
  2. Download and save the utility epomng-6.0.zip, located in the epomng-6.x.zip file in the Attachments section of this article.
    1. Unzip the contents of the archive to a local directory on the computer that will be managed by ePO.
    2. In the extracted files, open epomng-6.0.bat with Notepad or a similar text editor.
    3. Search for the following string (replace xxxx-xxxx-xxxx-xxxx-xxxx with the valid license key): 
       
      sadmin license add xxxx-xxxx-xxxx-xxxx-xxxx
       
    4. Save your changes.
    5. If VirusScan Enterprise (VSE) is installed on the endpoint:
      1. Open the VirusScan Console.
      2. Click Access Protection, Common Standard Protection.
      3. Deselect the following block rules:

        - Prevent Modification of McAfee Files and Settings
        - Prevent Modification of McAfee Common Management Agent Files and Settings
         
    6. Click Start, Run, type cmd, and click OK.
    7. Navigate to the directory where you extracted the files from epomng-6.0.zip.
    8. Type the following command and press ENTER:

      epomng-6.0.bat
       
    9. If you disabled VSE Access Protection rules, re-enable them.
  3. Log on to the ePO console.
  4. Send an agent wake-up call with the Get full product properties entry selected.

Solidcore Agent versions 6.1.0, 6.1.1, and 6.1.2:
  1. Install the Solidifier Agent on the computer. Select Install without license key in the installation wizard.
  2. Download and save the appropriate utility based on the installer you are using:
     
    NOTE: The utilities are located in the epomng-6.x.zip file in the Attachments section of this article.
     
    • epomng-6.1.0-648.zip
    • epomng-6.1.0-652.zip
    • epomng-6.1.0-662.zip
    • epomng-6.1.0-687.zip
    • epomng-6.1.0-692.zip
    • epomng-6.1.0-700.zip
    • epomng-6.1.1-369.zip
    • epomng-6.1.1-379.zip
    • epomng-6.1.1-392.zip
    • epomng-6.1.1-399.zip
    • epomng-6.1.2-367.zip
    • epomng-6.1.2-368.zip
    • epomng-6.1.2-394.zip
    • epomng-6.1.2-426.zip
     
    1. Unzip the contents of the archive to a local directory on the computer that will be managed by ePO.
    2. If VSE is installed on the endpoint:
      1. Open the VirusScan Console.
      2. Click Access Protection, Common Standard Protection.
      3. Deselect the following block rules:

        - Prevent Modification of McAfee Files and Settings
        Prevent Modification of McAfee Common Management
         
         
    3. Click StartRun, type cmd, and click OK.
    4. Navigate to the directory where you extracted the files.
    5. Type the following command and press ENTER: 

      epomng-6.1.bat
       
    6. If you disabled VSE Access Protection rules, re-enable them.
  3. Log on to the ePO console.
  4. Send an agent wake-up call with the Get full product properties entry selected.
  5. Send the SC:Enable task from ePO to systems with the Solidcore Agent installed. 
Solidcore Agent versions 6.1.3, 6.2 and later:
During the installation of Solidcore Agent versions 6.1.3 and later the Solidcore installer will verify whether McAfee Agent is already present and connect to it. No further steps should be needed to be managed by ePO. However, in the event of a disconnect, run the following command from the CMD prompt that is run at installation:
 
C:\Program Files\mcafee\solidcore\instaconfig /connect

Attachment

epomng-6.x.zip
37.9MB • 4 minute(s) @ broadband


Rate this document

Glossary of Technical Terms


 Highlight Glossary Terms

Please take a moment to browse our Glossary of Technical Terms.