Automated EDR

Automated EDR Collection Download Page for Partners, Technicians & PreSalers.




Versions actuelles

Release Notes


Automated EDR Core Module 3.1.1.405


Exigences techniques


  • Virtual machine | dedicated workstation | Server
  • Intel or AMD x86/x64
  • 8 GB RAM
  • 2 GB Disc Space for Installation and Logs

Prérequis du pare-feu


  • Open Firewall Port 555 for Listening Communication
  • Open Firewall Port 443 Browser Connection to Core

Automated EDR Repository/EDR Module 3.1.1.362


Exigences techniques


  • Virtual machine | dedicated workstation | Server
  • Intel or AMD x86/x64
  • 8 GB RAM
  • 200 GB Festplattenspeicher
  • The number of CPUs (cores) depends on the number of enSilo cores connected to the threat hunting repository and the total number of CPUs on those cores. Core = 2 CPU - EDR = 2 CPU Core = 4 CPU - EDR = 4 CPU Core = 2 CPU/2 Core - EDR = 4 CPU

    Automated EDR Aggregator & Central Manager Module 3.1.1.445


    Exigences techniques


    Aggregator

    • Virtual machine | dedicated workstation | Server
    • Intel or AMD x86/x64
    • 8 GB RAM
    • 40 GB Disc Space for Installation and Logs

    Central Manager

    • Virtual machine | dedicated workstation | Server
    • Intel or AMD x86/x64
    • 8 GB RAM
    • 80 GB Disc Space for Installation and Logs

    Firewall Settings


    Aggregator

    • Open Firewall Port 8081 for Communication to Central Manager

    Central Manager

    • Open Firewall Port 443 Browser Connection to Core

    Current Agents Release

    Microsoft Windows



    Information


    • MSI File
    • Configuration through Silent Install Collector (AddOns)

    Ubuntu



    Information


    • Combi Installer 32/64bit

    CentOS



    Information


    • CentOS Version 6
    • CentOS Version 7

    OS X



    Information


    • DMG File
    • Supports newest Version MOJAVE

    Add-ons

    Automated EDR CollectorSilentInstallerGenerator


    Information

    • Configure Agent Installation Package - including - Registration Password - Collector Group - Organization (MultiTenancy Enviroments) - ProxySettings - VDI (Gold Images - Windows Collector Only) - Delay of data collection

    Additional Information

    • Once MSI has been configured by SilentCollectorInstaller, MSI could not be reconfigured. We suggest to copy MSI before.

      Automated EDR Content Data File


      Information

      • Automated EDR Content Update File Newest Updates for: - static Content (every Customer) - dynamic Conten (specific Customer) - newest Collectors - new Playbook settings - new Security Settings - new Rule Sets