Browse Docs
-
Introduction
-
Management
-
Deployment
- Deployment via RMM
- Operating System Agent
- Deployment via GPO
- Deployment via Intune
- VDI and Terminal Servers
- Windows Manual Deployment
- Mac MDM Deployment
- Mac Manual Deployment
- Network Deployment
- Secure Mobile Browser
- Bypass Option
- SaaS Restrictions
- Bookmark Manager
- Remote Uninstall
- Bulk Create Customers
-
Integrations
-
Nexi AI
-
Policy Management
-
Secure Access (ZTNA)
-
Auto Pilot
-
Training Videos
-
Questions & Answers
-
MSP Automation
ONLINE DOCUMENTATION
|
||||||||||||||
Deployment via ManageEngineIn this document
This guide covers deploying the DefensX Agent to macOS devices managed by ManageEngine Endpoint Central. The process uses shared scripts and configurations applicable to all customers, plus a separate customer-specific configuration that delivers the unique deployment key and browser settings. Step 1: Download Required FilesLog in to the DefensX backend and navigate to Policies & Groups. Under the Deployments section, locate your deployment and click the RMM button.
In the RMM dialog, click Mac MDM and download the following files:
Keep all files available, they are needed in the steps below. Step 2: Add Scripts to the Script RepositoryBefore creating policies, add both scripts to the Endpoint Central Script Repository. The scripts contain no customer-specific information, so they only need to be added once and can be reused across all customers.
Step 3: Create the Agent Install Configuration
Step 4: Create the CA Certificate ConfigurationThis configuration deploys the DefensX Root CA certificate to managed devices.
Step 5: Create the DNS Proxy Extension ConfigurationThis configuration grants the DefensX DNS Proxy Network Extension the permissions it needs to operate without prompting users for approval. It enables DNS policy enforcement without modifying system-level DNS settings.
Step 6: Create the Customer-Specific ConfigurationEach DefensX deployment has a unique Deployment Key embedded in its mobileconfig file. This step pushes that key along with any deployment-specific browser settings to the target devices.
To speed up the initial rollout, open the ManageEngine tray icon on any target Mac and click Apply Configurations — this immediately triggers script execution and profile delivery without waiting for the next scheduled check-in.
Uninstalling DefensX
To exclude devices from the existing configurations:
Once all exclusions are in place, create the uninstall policy:
The uninstall script will run on the next scheduled trigger, or immediately by clicking Apply Configurations from the ManageEngine tray icon on the target Mac. |
||||||||||||||