
default firewall. This enables it to monitor communications for Internet applications and track events
for reporting purposes, even if the Windows firewall is also running.
We recommend that you do not re‑enable the Windows firewall while the firewall protection service in
McAfee SaaS Endpoint Protection is enabled.
If both firewalls are enabled, the firewall protection service firewall lists only a subset of the blocked IP
addresses in its Inbound Events Blocked by the Firewall report. The Windows firewall blocks some of these
addresses; however, it does not report them because event logging is disabled in the Windows firewall
by default. If both firewalls are enabled, you must enable Windows firewall logging to view a list of all
blocked IP addresses. The default Windows firewall log is C:\Windows\pfirewall.log. Enabling both
firewalls also results in duplicate status and alert messaging.
Support for corporate firewalls or proxy servers
The client software downloads components directly from McAfee servers to client computers. If you
are behind a corporate firewall, or are connected to the Internet by a proxy server, you might need to
provide additional information for your service to work properly.
• Authentication support is limited to anonymous authentication or Windows domain challenge/
response authentication. Basic authentication is not supported.
• Silent installation, push installation, and automatic updating do not support a CHAP or NTLM proxy.
Contact the site administrator or product support if you have proxy questions while installing or
updating the client software.
Terminal server support
McAfee SaaS Endpoint Protection supports terminal servers and the Windows fast user switching
feature in most scenarios, with these limitations:
• The client software must be installed on the server by someone with local administrator rights.
• When an installation or update occurs on a terminal server, one session is designated as the
primary update session. A pseudo user is defined, which enables automatic updates to occur on
computers where no user is logged on. See the product guide for more information.
• For all user sessions, the product icon is removed from the system tray during the installation or
update. The icon is restarted after the update.
Active Directory support
If you use Active Directory to define group hierarchies in your network, you can deploy the client
software directly to your Active Directory groups.
Before installing, you need to log on to the SecurityCenter, download the Active Directory
Synchronization utility from the Utilities page, and import the organizational unit (OU) structure for your
network into the SecurityCenter. You can then install the client software on computers in your Active
Directory groups. See the product guide, available from the Help & Support page of the SecurityCenter,
for more information.
Installing McAfee SaaS Endpoint Protection
System requirements
1
McAfee SaaS Endpoint Protection 6.0 Installation Guide
15
Comentarios a estos manuales