[KB7846] Deploy ESET Management Agent from ESET PROTECT or ESET PROTECT On-Prem using Microsoft Intune/Microsoft Endpoint Manager

Issue

  • Deploy ESET Management Agent using Microsoft Intune or Microsoft Endpoint Manager

Solution

  1. Verify you have access to the Microsoft Win32 Content Prep Tool and Microsoft Intune.

  2. Create and download the ESET Management Agent installer and configuration file in ESET PROTECT or ESET PROTECT On-Prem.

  3. Place the Agent .msi file and install_config.ini file in the same directory.

  4. Create an .intunewin package by running the Microsoft Win32 Content Prep Tool (IntuneWinAppUtil.exe).

  5. Log in to the Microsoft Intune admin center.

  6. Click AppsWindows.

  7. Click Create, select Windows app (Win32) from the App type drop-down menu, and click Select.

  8. Click Select app package file, navigate to and select the .intunewin package created earlier, and click OK.

  9. In the App Information section, add additional information (Publisher is required), and click Next.

  10. We recommend leaving the Program section auto-filled. Click Next.

  11. In the Requirements section, select whether you want Microsoft Intune to Check operating system architecture and select the minimum operating system to install this package to from the Minimum operating system drop-down menu. Click Next.

  12. In the Detection rules section, you can configure rules to detect if the ESET Management Agent is already installed. Select Manually configure detection rules from the Rules format drop-down menu and select one of the following rules to configure:

    ESET Management Agent auto-updates

    When the ESET Management Agent is automatically updated, the associated product code changes due to version specificity. This change affects how Microsoft Intune detects the application, potentially leading to reinstallation attempts.


    Rule with ESET Management Agent auto-update enabled

    Select File from the Rules type drop-down menu.

    In the Path field, type or copy/paste the path to the ESET Management Agent installation (by default, C:\Program Files\ESET\RemoteAdministrator\Agent) and in the File or folder field, type ERAAgent.exe.

    Select File or folder exists from the Detection method drop-down menu and click OKNext. You can leave the auto-updates for ESET Management Agent enabled.


    Rule with ESET Management Agent auto-update disabled

    Select MSI from the Rule type drop-down menu and click OKNext. The MSI product code field will be auto-filled.

    In this case, you need to disable auto-updates for ESET Management Agent and manage deploying new versions of ESET Management Agent in Microsoft Intune.


  13. We recommend leaving the Dependencies section empty. Click Next.

  14. We recommend leaving the Supersedence section empty. Click Next.

  15. Configure the Assignments section based on your environment and click Next.

  16. Review the app configuration and click Create. Microsoft Intune will now start installing the ESET Management Agent on managed computers.