Third Party Integrations https://www.emsisoft.com/en/help/category/user-guides/integrations/ Fri, 12 Jan 2024 11:50:15 +0000 en-US hourly 1 https://www.emsisoft.com/en/help/wp-content/uploads/2023/12/cropped-icon_eam-32x32.png Third Party Integrations https://www.emsisoft.com/en/help/category/user-guides/integrations/ 32 32 NinjaOne Integration https://www.emsisoft.com/en/help/5578/ninjaone-integration/ Mon, 27 Nov 2023 08:09:13 +0000 https://help.emsisoft.com/?p=5578 NinjaOne (formerly NinjaRMM) is a security-oriented remote monitoring and management platform. It allows for manual customization as well as scripting and automation. In this guide you will find the instructions […]

The post NinjaOne Integration appeared first on Emsisoft Help.

]]>
NinjaOne (formerly NinjaRMM) is a security-oriented remote monitoring and management platform. It allows for manual customization as well as scripting and automation. In this guide you will find the instructions to integrate it with your Emsisoft Endpoint protection.

Setup Custom Field 

  1. Go to Administration > Devices then select Role Custom Fields. Click on the Add button then Field.
  2. In the Create Field form, enter the Label and Name of the field. Set the field type to Text then click the Create button.
  3. In the field details page, set Scripts to Read/Write then click the Save button.
  4. After creating the custom field go to Devices > Roles then click Edit on Windows Desktops and Laptops role.
  5. In the Windows Desktops and Laptops page click the Add button then search for the custom field that we’ve just recently added. Once the custom field is added click on the Save button.

Adding Compliance and Setup Scripts 

  1. You can download the scripts here.
    Before you add scripts, it is recommended to first create a category for Emsisoft scripts. To do this, go to
    Library > Scripting and select Categories tab then click on the Create New Category button.

  2. In the add category form, name the category as Emsisoft Scripts. Click the Save button when done.

  3. After saving the category, we can now start adding scripts. Select the Scripts tab and then click on the Create New Script button. We will first be adding the compliance script.

  4. In the script details page, copy/paste Emsisoft_Compliance.ps1 script to the script box. Provide the Name, Description, Category (provide the one that we just created), Language, Operating System and Architecture as shown in the screenshot below. Click the Save button once done then click Close button after successfully saving it.

  5. Repeat steps 3 to 4 for the setup script. In step 4 copy/paste Emsisoft_Setup.ps1 script to the script box and name the script Install Emsisoft Endpoint Protection.

Setup Policy 

  1. To enforce Emsisoft compliance, we need a policy that is coupled with our compliance scripts to monitor our devices. Go to Policies > Agent Policies and click the Create New Policy to create it.

  2. In the Create a policy page, enter the Name, Role and Parent Policy of the policy as shown in the screenshot below. Click the Save button once done.

  3. Once the policy is saved you can now start configuring it. When in the Conditions section, click the Add a condition button. 

  4. In the Condition page, click Select a condition.

  5. Set Custom Fields as Condition. Click the Add button for the Custom field value must meet all conditions setting then add the details as shown in the screenshot below. Click Apply once done.

  6. After setting the Condition to Custom Fields, set the Name, Severity, Priority, and Reset Interval as shown in the screenshot below. Click the Add button once done.

  7. Go to Scheduled Scripts then click Add a Scheduled Script.

  8. In the Scheduled Script page, enter the Name as shown in the screenshot below then click Add Script.

  9. Select Emsisoft Scripts from the Categories list then click Emsisoft protection compliance script.

  10. Just click the Apply button in the Emsisoft protection compliance setup page.

  11. After applying the protection compliance script, enter the rest of the details of the scheduled script as shown in the screenshot below. Click the Add button once done.

  12. After adding the scheduled script, click the Save button then click the Close button after successfully saving the policy.

Setup Organization 

  1. Under Administration go to Organizations then click Create New Organization.

  2. Enter the name of the organization and in this case, it is Emsisoft. After naming the organization, go to Policies.

  3. In the Agent Policies page, locate Windows Desktop and Windows Laptop and set its policy to the one that you just recently created. After setting it, click the Save button then click Close after successfully saving the organization.

Adding Devices 

  1. To add devices to our configured organization, click the + button and select Device > Computer

  2. In the Add a computer screen, set Organization to Emsisoft then click the Generate installer button.

  3. There are two options to download the installer, first is to copy the link and paste it in a browser and download it and second is to click the Download button to directly download the installer to the machine. After downloading the installer, run it to install the agent into the device. 

  4. After a successful installation, the device should now appear in your organization’s device list. Just go to the Dashboard and click on Emsisoft organization.

  5. In the Dashboard, you can also check for devices’ Emsisoft compliance. Go to Devices > Alerts.

  6. In the Alerts page, you can see the devices that matched our Emsisoft Non-compliance custom field’s condition. Click on the device name to view the details.

  7. In the device’s page, go to Custom Fields section. Here you can check the specific Emsisoft Compliance criteria that are not compliant.

  8. After you have complied with the reported alert, you can reset it by clicking on the Alert icon button. Click then on the dropdown arrow then click on the Reset command.

Running the Installation Script 

    1. Go to Search and select the devices you want the installation script to run.

    2. Once you have selected the devices, the Run command becomes available. Click Run and select Run Script > From Library.

 

  1. In the run page, select Emsisoft Scripts category then click on Install Emsisoft Endpoint Protection script.

  2. Enter your install token in the Preset Parameter input box then click the Apply button. Click Yes when prompted to confirm.

The post NinjaOne Integration appeared first on Emsisoft Help.

]]>
N-sight RMM Integration https://www.emsisoft.com/en/help/5421/n-sight-rmm-integration/ Wed, 22 Nov 2023 10:59:38 +0000 https://help.emsisoft.com/?p=5421 N-sight Remote Monitoring and Management (N-sight RMM) provides real-time monitoring and management of devices, including network devices such as printers, routers, and firewalls. Here you can find a step-by-step guide […]

The post N-sight RMM Integration appeared first on Emsisoft Help.

]]>
N-sight Remote Monitoring and Management (N-sight RMM) provides real-time monitoring and management of devices, including network devices such as printers, routers, and firewalls.
Here you can find a step-by-step guide on how to integrate it with your Emsisoft Endpoint protection.

Configuring Devices 

  1. Go to the Assets page then click on Add Client on the File menu item.

  2. Enter Emsisoft on the Client Name input box then click the OK button.

  3. Right-click on the newly created Emsisoft client then click Add Site from the popup menu.

  4. In the Add Site window, enter the name of the site, in this case it’s PH. Click on the Save button once done.

  5. After adding the client and site, you can now start adding devices. Click on the Add device button located at the top of the devices grid to add a device.

  6. In the Add a Device windows, the Client and Site are already provided but you can change it if you want to or add another client or site. Click on the Next button after making the necessary changes.

  7. After clicking the Next button, the agent package will be built and automatically downloaded. Install this package on the device that you need to monitor. This downloaded agent package can be copied and installed to as many devices as you need. Click on the Finish button once done.

  8. The devices will now be shown on the devices grid grouped according to device category.

Uploading scripts 

First, you need to download the scripts. There are two scripts that will be uploaded namely Emsisoft_Setup.ps1 and Emsisoft_Compliance.ps1. 

  1. Go to the Assets page and select Script Manager under the Settings menu item.

  2. Click on the New button to define the new script.

  3. In the Add User Defined Scripts window, enter the Name, Type and OS target of the new script as shown in the screenshot below. Click on the Browse button to select the script, in this case the Emsisoft_Compliance.ps1 script, that you need to upload then click on the Save button once done. 

  4. Repeat steps 2 to 3 for uploading the Emsisoft_Setup.ps1 script. Set the Default Timeout to 600 and Type to Automated Task. Please refer to screenshot below for the settings of this script.

  5. After uploading the 2 scripts, click on the Close button to close the Script Manager window.

Configuring Monitoring Template 

  1. Go to the Assets page then select Manage Templates under Settings > Monitoring Templates menu item.

  2. In the View Monitoring Template window, click the Add button then select Add Workstation Monitoring Template.

  3. Enter Emsisoft Workstation as the Template Name and then check Enabled for Check Frequency. Set the 24×7 Frequency to 5 minutes. Once you are done with these settings, click on the Add button under the Checks and Tasks section then select Add 24×7 Check > Script Check.

  4. Select Emsisoft Endpoint Protection Compliance under User Defined scripts then click the Next button.

  5. In the check script settings page just click on the Finish button.

  6. After adding the compliance script check, we will add an automated task which will launch our setup script. To add an automated task, click on the Add button then select Add Automated Task.

  7. Select Emsisoft Endpoint Protection Setup under User Defined scripts then click the Next button.

  8. In the automated task script setting window, enter Install Emsisoft Endpoint Protection in the Descriptive Name then click the Next the button. 

  9. Select Manual for the Frequency Method then click the Next button.

  10. In this page, just leave the default settings as is then click the Finish button.

  11. The Emsisoft monitoring template has now been created. Click the Close button.

Applying Monitoring Template 

After the monitoring template has been created. We will now apply it to our client devices. 

    1. Go to Assets page and right-click on client Emsisoft then select Apply Monitoring Template.

    2. Select Emsisoft template from the list of available templates then click the > button to add it to the selected templates list.

    3. After adding the Emsisoft monitoring template, tick the “Replace existing checks and tasks…” tick box then click the Apply button.

    4. To continue with the Apply Monitoring Template process, supply your account password then click the OK button.

 

  1. An information box will be shown stating that checks and tasks will be added to the devices. Click the OK button to continue.

  2. The script check for compliance and automated task for the setup will now be shown in its respective tab lists.

    Script Check
    (Emsisoft Endpoint Protection Compliance)

    Automated Task (Emsisoft Endpoint Protection Setup) 

Note:
There are cases where scripts cannot run on devices (see screenshot below) due to agent service’s logon account not having the necessary privileges. Please refer to this guide, Change the Agent service logon account (n-able.com), to correct this issue. 

Monitoring Compliance 

The script check is being refreshed every 5 minutes as what we had set on Configuring Monitoring Template step 3. The result of the compliance is shown in the More Information column. You may enable alert sending by checking any of the first 4 checkbox columns in the grid row. In the screenshot below, the Outage Email Alert for our compliance is enabled. An alert email will be sent to you once compliance script fails. But once it fails, it will never send out an alert email anymore for succeeding fails. The compliance should be OK and then fail again for you to receive another alert email.

 

Running Setup Automated Task 

Whenever you need to install Emsisoft endpoint protection on a device, you need to run the Install Emsisoft Endpoint Protection automated task that wraps our setup script. For a simple guide, we will just be running the automated task on a single device. 

    1. Select the device from our Emsisoft client’s list of devices. Go to the Tasks page and then select our Emsisoft setup task. Click on the Automated Task button then select Edit Automated Task.

    2. In the Edit Automated Task window, enter in the Command Line input box your install token. You may also predefine this value during the setup of our monitoring template. Click on the Next button once done.

    3. Just click on Next until the display window shows the Finish button. Click on the Finish button to run the setup task. 

    4. After editing the setup automated task, click again the Automated Task button but this time select Run Automated Task. An information box will be shown saying that the task will now run. Click the OK button to continue.
    5. The setup task is now running in the background. You may click the refresh button located on the leftmost side at the top of the bottom grid to check if the task is already done running.

    6. Once the task is finished executing, click on the output column to view additional information and whether the installation has been successful.

 

 

 

 

The post N-sight RMM Integration appeared first on Emsisoft Help.

]]>
Kaseya VSA Integration https://www.emsisoft.com/en/help/5360/kaseya-vsa-integration/ Wed, 22 Nov 2023 09:11:10 +0000 https://help.emsisoft.com/?p=5360 Kaseya Virtual System Administrator (VSA) is a cloud-based Remote Monitoring and Management software. Specifically designed for use by IT teams and Managed Service Providers, it unifies the monitoring of system […]

The post Kaseya VSA Integration appeared first on Emsisoft Help.

]]>
Kaseya Virtual System Administrator (VSA) is a cloud-based Remote Monitoring and Management software. Specifically designed for use by IT teams and Managed Service Providers, it unifies the monitoring of system infrastructure and their endpoints.
Here you have a step-by-step guide to help integrate it with your Emsisoft Endpoint Protection:

Configuring organizations and adding devices

  1. Go to Configuration > Organizations. Click the Add button then select Organization.
  2. In the Add Organization form, input the name of the organization and the organization type. Click Add once done.
  3. After adding the organization, click the Add Site button to add a site under our Emsisoft organization.

  4. Input the site name then click the Add button to add the site.

  5. After adding the site, you can now add an agent group under it. Click on the Add Agent Group button to do this.

  6. In the Add Agent Group window, enter the agent group name (in our example “Test”) then click Add.

  7. After successfully creating the agent group, select it and on the left side tab select Downloads. Choose the OS that’s appropriate for your device that you will be adding.

  8. Once you are in the download agent installer form, you have two options to download the agent installer. You can choose to download it directly or copy the download link.

  9. After downloading and installing the agent in the target machine, the device will now appear in the Systems tab.

Creating profile 

  1. Go to Configuration > Profiles then click the New Folder button. In the new folder’s name field enter Emsisoft Policy then click the save button next to it.

  2. Once the folder is created, select it then click on the New Profile button.

  3. In the details page of the new profile, input the Name, Description, Policy Type and Configuration Type as shown in the screenshot below. Click the Next button to go to the profile Configuration page.

  4. In the configuration page, select the Enable event log notifications tab then click on the Add Filter button.

  5. Fill-in the Add Event Log Filter form with data as shown in the screenshot below. Click the Save button once done.

  6. Click Create to create the new profile.

Creating Policy 

  1. Go to Configuration > Policies then click on the Create New Policy button.

  2. In the Create New Policy details page, fill in the data as shown in the screenshot below. Click on the Next button once done.

  3. In the policy’s Configuration page, click the Assign Profile button.

  4. In the Assign Profiles form, select from the list the newly created Emsisoft Protection Compliance profile then click Assign.

  5. After assigning the profile click the Create button to create the new policy.
     
  6. After you have created the Emsisoft policy, you can now assign this to the Emsisoft organization. Go back to the organizations list (Configuration > Organizations), then select Emsisoft. Click the Edit button to update the organization details.

  7. Update the Monitoring Policy and set it to the newly created Emsisoft policy. Click the Save button once done.

Creating a scope 

  1. Before moving to the scripts, we need to create a scope for our tasks that will execute our script. Go to Scopes under Systems and click Create Scope.

  2. In the New Scope page, enter Emsisoft as the name of the scope. Check Windows checkbox for the System Type and then click the Edit Context button in the Context section to add scope context.

  3. In the Edit Context window, check the organization that we created then click the Confirm button.

  4. After selecting the context, click the Create button to create the scope.

Preparing deployment script 

  1. First, use this link to download the integration scripts. The downloaded zip file contains three scripts namely DeployEmsisoftComplianceScript.ps1, Emsisoft_Setup.ps1, and KaseyaVSAUserImpersonation.sp1. 
  2. In one of your Kaseya VSA X installed devices run the VSA X Manager. Go to Settings > Runtime tab. In the PowerShell User Impersonation section, check PowerShell User Impersonation checkbox and enter your local admin credentials. Click the OK button once you are done.

  3. Run regedit.exe and go to HKEY_LOCAL_MACHINE\SOFTWARE\Kaseya\PC Monitor. Copy the data of these three registry values namely PowerShellUserImpersonationPassword, PowerShellUserImpersonationPasswordCtrl and PowerShellUserImpersonationUsername.

  4. Open KaseyaVSAUserImpersonation.ps1 and edit the variables in the script with the user impersonation data above. Save the updated script file.

Uploading Deployment Script and Creating Task 

  1. Go to Automation > Scripts and create a new folder for our Emsisoft scripts. Click the New Folder button to do this. After creating the folder, select it then click the New Script button.

  2. In the Create Script page enter the name of the script and the description. Name = Set User Impersonation, Description = Set user impersonation.

  3. Turn on the Enable switch in the Windows section and then copy / paste the contents of KaseyaVSAUserImpersonation.ps1 script in the script box. Click Save once this is done.

  4. Repeat steps 1 to 2 for the DeployEmsisoftComplianceScript.ps1 script. Name = Deploy Emsisoft Compliance Script, Description = Deploy Emsisoft Compliance Script.

  5. Turn on the Enable switch in the Windows section and then copy / paste the contents of DeployEmsisoftComplianceScript.ps1 script in the script box. Click Save once this is done.

  6. Go to Automation > Tasks then click Create Task.

  7. In the Create Task page enter the name and description of the task. Set the Scope to the scope that we have previously created.

  8. Go to the Scripts page then select Emsisoft from the Categories selection. Assign Set User Impersonation and Deploy Emsisoft Compliance Script scripts to this task in that specific order.

  9. After setting the necessary data for our task click the Save Task button to save this task.

  10. After you have created the task, it will now appear in your task list. You can hover on the task and click the Run button on the right to execute it.

  11. The task’s execution status will now be seen as running. After the task has finished executing, you can View the result of the execution by clicking the view button.

  12. In the Task Details, go to Execution History tab and click on the latest result.

  13. In the Task Execution details page click on the Systems tab to view all system’s execution result. You can click on each system to view the result details.

  14. Once the Emsisoft compliance script has been successfully deployed, you can now start receiving notifications when Emsisoft protection becomes non-compliant. Go to Systems > Notifications to view notifications. The screenshot below shows that Emsisoft protection is not installed.

Uploading Setup Script and Creating Task 

    1. Go to Automation > Custom Fields then click Create Custom Field.

    2. In the New Custom Field page, input the name and description of the field. 

    3. Set the Global Value to a temporary value and make it read-only. You need to change this value to a real install token value when you run the task that uses the script where this custom field is used. Basically, this custom field is used in the setup script. Click the Create button to create the custom field.

    4. After creating the custom field, go to Automation > Scripts and select the Emsisoft folder then click the New Script button.

    5. In the Create Script page enter the name of the script and the description as shown in the screenshot below. Click on the + New button in the Inputs section to create an input variable.

    6. In the Add Variable form, enter the name of the variable and turn on the Use custom field value switch. In the Custom Field, select the field that we previously created. Click the Save Variable button once done.

    7. Turn on the Enable switch in the Windows section and then copy / paste the contents of Emsisoft_Setup.ps1 script in the script box. Click Save once this is done.

    8. Go to Automation > Tasks then click Create Task.

    9. In the Create Task page enter the name and description of the task. Set the Scope to the scope that we have previously created.

    10. Go to the Scripts page. Select Emsisoft from the Categories dropdown to see all available scripts. In the list, click the + button next to our setup script (Install Emsisoft Endpoint Protection) to add the script to the task. After setting the necessary data for our task click the Save Task button to save this task.

    11. After you have created the task, it will now appear in your task list. You can hover on the task and click on the run button on the right to execute it. Please take note to edit the Install Token custom field variable first by going to Automation > Custom Fields prior to running this task.

    12. The task’s execution status will now be seen as Running. After the task has finished executing, you can view the result of the execution by clicking the View button.

    13. In the Task Details, go to Execution History tab and click on the latest result.
    14. In the task’s Execution Details page click on the Systems tab to view all system’s execution result. You can click on each system to view the their details.

    15. Clicking on the system will display the scripts that were run and clicking further on the script will show you the script execution details.

 

 

 

The post Kaseya VSA Integration appeared first on Emsisoft Help.

]]>
Level RMM Integration https://www.emsisoft.com/en/help/5321/level-rmm-integration/ Tue, 21 Nov 2023 12:07:37 +0000 https://help.emsisoft.com/?p=5321 Level is a remote monitoring and management solution that allows you to work behind the scenes without disturbing your end-users. You can check system information, access the terminal, browse the […]

The post Level RMM Integration appeared first on Emsisoft Help.

]]>
Level is a remote monitoring and management solution that allows you to work behind the scenes without disturbing your end-users. You can check system information, access the terminal, browse the file system, and upload or download files all without remotely controlling the device. You can also manage running processes and kill processes, view installed programs, uninstall programs, and manage startup processes, all without remoting into the device.
Here you have a step-by-step guide to integrate it with your Emsisoft Endpoint protection:

Configuring Devices 

  1. Before we start adding devices, we first need to create a tag. This tag will be assigned to our Emsisoft devices and will be used as targets for our monitor policy. To create a tag, click on the account icon and then select Tags.

  2. In the Tags page, click on the Create new tag button.

  3. In the Create a new tag form, enter Emsisoft as the name of the tag then click the Create tag button.
  4. We can now start adding Emsisoft devices. Go to the Devices page and click on the Install new agent button.

  5. In the Install new monitoring agent screen click the Copy command to clipboard button. Unlike most RMM, Level only offers installation of the agent via script which is run on Powershell.

  6. After copying the Powershell command, run Powershell as an administrator then paste the script that was previously copied to clipboard and run it. You can see on the output window the result of the agent installation.

  7. After you have successfully installed the agent on your device, the device will now appear in the list under All Devices. Repeat the whole agent installation process to install more devices. After installing all agents, click on the create group button beside the Device groups to create a group where we can all assign our Emsisoft devices.

  8. Enter Emsisoft as the group name then click the check icon button to save the group.

  9. Once the group has been created, you can now assign devices to this group. Select the devices that you want to add to the group then click the Assign To Group button.

  10. In the Assign to Group window, choose a group and in this case Emsisoft. Click the Assign to Group button once done.

  11. After assigning the devices to the group, next is to assign a tag to these devices. Go to Emsisoft group and select all the devices. Click on the Tags button and then check Emsisoft tag.
  • Uploading Scripts 

You need to download the scripts first. There are two scripts that will be uploaded namely Emsisoft_Setup.ps1 and Emsisoft_Compliance.ps1. 

  1. Go to the Scripts page and click on the Create script button.
  2. In the Create new script window, enter the script name and in this case Emsisoft Endpoint Protection Setup. After inputting the name, click the Confirm button.

  3. In the script details page, copy the Emsisoft_Setup.ps1 script contents and paste it in the script box.  Replace the $InstallToken variable with your assigned install token. Level RMM doesn’t have a parameter option, so you need to create a separate script for each device that uses a different install token. Finally, set the timeout to 600 (10 minutes). Once done, click on the Save script button.

  4. After successfully saving the script, click the Scripts link action or the heading title to go back to the Scripts page. Repeat the new script creation process for the Emsisoft_Compliance.ps1 script. Set the name to Emsisoft Endpoint Protection Compliance and timeout to default which is 100. The compliance script doesn’t have the $InstallToken variable so there is no need to set anything for it.

Creating Policy Monitor 

    1. Go to the Policies page and click on the Create policy button.

    2. In the New Monitor Policy form, set the policy name to Emsisoft Policy. Click the Create monitor policy once done.

    3. Select the newly created Emsisoft Policy. In the Emsisoft Policy page, click the Edit button for the Recipients

    4. In the Recipients form, input the email address of the recipients that will get notified when alerts are raised. Click on the Add recipients button once done.

    5. In the Targets section, click on the Tags button then check Emsisoft tag to set the target for this policy.

    6. After setting the recipients and the targets, click on the Add New Monitor button.

    7. In the Add New Monitor form, set Name to Non-compliant Emsisoft Endpoint. Set the rest of the field as shown in the screenshot below. Once done, click the Add monitor button. You are now all set to receive alerts.

 

Monitoring Alerts 

    1. After the new policy has been created, you will now start receiving alerts via email when a compliance script output doesn’t result as compliant. Alerts will also be posted on the Alerts page. You can click on the expand button to view the script result details. 

 

    1. Once you have resolved an alert issue on a device, select the device and click on the Resolve button.  

 

Executing the Setup Script 

  1. Go to the Devices page and select the devices where Emsisoft Endpoint Protection needs to be installed. Once the devices are selected, click on the Actions button and select Run Saved Script.

  2. In the Run Saved Script window, select the Emsisoft Endpoint Protection Setup script then click on the Review job button. 

  3. A job has now been created for the run script action. Click the Execute script button to run the script job.

  4. The script has now started running. You can click on the dropdown button to view the run status details.

  5. Once the script job has finished running the Status column will be updated and the status details will tell if the installation is successful.

 

The post Level RMM Integration appeared first on Emsisoft Help.

]]>
Action1 Integration https://www.emsisoft.com/en/help/5278/action1-integration/ Tue, 21 Nov 2023 11:34:48 +0000 https://help.emsisoft.com/?p=5278 Action1 is a risk-based patch management platform trusted by thousands of organizations globally. Action1 helps to discover, prioritize, and remediate vulnerabilities to prevent security breaches and ransomware attacks. It automates […]

The post Action1 Integration appeared first on Emsisoft Help.

]]>
Action1 is a risk-based patch management platform trusted by thousands of organizations globally. Action1 helps to discover, prioritize, and remediate vulnerabilities to prevent security breaches and ransomware attacks. It automates patching of third-party software and operating systems, ensuring continuous patch compliance and remediation of security vulnerabilities before they are exploited.
We have created a step-by-step guide to help you integrate it with your Emsisoft Endpoint Protection. 

Configuring Endpoints 

  1. Go to Endpoints and click New Group.

  2. Enter the Name and Description of the group then click the Create button.
  3. After successfully creating the group go back to Endpoints and click the Install Agents button.

  4. There are two ways to download the install agent, one is by downloading It directly by clicking the Download Agent button and two is by copying the download URL. After installing the agent on the target device, click the NEXT STEP button.

  5. The endpoint device where the agent is installed will now appear on the list. You may install more agent on other devices and once done click on the FINISH button. 

  6. After installing the agents, go to Emsisoft group and click on Add Endpoints.

  7. Select the endpoints that you want to add to Emsisoft group then click the Add button.

  8. The newly added endpoints will now appear under Emsisoft group.

Adding Scripts to the Script Library 

You need to download the scripts first. There are four scripts and three of them will be added to the script library namely Emsisoft_Setup.ps1, Set_Emsisoft_Group.ps1 and Unset_Emsisoft_Group.ps1. Emsisoft_Compliance.ps1 will be used as the script for our Data Source. 

 

Emsisoft_Setup.ps1 script 

  1. Go to Script Library under CONFIGURATION then click New Script.

  2. In the General tab enter the Name and Description of the script as shown in the screenshot below. Click the NEXT STEP button once done.

  3. In the Script tab, copy and paste Emsisoft_Setup.ps1 script into the script box. Click the Add Parameter button then enter InstallToken as the Param Name and String as the parameter type. Click the NEXT STEP button once done.

  4. In the Test tab, you may test the script by providing the endpoint name and then clicking the Run Script button. You can now save the new script by clicking the FINISH button. 

  5. Follow steps 1 to 4 for the Set_Emisoft_Group.ps1 and Unset_Emisoft_Group.ps1 except in step 4 these scripts don’t have a parameter. Refer below for the name and description values. 
Name  Description 
Set Emsisoft Group  Set ACTION1_GROUP environment variable to ‘Emsisoft’ in target device. 
Unset Emsisoft Group  Remove ACTION1_GROUP environment variable which is set to ‘Emsisoft’ from the target device. 

 

 

Running Scripts on Endpoints 

Installing Emsisoft 

  1. Navigate to Endpoints and select Emsisoft group. From the list, select the endpoints where you want to run the script. After selecting, click on the Run Script button.

  2. In the Run Script page click on Script Library.

  3. Select Install Emsisoft Endpoint Protection from the script library then click Confirm.

  4. After selecting the install script, you need to provide the install token parameter. Click the NEXT STEP button to continue.

  5. In the Select Endpoints tab, click the Add Endpoints button.

  6. You can run the script on an entire endpoint group, or you can select an individual endpoint. Click the Add button after selection has been made.

  7. Once you have added all the endpoints where you want to run the script, click the NEXT STEP button.

  8. In the Frequency tab, just leave everything to default settings which is Run Once / Run Now then click the FINISH button.

  9. The run script operation is now being started and is now waiting for the endpoint to run the action. 

  10. After the action has been executed successfully, the status of the operation is updated.

  11. Do the same steps this when running Set_Emsisoft_Group.ps1 and Unset_Emsisoft_Group.ps1 scripts except that these scripts have no parameter. You only need to run the Set_Emsisoft_Group.ps1 on endpoints that are added to the Emsisoft group and run Unset_Emsisoft_Group.ps1 on endpoints that are removed from the Emsisoft group.

 

Configuring Compliance Alert 

Adding Data Source 

    1. Go to Data Sources under CONFIGURATION then click New button.

    2. In the General tab, enter the data source name then click the NEXT STEP button.

    3. In the Script tab, copy and paste the Emsisoft_Compliance.ps1 script into the script box then click the NEXT STEP button.

 

    1. In the Columns tab, search for an endpoint and then click the Detect button to detect the column names. 
    2. After detecting, the detected columns will be displayed together with its column value. Click the FINISH button to save the data source. 

 

Adding Custom Report 

    1. Go to Custom Reports under REAL-TIME REPORTS & ALERTS then click the Add button. 

 

    1. In the General tab, set the Data Source to the newly created Emsisoft Endpoint Protection Compliance data source. Enter Report Name and Description as shown in the screenshot below. Click the NEXT STEP button once done. 

 

    1. In the Columns tab, select Simple Report and then click on the Add Columns button. 

 

    1. In the Adding columns form, select Endpoint Name and Compliance Result then click the Add button. 

 

  1. After adding the columns, click the NEXT STEP button.
  2. In the Filter tab, just click the FINISH button.

Creating Alert 

  1. Go to Alerts under REAL-TIME REPORTS & ALERTS then click on new alert rule.

  2. In the new alert rule page, search for Emsisoft compliance report by typing Emsisoft in the Search Reports input box and then clicking on the SEARCH button.

  3. In the search results, click on the Emsisoft Endpoint Protection Compliance Report.

  4. In the Create Alert Rule page, check Modified for Alert when something is setting. Provide an email address in the Send alerts to input box and then click the ADD FILTER button to filter compliance alerts specific only to Emsisoft group. Click the SAVE button to save this alert and start receiving it at the provided email address once it is raised.

 

The post Action1 Integration appeared first on Emsisoft Help.

]]>
Pulseway Integration https://www.emsisoft.com/en/help/4803/pulseway-integration/ Thu, 20 Jul 2023 10:41:51 +0000 https://help.emsisoft.com/?p=4803 Pulseway is a Remote Monitoring and Management (RMM) solution designed for Managed Service Providers (MSPs) and IT administrators with the capability to proactively monitor and control servers, workstations, and other […]

The post Pulseway Integration appeared first on Emsisoft Help.

]]>
Pulseway is a Remote Monitoring and Management (RMM) solution designed for Managed Service Providers (MSPs) and IT administrators with the capability to proactively monitor and control servers, workstations, and other network devices from a centralized dashboard.
We have created a step-by-step guide to help you navigate through the integration process.

Configuring organization and adding devices

  • Creating a Profile
  1. Go to Configuration > Profiles then click the New Folder. In the new folder’s name field enter Emsisoft Policy. Click the save button next to it.
  2. Once the folder is created, select it and then click on the New Profile.
  3. In the details page of the new profile, input the Name, Description, Policy Type and Configuration Type as shown in the screenshot below. Click Configuration or Next button to go to the profile Configuration.
  4. In the configuration page, select the Enable event log notifications tab and then click the Add Filter.
  5. Fill-in the Add Event Log Filter form with the data as shown in the screenshots below. Click the Save button once done.
  6. Click Create to create the new profile.
  • Creating a Policy
  1. Go to Configuration > Policies then click on the Create New Policy button.
  2. In the Create New Policy details page, fill in the data as shown in the screenshot below. Click the Configuration button once done.
  3. In the policy’s Configuration page, click the Assign Profile.
  4. In the Assign Profiles form, select from the list the newly created Emsisoft protection compliance profile then click Assign.
  5. After assigning the profile click the Create button to create the new policy.
  • Configuring an Organization
  1. Go to Configuration > Organization then click the Add button and select Organization.
  2. In the Add Organization form, input the name of the organization and the organization type. Click Add once done.
  3. Select the newly added organization then click the Edit button to update the organization details.
  4. Update the Monitoring Policy and set it to the newly created policy. Click the Save button once done.
  5. After updating the organization’s monitoring policy, click again the Add button but this time select Site.
  6. Input the site name then click the Add button to add the site.
  7. After adding the site, you can now add agent groups under it. You may do this by clicking again the Add button and selecting Agent Group or clicking directly the Add Agent Group.
  8. Enter the agent group name then click Add.
  9. After successfully creating the agent group, select it and on the left side tab select Downloads. Choose the OS that is relevant for the device that you will add.
  10. Once you are in the download agent installer form, you have two options to download the agent installer. You can choose to download it directly or copy the download link.
  11. After downloading and installing the agent on the target machine, the device will appear in Systems.

Preparing, uploading and deploying scripts

  • Creating Scope
  1. First, we need to create a scope for our tasks that will execute our script. Go to Scopes under Systems and click Create Scope.
  2. In the New Scope page, enter the name and description of the scope. Check Windows checkbox for the System Type and then click the Edit Context button in the Context section to add scope context.
  3. In the Edit Context window, check the organization that we created then click the Confirm button.
  4. After selecting the context, click the Create button to create the scope.
  • Preparing deployment script
  1. Download the integration scripts here.
  2. Open the downloaded zip file. It contains two scripts namely ps1 and Emsisoft_Setup.ps1. Save the unzipped files locally.
  3. In one of your Pulseway installed devices run Pulseway Manager. Go to Settings > Runtime In the PowerShell User Impersonation section, check PowerShell User Impersonation checkbox and enter your local admin credentials. Click the OK button once you are done.
  4. Run exe and go to HKEY_LOCAL_MACHINE\SOFTWARE\MMSOFT Design\PC Monitor. Copy the data of these three registry values namely PowerShellUserImpersonationPassword, PowerShellUserImpersonationPasswordCtrl and PowerShellUserImpersonationUsername.
  5. Open ps1 and edit the variables in the script with the user impersonation data above. Save the updated script file.
  • Uploading Deployment Script and Creating Task
  1. Go to Automation > Script and create a new folder for our Emsisoft scripts. Click the New Folder button to do this. After creating the folder, select it then click the New Script.
  2. In the Create Script page enter the name of the script and the description.
    Name = Set User Impersonation, Description = Set user impersonation
  3. Turn on the Enable switch in the Windows section and then copy-paste the contents of PulsewayUserImpersonation.ps1 script in the script box. Click Save once this is done.
  4. Repeat steps 1 to 2 for the ps1 script. Name = Deploy Emsisoft Compliance Script, Description = Deploy Emsisoft Compliance Script.

  5. Turn on the Enable switch in the Windows section and then copy / paste the contents of ps1 script in the script box. Click Save once this is done.
  6. Go to Automation > Tasks then click Create Task.
  7. In the Create Task page enter the name and description of the task. Set the Scope to the scope that we have previously created.
  8. Go to the Scripts page then select Emsisoft from the Categories Assign Set User Impersonation and Deploy Emsisoft Compliance Script scripts to this task in that specific order.
  9. After setting the necessary data for our task click the Save Task button to save this task.
  10. After you have created the task, it will now appear in your task list. You can hover on the task and click the run button on the right to execute it.
  11. The task’s execution status will now be seen as running. After the task has finished executing, you can view the result of the execution by clicking the view button.
  12. In the Task Details, go to Execution History tab and click on the latest result.
  13. In the Task Execution details page click on the Systems tab to view all system’s execution result. You can click on each system to view the result details.
  • Uploading Setup Script and Creating Task
  1. Go to Automations > Custom Fields then click Create Custom Field.
  2. In the New Custom Field page, input the name and description of the field.
  3. Set the Global Value to any placeholder value and make the value read-only. You need to change this value to a real install token value when you run the task that uses the script where this custom field is used. Basically, this custom field is used in the setup script. Click the Create button to create the custom field.
  4. After creating the custom field, go to Automation > Script and select the Emsisoft folder then click the New Script.
  5. In the Create Script page enter the name of the script and the description as shown in the screenshot below. Click on the New button in the Inputs section to create an input variable.
  6. In the Add Variable form, enter the name of the variable and turn on the Use custom field value. In the Custom Field, select the field that we previously created. Click the Save Variable button once done.
  7. Turn on the Enable switch in the Windows section and then copy / paste the contents of ps1 script in the script box. Click Save once this is done.
  8. Go to Automation > Tasks then click Create Task.
  9. In the Create Task page enter the name and description of the task. Set the Scope to the scope that we have previously created.
  10. Go to the Scripts. Select Emsisoft from the Categories dropdown to see all available scripts. In the list, click the “+” button next to our setup script (Install Emsisoft Endpoint Protection) to add the script to the task.
  11. After setting the necessary data for our task click the Save Task button to save this task.
  12. After you have created the task, it will now appear in your task list. You can hover on the task and click on the run button on the right to execute it.
  13. The task’s execution status will now be seen as Running. After the task has finished executing, you can view the result of the execution by clicking the view button.
  14. In the Task Details, go to Execution History tab and click on the latest result.
  15. In the task’s Execution Details page click on the Systems tab to view all system’s execution result. You can click on each system to view the result details.

 

The post Pulseway Integration appeared first on Emsisoft Help.

]]>
Atera Integration https://www.emsisoft.com/en/help/3842/atera-integration/ Wed, 17 May 2023 05:38:53 +0000 https://help.emsisoft.com/?p=4582 Atera is a fully featured Remote Monitoring and and Management (RMM) solution for Managed Service Providers (MSPs). Atera users can license the following Emsisoft products through their Atera billing plan […]

The post Atera Integration appeared first on Emsisoft Help.

]]>
Atera is a fully featured Remote Monitoring and and Management (RMM) solution for Managed Service Providers (MSPs). Atera users can license the following Emsisoft products through their Atera billing plan at affordable monthly license fees:

  • Emsisoft Enterprise Security + EDR
  • Emsisoft Business Security
  • Emsisoft Anti-Malware Home

Atera setup

Please follow the account activation instructions as described by Atera.

Note that if you already have an Emsisoft partner account you will need to set up a new account using a different email address to use the Atera integration.

Using Emsisoft with Atera

We created a step-by-step guide to help you with the integration.

Creating site and adding devices to the site.

  1. Login to Atera and go to Sites, then click on New Site. Enter Emsisoft for Site Name and click Create.
  2. After the site is created, the site page will be displayed with no devices present. Click on Install an Agent to download the agent installer.
  3. On the download agent installer page, select the appropriate device OS, and click Next.
  4. On the download page, there are multiple options to download the installer. Please select the option that is more convenient for you. In this case, we selected to copy and share the installer download link with the end user. Once the download link is copied, click Done.
  5. Paste the downloaded link in your browser to download the installer. Once downloaded, install the agent on the device.
  6. After the Atera agent installation on the device is done, the device will appear on your site’s devices list.
  7. Repeat the procedure to install the agent and add other devices to this site.

Uploading Emsisoft Protection scripts to Atera.

You must have the Emsisoft_Setup.ps1 and Emsisoft_Compliance.ps1 scripts downloaded into your local machine. You can download the script here.

  1. Go to Admin page then click on the Scripts icon button.
  2. On the Scripts page, click on the Upload script button.

  3. On the Upload Script form, enter Emsisoft Compliance as the Description. Click on the Browse button and open the Emsisoft_Compliance1.ps1 file then set Category = Emsisoft. Click the Upload button once done.
  4. To upload the Emsisoft Protection Setup script, click the Create Script button on the Scripts page.
  5. In the Create script page, fill out the Script Name and Script description as below. Click More script properties to fill out the Category field. In the Script editor field, copy and paste the contents of the Emsisoft_Setup.ps1 file. Click the Create button once done.

Setting up threshold profile

  1. Click Admin, then Thresholds.
  2. In the Threshold Profiles page, click on Add Profile. Input the profile name Emsisoft profile, then click Save.
  3. After adding the threshold profile, you may now start adding threshold items. Click on New Item to add one.
  4. In the Threshold Item entry screen, click on Script Based then input Emsisoft Protection Compliance in the Alert title. Click the Select button in the Monitoring Script field.
  5. In the Select Script window, click the Select button beside the Emsisoft_Compliance script.
  6. After adding the threshold item click the Save button.

Assigning threshold profile to site and monitoring alerts

  1. Go to Sites then click on Emsisoft site name to open the site details.
  2. In this page you will see the devices assigned to Emsisoft site. Click on the Assign Threshold Profile icon button to assign a profile.
  3. Select Emsisoft protection profile as the threshold profile, then click Apply.
  4. You can now start monitoring the alerts by going to the Alerts page. Below screenshot shows that machine VMBox’s File Guard and Behavior Blocker protections are not enabled, and last scan doesn’t meet the set compliance hours.

Running the Emsisoft protection setup script

  1. Click on Sites and select Emsisoft On this page, click on the Run script button.
  2. Click on Select Agents dropdown selection and select which device you want to run the Emsisoft protection setup. Click Close when done.
  3. Find Emsisoft protection setup script from the list then click Run.
  4. Input the install token variable then click Run Script
  5. Once the script has finished running, a summary will be shown.

Please check out also our guide Best practices for Managed Service Providers .

The post Atera Integration appeared first on Emsisoft Help.

]]>
MS Intune Integration https://www.emsisoft.com/en/help/4531/ms-intune-integration/ Fri, 05 May 2023 13:57:21 +0000 https://help.emsisoft.com/?p=4531 Microsoft Intune is a cloud-based service that falls under the category of Unified Endpoint Management (UEM). It allows organizations to manage and secure their devices, applications, and data from a […]

The post MS Intune Integration appeared first on Emsisoft Help.

]]>
Microsoft Intune is a cloud-based service that falls under the category of Unified Endpoint Management (UEM). It allows organizations to manage and secure their devices, applications, and data from a single platform. Integrating Microsoft Intune with Emsisoft can provide several benefits to the security and management of the devices within your organization. We have created a step-by-step guide to help with the integration.

How to prepare Emsisoft Anti-Malware Scripts for MS Intune.

1. Download Emsisoft Endpoint Protection PowerShell scripts and json file for MS Intune here.
2. Using a text editor, open Emsisoft_Setup.ps1 and input your install token.

Upload Emsisoft Protection Script to IntuneLogin to your Intune Admin Center and navigate to Devices|Scripts.

1. Click Add and select Windows 10 and later.
2. In the Basics page, please provide the Name and Description of the script then click Next.

3. In the Script Settings section, select the script (Emsisoft_Setup.ps1). Switch the Run script in 64 bit PowerShell Host option to Yes. Leave the rest of the options to No. Click Next button when done.

4. In the Assignments page, you need to specify which Groups/Users/Devices this script will be run on. Below screenshot shows that group EAM is included in the script execution. Click Next when done.

5. You are now on the final page. Please review your settings and click Add to finish the addition of Emsisoft Endpoint Protection setup script.

View Emsisoft Endpoint Protection Script Deployment Status.

1. In Intune Admin Center navigate to Devices| Scripts and select the script by its given name. You can see from this page the Device status and User status.

2. Click on Device status and you will the details for each device. You can also show per user by clicking on the User status.


Upload Emsisoft Endpoint Protection compliance script to Intune.

1. Login to your Intune Admin Center and navigate to Devices|Compliance policies.
2. Go to Scripts and click Add and select Windows 10 and later.
3. In the Basics page, input Name, Description and Publisher. Click Next when done.

4. In the Settings page, copy and paste the Emsisoft_Compliance.ps1 script. Just leave all of the options to default. Click Next when done.

5. Review your script and settings on this final page. Click Create once it is confirmed that everything looks good.

6. After you finish adding the custom script, click on Policies and click Create Policy.

7. Select the Platform i.e., Windows 10 and later and then click Create. The Basics page will be presented for you to provide the Name and Description of the policy. Click Next after providing this data.

8. In the Compliance Settings page click on Custom Compliance. Select Require setting for Custom compliance option.

9. Select your discovery script by clicking on Click to select. On the Select a discovery script form, select Emsisoft Anti-Malware Compliance Script then click the Select button.

10. After selecting the discovery script, select the JSON file that gets validated with your custom compliance settings.

11. Click Next once the JSON file is loaded and previewed.

12. In the Actions for noncompliance page just click Next.

13. In the Assignments page, you need to specify the Groups/Users/Devices that this compliance policy setting will be applied to. Click Next when done.

14. You are now on the final page. Review your compliance policy settings and click the Create button once all data is confirmed.

View Emsisoft Protection Compliance Policy Deployment Status.

1. In Intune Admin Center navigate to Devices|Compliance policies and select Emsisoft Anti-Malware Compliance Policy. You can see from this page the Device status, User status and Per-setting status.

2. Click on Device status and you will see the details for each device. You can also show per user by clicking on the User status as well as per compliance policy setting by clicking Per-setting status.


The post MS Intune Integration appeared first on Emsisoft Help.

]]>
Syslog/SIEM Integration https://www.emsisoft.com/en/help/3847/syslog-siem-integration/ Mon, 04 Jul 2022 23:57:05 +0000 https://help.emsisoft.com/?p=3847 Emsisoft’s Syslog integration allows you to forward security related events to an external Security Information and Event Management (SIEM) server. Use this feature for centralized monitoring and log aggregation from […]

The post Syslog/SIEM Integration appeared first on Emsisoft Help.

]]>
Emsisoft’s Syslog integration allows you to forward security related events to an external Security Information and Event Management (SIEM) server. Use this feature for centralized monitoring and log aggregation from multiple data sources. Any Syslog compatible server can be used, i.e. Splunk Connect for Syslog.

Syslog integration setup

Navigate to the ‘Settings’ page of your Emsisoft workspace and scroll down to ‘Integrations’.

1. Add a new integration configuration.

Syslog/SIEM integration configuration in Emsisoft Management Console

2. Select the event types that you wish to receive.

3. Select ‘Syslog’ in the ‘How’ dropdown box.

4. Enter your Syslog compatible server hostname or IP in the ‘Host’ field and specify its data receiving port.

5. Click ‘OK’ to enable the integration.

Secured connection

Data is always streamed through a secured TLS connection.

Data format

The only supported data format is CEF (Common Event Format).

Allow traffic in firewall

Please make sure that your Syslog server can be reached by Emsisoft’s infrastructure. The following IPs need to be allowed in your firewall configuration:

157.90.227.118
157.90.227.179
157.90.227.137
157.90.229.47

Note: In a future release we will add support for client certificates so you can restrict access to your Syslog server even further with explicit client authentication.

 

The post Syslog/SIEM Integration appeared first on Emsisoft Help.

]]>
Datto Integration https://www.emsisoft.com/en/help/3542/datto-integration/ Wed, 31 Mar 2021 04:32:58 +0000 https://help.emsisoft.com/?p=3542 Overview The Emsisoft integration components will help you to speed up the deployment of Emsisoft antivirus/anti-malware software. License activation and connection to the advanced Emsisoft Management Console can be done […]

The post Datto Integration appeared first on Emsisoft Help.

]]>
Overview

The Emsisoft integration components will help you to speed up the deployment of Emsisoft antivirus/anti-malware software. License activation and connection to the advanced Emsisoft Management Console can be done without any local user interaction required. You can start malware scans as needed and immediately receive scan reports back. The monitoring component checks the real-time protection state.

Features

The component “Emsisoft Anti-Malware [WIN]” allows to:

  • Silently install Emsisoft Anti-Malware using InstallToken or LicenseKey.
  • Start quick or malware scan and get the scan report.
  • Start online update.
  • Enable all real-time protection components.

The monitoring component “Emsisoft Anti-Malware Monitor [WIN]” checks whether:

  • Emsisoft protection is installed.
  • Emsisoft protection is up-to-date.
  • File Guard component is enabled.
  • Web Protection component is enabled.
  • Behavior Blocker with Anti-Ransomware is enabled.

Installation

Please navigate to the Datto Components Store and search for “Emsisoft”.

Search for ‘Emsisoft’ in the ComStore

Click “Add to my Component Library”.

Add component

Schedule a script to deploy Emsisoft

Navigate to the “Sites” section and select a site that you want to deploy Emsisoft protection software. Click the “Schedule a job” icon on top.

Select site

Click “Add a Component” and select the Emsisoft component from the list.

Include component in job

Select the action ‘Install’ and specify either an installation token that connects the new device directly with your Emsisoft Management Console workspace, or a license key. Leave the other fields blank/to defaults.

Installation

Save the job and run it to perform the installation.

Running a malware scan or pulling information from the software works in a similar way as illustrated.

 

The post Datto Integration appeared first on Emsisoft Help.

]]>