Install WatchGuard Endpoint Security on Virtual Computers — Non-Persistent VDI Environment (Windows Computers)

Applies To: WatchGuard Advanced EPDR, WatchGuard EPDR, WatchGuard EDR, WatchGuard EPP

In environments with very specific characteristics, it might be necessary to follow the recommendations provided by the virtualization vendor to adapt these general instructions to your needs. For a customized solution, contact WatchGuard Support.

This installation procedure creates a gold image to be deployed later to virtual computers on the network. The procedure to manage non-persistent VDI environments consists of three steps:

After you generate and update the gold image, Verify the Procedures.

Caution: It is important that you follow these procedures step-by-step and when complete, you should verify that all cloned devices are displayed with a unique ID in the management UI. Devices that are cloned incorrectly can impact the reliability of the Advanced Protection and can severely compromise the security of your infrastructure. If you only see a single device in the management UI, you must repeat the process, rebuild the gold image, and deploy it again to the affected endpoints as soon as possible.

Prerequisites

  • The computer used to generate the gold image must have an Internet connection.
  • Endpoint Agent Tool for Windows must be run as administrator. It has a graphic interface but can also be run from the command line. If you run the tool from a .bat or .cmd file, you must use this command: start /wait "". For example, if the instruction is: EndpointAgentTool.exe /sg, you would type: start /wait "" "C:\Path\EndpointAgentTool.exe" /sg

Verify the Procedures

Make sure that the procedures were successful. If the list only includes a single device, you must remove the device from the Computers list and re-start this procedure (that is, rebuild the gold image and deploy it again to the affected endpoints).

WatchGuard Endpoint Security uses the Fully Qualified Domain Name to identify computers whose IDs were deleted with the Endpoint Agent Tool and were marked as a gold image.

To view a list of non-persistent VDI computers:

  1. In the management UI, select Settings > Computer Maintenance.
  2. In the VDI Environments section, click the Show non-persistent computers link.
    The Computers list shows the non-persistent computers.

Related Topics

Install the Endpoint Software on Virtual Environments with a Template or Gold Image (Windows Computers)

Install WatchGuard Endpoint Security on Virtual Computers — Persistent VDI Environment (Windows Computers)