Go to the table of contents Go to the previous page Go to the next page View or print as PDF
Deployment and installation
Updated 14-Dec-2017
Hardware and operating systems
The following are minimum hardware recommendations for a machine with the Direct Connect endpoint installed:
*
*
*
The following operating systems are supported:
*
*
*
*
*
*
*
Networking Requirements
Firewall ports
*
*
*
Firewall settings
Local network infrastructure must allow access to Forcepoint Cloud IP range. (See Cloud service data center (cluster) IP addresses and port numbers for details.)
Fallback mode will engage if the Forcepoint Cloud IP range is blocked. In Fallback mode, the endpoint continues to prevent access to previously blocked sites, so users' computers are partially protected. For more information, see Fallback mode in the Forcepoint Endpoint End User's Guide.
Fallback mode
If Forcepoint Web Security Direct Connect Endpoint is unable to contact the Forcepoint cloud service it moves into Fallback mode. The device is now partially protected by applying filters cached from previously blocked site visits. For example, if the user previously saw a block page when visiting Facebook, then the user would also see a block page when visiting Facebook while in Fallback mode. This block page would indicate that it was a result of cached results. Once the network issue is resolved, normal filtering resumes.
Application support
By default, any running applications are subject to the same web enforcement policy on HTTP requests on port 80, and HTTPS requests on port 443.
Occasionally some applications do not work properly in conjunction with endpoint enforcement. This might occur with, for example, custom-designed applications for your organization, or applications that need to contact an Internet location for updates.
If you are experiencing problems with applications on end users' machines, the Endpoint Bypass tab on the Web > Endpoint page in the Forcepoint Security Portal enables you to add the names of any application executables that you want to bypass endpoint policy enforcement. For more information, see Endpoint bypass in the Forcepoint Security Portal Help.
Secure channel support
This version of the endpoint supports secure channel handling through the host system infrastructure. Depending on the version of Windows on the installation machine, the endpoint communicates with the cloud service over:
*
These channels follow the system proxy settings in a network environment where all traffic is proxied.
Obtaining endpoint client software
To obtain the latest Forcepoint Web Security Direct Connect Endpoint client software package, log onto the Forcepoint Security Portal, and then navigate to Web > Endpoint > General to download the endpoint installation package.
*
*
*
Deploying new Windows endpoints
There are a few ways to distribute the endpoint software on Windows clients, including virtual desktop clients running Windows:
*
*
For instructions, see "Deploying Windows Endpoints" in the Installation and Deployment Guide for Forcepoint Endpoint Solutions.
Upgrading existing deployments
Forcepoint Web Security Direct Connect Endpoint cannot be installed over an existing Forcepoint Web Security Proxy Connect Endpoint or TRITON AP-ENDPIONT Proxy Connect installation on an individual endpoint. You must uninstall Forcepoint Web Security Proxy Connect Endpoint or TRITON AP-ENDPIONT Proxy Connect on the endpoint machine before installing Forcepoint Web Security Direct Connect Endpoint.
Configuring endpoint behavior
Following are some of the configuration options available in the Forcepoint Security Portal for Forcepoint Web Security Direct Connect Endpoint. Note that all links go to the Forcepoint Technical Library.
*
*
*
*
*
*
Endpoint bypass settings.
*
*
*
*
*
Unsupported options
The following configuration options are not currently supported by the Web Direct Connect endpoint.
Functional:
*
*
*
*
*
*
*
*
*
*
*
Operational/Deployment:
*
*
*

Go to the table of contents Go to the previous page Go to the next page View or print as PDF
Copyright 2018 Forcepoint. All rights reserved.