Skip to content

Commit ee95d1c

Browse files
enable access monterey
1 parent 636041b commit ee95d1c

File tree

3 files changed

+8
-112
lines changed

3 files changed

+8
-112
lines changed

raw-migrated-files/docs-content/serverless/security-install-endpoint-manually.md

Lines changed: 0 additions & 88 deletions
This file was deleted.

raw-migrated-files/toc.yml

Lines changed: 0 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -266,7 +266,6 @@ toc:
266266
- file: docs-content/serverless/security-get-started-with-kspm.md
267267
- file: docs-content/serverless/security-host-isolation-exceptions.md
268268
- file: docs-content/serverless/security-ingest-data.md
269-
- file: docs-content/serverless/security-install-endpoint-manually.md
270269
- file: docs-content/serverless/security-interactive-investigation-guides.md
271270
- file: docs-content/serverless/security-isolate-host.md
272271
- file: docs-content/serverless/security-kspm.md

solutions/security/configure-elastic-defend/enable-access-for-macos-monterey.md

Lines changed: 8 additions & 23 deletions
Original file line numberDiff line numberDiff line change
@@ -6,20 +6,6 @@ mapped_urls:
66

77
# Enable access for macOS Monterey
88

9-
% What needs to be done: Align serverless/stateful
10-
11-
% Use migrated content from existing pages that map to this page:
12-
13-
% - [x] ./raw-migrated-files/security-docs/security/deploy-elastic-endpoint.md
14-
% - [ ] ./raw-migrated-files/docs-content/serverless/security-install-endpoint-manually.md
15-
16-
% Internal links rely on the following IDs being on this page (e.g. as a heading ID, paragraph ID, etc):
17-
18-
$$$system-extension-endpoint$$$
19-
20-
$$$enable-fda-endpoint$$$
21-
22-
$$$allow-filter-content$$$
239

2410
To properly install and configure {{elastic-defend}} manually without a Mobile Device Management (MDM) profile, there are additional permissions that must be enabled on the host before {{elastic-endpoint}}—the installed component that performs {{elastic-defend}}'s threat monitoring and prevention—is fully functional:
2511

@@ -32,7 +18,6 @@ The following permissions that need to be enabled are required after you [config
3218
::::
3319

3420

35-
3621
## Approve the system extension for {{elastic-endpoint}} [system-extension-endpoint]
3722

3823
For macOS Monterey (12.x), {{elastic-endpoint}} will attempt to load a system extension during installation. This system extension must be loaded in order to provide insight into system events such as process events, file system events, and network events.
@@ -57,24 +42,24 @@ The following message appears during installation:
5742
:::
5843

5944

60-
#### Approve network content filtering for {{elastic-endpoint}} [allow-filter-content]
45+
## Approve network content filtering for {{elastic-endpoint}} [allow-filter-content]
6146

62-
After successfully loading the {{elastic-endpoint}} system extension, an additional message appears, asking to allow {{elastic-endpoint}} to filter network content.
47+
After successfully loading the {{elastic-endpoint}} system extension, an additional message appears, asking to allow {{elastic-endpoint}} to filter network content.
6348

64-
:::{image} ../../../images/security-filter-network-content.png
65-
:alt: filter network content
66-
:::
49+
:::{image} ../../../images/security-filter-network-content.png
50+
:alt: filter network content
51+
:::
6752

6853

69-
* Click **Allow** to enable content filtering for the {{elastic-endpoint}} system extension. Without this approval, {{elastic-endpoint}} cannot receive network events and, therefore, cannot enable network-related features such as [host isolation](/solutions/security/endpoint-response-actions/isolate-host.md).
54+
Click **Allow** to enable content filtering for the {{elastic-endpoint}} system extension. Without this approval, {{elastic-endpoint}} cannot receive network events and, therefore, cannot enable network-related features such as [host isolation](/solutions/security/endpoint-response-actions/isolate-host.md).
7055

7156

7257
## Enable Full Disk Access for {{elastic-endpoint}} [enable-fda-endpoint]
7358

7459
{{elastic-endpoint}} requires Full Disk Access to subscribe to system events via the {{elastic-defend}} framework and to protect your network from malware and other cybersecurity threats. To enable Full Disk Access on endpoints running macOS Catalina (10.15) and later, you must manually approve {{elastic-endpoint}}.
7560

7661
::::{note}
77-
The following instructions apply only to {{elastic-endpoint}} running version 8.0.0 and later. To see Full Disk Access requirements for the Endgame sensor, refer to Endgame’s documentation.
62+
The following instructions apply only to {{elastic-endpoint}} running version 8.0.0 and later. In {{serverless-short}}, versions 7.17.0 and earlier are not supported. To see Full Disk Access requirements for the Endgame sensor, refer to Endgame’s documentation.
7863
::::
7964

8065

@@ -102,7 +87,7 @@ The following instructions apply only to {{elastic-endpoint}} running version 8.
10287
:::
10388

10489

105-
If the endpoint is running {{elastic-endpoint}} version 7.17.0 or earlier:
90+
In {{stack}}, if the endpoint is running {{elastic-endpoint}} version 7.17.0 or earlier:
10691

10792
1. In the lower-left corner of the pane, click the **Lock button**, then enter your credentials to authenticate.
10893
2. Click the **+** button to view **Finder**.

0 commit comments

Comments
 (0)