...
Paso 3. Es altamente recomendable verificar que está instalado el Agente EDR de Crowdstrike. En caso contrario, puede ver el procedimiento de instalación a continuación: el procedimiento de instalación aquí.
- Verificar incompatibilidad de versiones NO soportadas:
- All pre-GA versions/builds of Windows – Windows Insider Preview, beta, etc – unless specifically stated in a Release Note. Including but not limited to:
- Windows 11 Preview Builds
- Windows Server 2022 Preview Builds
- Windows 7 hosts without a CrowdStrike Extended Support subscription as of January 14, 2021 [https://supportportal.crowdstrike.com/s/article/SupportAnnouncement-Falcon-Sensor-Support-Policy-for-Windows-7-SP1-and-Windows-Server-2008-R2-SP1] .
- Windows Server 2008 R2 hosts without a CrowdStrike Extended Support subscription as of January 14, 2021
[https://supportportal.crowdstrike.com/s/article/Support-Announcement-Falcon-Sensor-Support-Policy-for-Windows-7-SP1-and-Windows-Server-2008-R2-
SP1] . - Windows Server 2008 (non-R2), which is based on the Vista kernel
- Windows Server Core, all versions other than 2016 and 2019
- Windows 10 64-bit v1511, aka Threshold 2
- Windows 10 64-bit v1703, aka Redstone 2 ("RS2")
- Windows 10 64-bit v1709, aka Redstone 3 ("RS3")
- Windows 10 64-bit v1803, aka Redstone 4 ("RS4")
- Windows 10 64-bit v1903, aka 19H1
- All 32-bit versions of Windows 10 not listed above
- All 32-bit versions of Windows 8.1
- All versions of Windows 8
- Container-based Windows OS solutions, including but not limited to Docker, are not currently supported.
- Windows Embedded Standard 7 is unsupported. This version is independent from Windows 7 Embedded POS Ready, which is the only Embedded version we
do support.
- All pre-GA versions/builds of Windows – Windows Insider Preview, beta, etc – unless specifically stated in a Release Note. Including but not limited to:
- IMPORTANTE Verificar que en el equipo donde se vaya a desplegar el EDR tiene comunicación con las siguientes urls y debe aparecer como resultado la palabra "ok":
- Verificar incompatibilidad de versiones NO soportadas:
EU-1
ts01-lanner-lion.cloudsink.net
lfodown01-lanner-lion.cloudsink.net
- Para Windows.
En Servidores: Descargar el siguiente instalador y seguir las instrucciones que se indican en el fichero Readme-Server.txt
- Para Windows.
En PCs. Descargar el siguiente instalador y seguir las instrucciones que se indican en el fichero Readme-PC.txt
...
Procedimiento completo: Falcon Sensor for Windows Deployment _ Documentation _ Support _ Falcon.pdf.
- Para Linux.
- Verificar compatibilidad del Kernel en el procedimiento completo.
- Instalar con el comando apropiado según distribución (ver procedimiento completo). La instalación requiere privilegios de sudo.
- Establecer el CID que figura en el punto anterior.
- Establecer opciones de proxy si se requieren
- Establecer Grouping_Tags. Se recomienda usar la cadena “SERVERS_PROVINCIA” Sustituyendo provincia por la que corresponda.
- Para Linux.
Version Linux | Ejecutable sensor EDR |
|---|---|
| Debian | |
| RHEL_CentOS_Oracle6 | |
| RHEL_CentOS_Oracle7 | |
| RHEL_CentOS_Oracle8 | |
| Ubuntu |
...