Windows Installer is a lightweight application designed to install AgentX for Windows-based systems that enables the forwarding of logs and telemetry toward Logpoint. It has the ability to gather low-level system information from osquery, interrogate endpoints and perform additional investigation and response.
Release Date: January 28, 2025
Release Version: 1.5.0
Supported On:
- Windows Server 2016 / 2019 / 2022
- Windows 10 / Windows 10 Pro / Windows 11 / Windows 11 Pro
AgentX Version Compatibility Matrix: Link
Download: AgentX_Client_windows_1.5.0.msi
SHA256: 7ae92ae232437635d4188fbd8bc48e3a603691f339adc015144504b7deb7f14d
Documentation: AgentX guide
Key Information
- Don't change the Osquery path while installing AgentX Client as it causes a path not recognized error and interrupts installation. Go here to learn more about this issue.
- AgentX Client installation may occasionally pause and display a command prompt. In this case, press Enter to continue the installation.
- AgentX no longer provides active support and maintenance for AgentX Windows Installer versions older than v1.2.2.
Vulnerability Fixes
The following vulnerabilities are fixed:
Description |
Issue ID |
Reference ID |
---|---|---|
CVE-2023-42463 |
||
CVE-2023-50260 |
||
CVE-2022-40497 |
||
A vulnerability caused by limited access controls allowed li-admin users to access sensitive information about Logpoint deployment. | EDR-2835 | #85678 |
Previous Releases
Windows Installer v1.4.2
Release Date: October 21, 2024
Release Version: 1.4.2
Supported On:
- Windows Server 2016 / 2019 / 2022
- Windows 10 / Windows 10 Pro / Windows 11 / Windows 11 Pro
AgentX Version Compatibility Matrix: Link
Download: AgentX_Client_windows_1.4.2.msi
SHA256: 6bc4710745052c0899a7a11d289c0ed1c89f0a5229251617f477c4b74f652957
Documentation: AgentX guide
Key Information
- AgentX Cluster can only be configured on a Distributed Logpoint set up using an IP address.
- When using AgentX, keep the IP address as the Logpoint server alias in System Settings. Don’t modify it. If you do, an "AgentX server is down" error is triggered when adding a device in AgentX.
-
If there are multiple network interfaces, AgentX configuration is applied only to the primary interface. To implement the configuration on the secondary interface, your network administrator must configure it within your routing protocol.
- Downgrading AgentX Server from v1.4.2 to v1.2.0 after installing AgentX Manager v1.4.5 may cause log loss and is not recommended. If a downgrade is necessary, contact support.
- If you are using AgentX in distributed mode, then upgrading it from previous versions to v1.4.5 will break the connection between all nodes in the distributed architecture, stopping log transmission across the entire setup. The workaround can be found here.
- AgentX Manager v1.2.1 is not compatible with AgentX Server v1.4.2. Go to version compatibility matrix for more information.
- When upgrading the AgentX Server, please note that the new version may take some time to reflect due to its file size exceeding 500MB
- The installation of Windows Installer v1.4.2 might take more than one minute.
- Find the known issues for AgentX here.
Enhancements
Enhancements for Windows Installer v1.4.2:
Description |
Issue ID |
Reference ID |
---|---|---|
AgentX has added the default_minimal_windows template, which allows you to collect the following logs from Windows:
|
EDR-2012 | - |
Bug Fixes
The following issues are fixed:
Description |
Issue ID |
Reference ID |
---|---|---|
Windows Installer’s default configurations were collecting non-essential logs during enrollment, causing High CPU Usage. |
EDR-2036 | - |
Default SSL certificates that establish connection between AgentX Clients and Servers expired causing connection outages. | EDR-2053 | - |
Windows Installer v1.2.2
This update is only relevant for customers who are facing certificate expiry issues with AgentX Client v1.2.1.
If you have any queries or require assistance, contact Logpoint support.
Windows Installer is a lightweight application designed to install AgentX for Windows-based systems that enables the forwarding of logs and telemetry toward Logpoint. It has the ability to gather low-level system information from OSQquery, interrogate endpoints and perform additional investigation and response.
Release Date: August 7, 2024
Release Version: 1.2.2
Supported On:
- Windows Server 2012 / 2012 R2 / 2016 / 2019 / 2022
- Windows 10 / Windows 10 Pro / Windows 11 / Windows 11 Pro
Download: AgentX Client Windows
SHA256: 0470796b969b6a2ab0cc6dc1b526dad94b6ffe928fa5ab42efbda4db0deafebc
Documentation: AgentX guide
Bug Fix
Description |
Issue ID |
Reference ID |
---|---|---|
Default SSL certificates in AgentX Client has expired causing connection failure during enrollment | EDR-2053 | - |
Support
If you have any questions or require assistance, create a support ticket.
Comments
Article is closed for comments.