Installing Cloud Agents for Patch Management

Agent installations are managed in Cloud Agent (CA).

Qualys Cloud Agent Platform

Our revolutionary platform gives you continuous security updates through the cloud using lightweight cloud agents. Go to Cloud Agent (CA) app to install agents and activate them for PM. It's possible to activate existing agents for PM with other capabilities that are available in VM and PC modules.

Let's get started!

Choose CA (Cloud Agent) from the app picker.

Cloud Agent on the app picker.

What are the steps?

Create an activation key. Go to Activation Keys, click the New Key button. Give it a title, provision for the PM application and click Generate.

New Key option.

As you can see you can provision the same key for any of the other applications in your account.

Patch Management option while creating a new activation key.

Download Installer

Based on your preference, c2lick Install instructions next to Windows (.exe) or Linux (.rpm).

Install Instructions option for Windows.

Review the installation requirements and click Download

You'll run the installer on each system from an elevated command prompt, or use a systems management tool or Windows group policy.

Your agents should start connecting to our cloud platform.

For Windows agent:

Steps to install the Windows agent.

For Linux agent, to enable patch installation on Linux assets, ensure the following:

- For RHEL 6 and 7, the supported Cloud Agent version is 4.0 and later.

- For RHEL 8, CentOS 6 and 7, the supported Cloud Agent version is 4.6 and later.

- Supported YUM file version 3.2.29.

- YUM file must be configured with debugloglevel >= 2 Default is 2.

- The YUM file is configured with correct proxy settings.

- The endpoint is subscribed for active Red Hat subscriptions.

- The Agent must be running with root user or as sudo user. You can configure users by using the Agent configuration tool.

Download Linux Agent

Your host must be able to reach your Qualys Cloud Platform (or the Qualys Private Cloud Platform) over HTTPS port 443. On the Qualys Cloud Platform, go to Help > About to see the URL your host needs to access. For more information about connectivity requirements/proxy settings refer to the platform specific Cloud Agent Installation Guides available on https://www.qualys.com/documentation/.

Enable Cloud Agent to Download Patches

To ensure that the Cloud Agents can successfully download patches, you must whitelist the download URLs. Click here to refer to the list of URLs that you must whitelist.

Activate your agents for PM

Go to the Agents tab, and from the Quick Actions menu of an agent, click "Activate for FIM or EDR or PM or SA". (Bulk activation is supported using the Actions menu).

Activate for FIM or IOC or PM menu option under Quick Actions for an agent.

Activate PM in a CA configuration profile

Create a new CA configuration profile for Patch Management. On the PM tab, toggle “Enable PM module for this profile” to ON.

CA configuration profile - Enable PM module.

You're ready!

Select PM from the application picker and then create a deployment job to start installing patches on your assets.