Installing Integrity Monitor
Tanium as a Service automatically handles module installations and upgrades.
For information about configuring Integrity Monitor for Tanium as a Service (TaaS), see Configuring Integrity Monitor.
Use the Tanium Console Solutions page to install Integrity Monitor and choose either automatic or manual configuration:
- Automatic configuration with default settings (Tanium Core Platform 7.4.2 or later only): Integrity Monitor is installed with any required dependencies and other selected products. After installation, the Tanium Server automatically configures the recommended default settings. This option is the best practice for most deployments. For more information about the automatic configuration for Integrity Monitor, see Import Integrity Monitor with default settings.
- Manual configuration with custom settings: After installing Integrity Monitor, you must manually configure required settings. Select this option only if Integrity Monitor requires settings that differ from the recommended default settings. For more information, see Import Integrity Monitor with custom settings.
- Read the release notes.
- Review the Integrity Monitor requirements.
- If you are upgrading from a previous version, see Upgrading Integrity Monitor.
- Assign the correct roles to users for Integrity Monitor. Review the User role requirements.
- To import the Integrity Monitor solution, you must be assigned the Administrator reserved role or a role that has the Import Signed Content permission.
- To configure the Integrity Monitor action group, you must be assigned the Administrator reserved role, Content Administrator reserved role, or a role that has the Action Group write permission.
When you import Integrity Monitor with automatic configuration, the following default settings are configured:
The following default settings are configured:
The service account is set to the account that you used to import the module.
Configuring a unique service account for each Tanium solution is an extra security measure to consider in consultation with the security team of your organization. See Configure the Integrity Monitor service account.
|Watchlist||A watchlist is created for each supported operating system (Windows, Linux, AIX, and Solaris) based on the Critical System Files template for the operating system.|
A monitor is created to deploy the watchlist for each supported operating system.
The Windows monitor is targeted only to Windows Server computer groups: All Windows Server 2008 R2, All Windows Server 2012, All Windows Server 2012 R2, All Windows Server 2016, and All Windows Server 2019.
All other monitors are targeted to the associated All <Operating System> computer group: All Linux
If one or more of the targeted operating systems are not used in your environment, delete the associated monitors.
|Monitor deployments||The monitors are deployed to endpoints.|
To import Integrity Monitor and configure default settings, be sure to select the Apply Tanium recommended configurations check box while performing the steps in Tanium Console User Guide: Import all modules and services. After the import, verify that the correct version is installed: see Verify Integrity Monitor version.
To import Integrity Monitor without automatically configuring default settings, be sure to clear the Apply Tanium recommended configurations check box while performing the steps in Tanium Console User Guide: Import, re-import, or update specific solutions. After the import, verify that the correct version is installed (see Verify Integrity Monitor version).
To configure the service account, see Configure the Integrity Monitor service account.
When you start the Integrity Monitor workbench for the first time, the Tanium Server checks whether all the Tanium modules and shared services (solutions) that are required for Integrity Monitor are installed at the required versions. The Integrity Monitor workbench cannot load unless all required dependencies are installed. If you selected Tanium Recommended Installation when you imported Integrity Monitor, the Tanium Server automatically imported all your licensed solutions at the same time. Otherwise, if you manually imported Integrity Monitor and did not import all its dependencies, the Tanium Console displays a banner that lists the dependencies and the required versions. See Solution dependencies.
Perform the following steps if a banner indicates any Integrity Monitor dependencies are not installed:
- Install the dependencies as described in Tanium Console User Guide: Import, re-import, or update specific solutions.
- From the Main menu, go to Modules > Integrity Monitor to open the Integrity Monitor Overview page and verify that the Console no longer displays a banner to list missing dependencies.
For the steps to upgrade Integrity Monitor, see Tanium Console User Guide: Import, re-import, or update specific solutions. After the upgrade, verify that the correct version is installed: see Verify Integrity Monitor version.
After you upgrade Integrity Monitor, see Upgrading Integrity Monitor for additional tasks.
After you import or upgrade Integrity Monitor, verify that the correct version is installed:
- Refresh your browser.
- From the Main menu, go to Modules > Integrity Monitor to open the Integrity Monitor Overview page.
- To display version information, click Info .
Last updated: 1/24/2022 11:52 PM | Feedback