2.2 Endpoint Agent Deployment
Describe endpoint agent deployment at scale across the enterprise on end-user devices (Windows, Mac, and Room OS)
ThousandEyes Endpoint Agents can be deployed at scale across enterprise environments using various methods tailored to specific operating systems and business scenarios.
Deployment Methods
Windows Deployment
Active Directory Environments: For enterprises using Active Directory, deploying the ThousandEyes Endpoint Agent and browser extension via Group Policy Objects (GPOs) is typically the most efficient approach. This method ensures centralized management and streamlined updates for domain-joined Windows machines.
Cloud-Managed Environments: If your organization leverages cloud-based device management, Microsoft Intune provides the flexibility to deploy and manage Endpoint Agents effectively across diverse Windows devices, including those in remote or hybrid work setups.
Cisco Secure Client Deployment
Organizations already utilizing Cisco Secure Client (formerly AnyConnect) across their network can leverage this existing infrastructure for streamlined Endpoint Agent deployment. This offers flexibility in deployment points, including:
- VPN Headends
- Firewalls
- Identity Services Engine (ISE)
This approach can be particularly advantageous for managing deployments across diverse operating systems where Cisco Secure Client is already in place.
Mac Deployment
For Mac-centric environments or those with a mix of Windows and macOS devices, Munki is the recommended and fully supported option for large-scale Endpoint Agent deployment.
While other tools like JAMF can be used for deployment, Munki is the officially supported option. Other deployment methods, including JAMF, are supported on a best-effort basis for any issues faced during deployment.
RoomOS Deployment
If your organization uses Cisco video conferencing systems, you can easily deploy the ThousandEyes Endpoint Agent to RoomOS devices through the native integration with Webex Control Hub. This integration allows administrators to:
- Activate and manage Endpoint Agents across their organization.
- Enable the integration for all devices or select specific ones.
Deployment is handled within the Webex Control Hub admin console's Devices section.
Resources
- Install Endpoint Agent for Windows via Group Policy
- Guidance for Windows Software Deployment Teams
- Monitoring Webex Meeting with EPA
- Secure Client Integration
- ThousandEyes Deployment Using Cisco Secure Client
- Deployment ThousandEyes Endpoint Agent Using Cisco Secure Client
Sample Questions
2.2 Question 1
Which deployment option should a network administrator use to deploy the ThousandEyes Endpoint Agent to all users on their internal domain using a Microsoft Domain Controller?
2.2 Question 2
An administrator has set up GPO properly, but realized ThousandEyes EPA was not deployed on one of the office PCs. What is the appropriate first step?
2.2 Question 3
Which strategy is most effective for a scalable, secure, and minimally disruptive deployment of ThousandEyes Endpoint Agents to Windows users?