Preparing a redistributable package for use with Microsoft Intune

If you use Microsoft Intune, you can use it to deploy a Symantec Agent to your managed devices. You create the installation packages through
Endpoint > Settings > Installation Package
.
To deploy the Symantec Agent package to Windows devices with Microsoft Intune, you should configure the package to use a silent installation.
To configure the installation package for silent installation
  1. In the cloud console, go to
    Settings > Installation Package
    .
  2. Press
    Advanced options
    to view advanced settings.
  3. Under
    Select installation type
    , select
    Silent
    from the drop-down menu.
  4. Press
    Save
    .
You can then create a direct installation package or an installation package creator.
  • To prepare a package for Microsoft Intune with a direct installation package
  • To prepare a package for Microsoft Intune with the installation package creator
To prepare a package for Microsoft Intune with a direct installation package
  1. In the cloud console, configure and then download the direct installation package file
    Symantec_Agent_setup.exe
    .
  2. Prepare a Windows App (intunewin) package.
    For detailed instructions on how to prepare and add a Win32 app to Intune, see Intune Standalone - Win32 app management.
    During the Windows App preparation, specify the setup file
    Symantec_Agent_setup.exe
    .
  3. In the Microsoft Intune console, create a new Windows app (Win32) application with the following application properties:
    • Program
      Specify the commands to install and uninstall this app.
      Install command:
      Symantec_Agent_setup.exe /ADMIN_INITIATED /FORCE_INSTALL /IGNORE_USER_SESSION /m
      Uninstall command:
      Symantec_Agent_setup.exe /UNINSTALL /ADMIN_INITIATED /FORCE_INSTALL /IGNORE_USER_SESSION
      Install behavior:
      System
    • Requirements
      Specify whether the package is for a 32-bit operating system or a 64-bit operating system, depending on the downloaded package type.
      For
      Detection rules
      , set the following values:
      Rule type:
      Registry
      Key path:
      Computer\HKEY_LOCAL_MACHINE\SOFTWARE\Symantec\Symantec Endpoint Protection\CurrentVersion
      Value name:
      PRODUCTID
      Detection method:
      Value exists
      For
      Return codes
      , set the following values:
      0
      Success
      1
      Soft reboot
      2
      Soft reboot
      3
      Failed
    You can find the full list of error codes on the following page:
  4. In the Microsoft Intune console, assign the app to those groups that have users or devices.
    For detailed instructions, see Assign apps to groups with Microsoft Intune.
  1. To prepare a package for Microsoft Intune with the installation package creator
  2. In the cloud console, configure and then download the installation package creator for the required operating systems.
  3. Run the installation package creator to create the redistributable installation package.
    The files of types .msi and .mst are only used with an Active Directory GPO deployment, and can be deleted.
  4. Prepare a Windows App (intunewin) package.
    For detailed instructions on how to prepare and add a Win32 app to Intune, see Intune Standalone - Win32 app management.
    During the Windows App preparation, specify the setup file
    Symantec_Agent_setup.exe
    .
  5. In the Microsoft Intune console, create a new Windows app (Win32) application with the following application properties:
    • Program
      Specify the commands to install and uninstall this app.
      Install command:
      Symantec_Agent_install.exe /SILENT
      Uninstall command:
      Symantec_Agent_install.exe /SILENT /UNINSTALL
      Install behavior:
      System
    • Requirements
      Specify whether the package is for a 32-bit operating system or a 64-bit operating system, depending on the downloaded package type.
      For
      Detection rules
      , set the following values:
      Rule type:
      Registry
      Key path:
      Computer\HKEY_LOCAL_MACHINE\SOFTWARE\Symantec\Symantec Endpoint Protection\CurrentVersion
      Value name:
      PRODUCTID
      Detection method:
      Value exists
      For
      Return codes
      , set the following values:
      0
      Success
      1
      Soft reboot
      2
      Soft reboot
      3
      Failure
    You can find the full list of error codes on the following page:
  6. In the Microsoft Intune console, assign the app to those groups that have users or devices.
    For detailed instructions, see Assign apps to groups with Microsoft Intune.