Install Arctic Wolf Agent on a single Windows endpoint using the Agent installer
You can install Arctic Wolf® Agent on a single Windows endpoint using the Agent installer.
-
Agent is designed to maintain a minimal footprint on all systems, but Arctic Wolf recommends some OS requirements. Arctic Wolf cannot guarantee functionality on virtual machine (VM) environments if resources do not meet recommended levels.
-
Native ARM architecture is not currently supported. Support for ARM-based systems is limited to emulated mode. Agent Containment Driver is not supported on ARM architecture.
These resources are required:
-
To correctly view Agent risks in the Unified Portal, Windows Agent version 2023-02_138 or later is required
-
Administrator permissions or the ability to do administrator or root level functions
-
A supported Windows operating system. For more information, see Agent support for Windows.
-
The minimum system resources. For more information, see Agent hardware requirements.
These actions are required:
-
Confirm the installation location. Install Agent on the same drive as your ProgramFilesFolder, such as Program Files or Program Files (x86). This is usually the C:\.
-
Make sure outbound access is available for ports 443 and 1514.
Configure your environment firewall
Configure your firewall to allow traffic to Agent DNS hostnames.
Add Agent processes to the allowlist
If you install Agent and an antivirus, endpoint scanner, Endpoint Detection and Response (EDR) solution, Unified Threat Management (UTM) solution, or similar software, add Agent processes to the allowlist in those applications to maintain stable CPU and memory utilization.
Trust Agent scanner signed files
You must trust Agent scanner signed files to ensure Agent vulnerability and benchmark scanning is not impacted by other endpoint security tools installed on the endpoint.
If you partnered with Arctic Wolf as an Aurora Vulnerability Management (Aurora VM) customer before December 11, 2025, your vulnerability and benchmark scanning uses the PowerShell console by default. Scans fail if the console usage is blocked by endpoint security tools.
- If you partnered with Arctic Wolf before this date and you want this feature, complete the Trust Agent scanner signed files on Windows procedure, and then contact your Concierge Security® Team (CST) to enable this feature.
- If you partnered with Arctic Wolf on or after this date, complete the Trust Agent scanner signed files on Windows procedure.
Enable VBScript
VBScript must be enabled to install Arctic Wolf Agent.
- Go to .
- Select View features.
- In the search dialog, enter VBSCRIPT, and then select the check box for the VBScript search result.
- To enable the VBScript feature, click Next.
Install Arctic Wolf Agent on Windows using the Agent installer
- Download the Agent installer:
- Right-click the MSI file.
- Click Open to run the installation.
- Follow the prompts to proceed with the installation.
- Contact your Arctic Wolf Customer Success Manager or your Concierge Security® Team (CST) at security@arcticwolf.com to confirm that Agent data is reaching Arctic Wolf.