home home
Other Sites
  • ArcticWolf.com
  • Unified Portal
  • Arctic Circle Community
  • Technical Support Knowledge Base
Request a Demo Internal Documentation
  • Aurora Endpoint Security
  • Managed Detection and Response (MDR)
  • Aurora Attack Surface Management (Aurora ASM)
  • Aurora Vulnerability Management (Aurora VM)
  • Managed Security Awareness (MA)
  • Incident Readiness and Response
  • Arctic Wolf Unified Portal
  • MSP Portal
  • Authentication
  • Sensors, Scanners, and Log Collectors
  • Arctic Wolf Agent
  • Onboarding Portal
  • Active Response, Log Forwarding, and Security Monitoring
  • Active Directory
  • Cloud Security Posture Management (CSPM)
  • IT Service Management (ITSM)
  • Developer and OEM
  • Product Updates
  • Additional Information about Products and Services
  • Legacy Risk Dashboard
  • Legacy Analytics
  • English
  • 日本語
  • Deutsch
  • Français
Sign In
  • Aurora Endpoint Security
  • Managed Detection and Response (MDR)
  • Aurora Attack Surface Management (Aurora ASM)
  • Aurora Vulnerability Management (Aurora VM)
  • Managed Security Awareness (MA)
  • Incident Readiness and Response
  • Arctic Wolf Unified Portal
  • MSP Portal
  • Authentication
  • Sensors, Scanners, and Log Collectors
  • Arctic Wolf Agent
  • Onboarding Portal
  • Active Response, Log Forwarding, and Security Monitoring
  • Active Directory
  • Cloud Security Posture Management (CSPM)
  • IT Service Management (ITSM)
  • Developer and OEM
  • Product Updates
  • Additional Information about Products and Services
  • Legacy Risk Dashboard
  • Legacy Analytics
  • English
  • 日本語
  • Deutsch
  • Français
  • ArcticWolf.com
  • Unified Portal
  • Arctic Circle Community
  • Technical Support Knowledge Base
Request a Demo
Internal Documentation
Sign In

Aurora Endpoint Security

Aurora Endpoint Security
  • Aurora Endpoint Security Setup
    • Aurora Endpoint Security Setup Guide
      • Configuration
        • Default Settings
        • Export, Import, or Reset the Configuration
          • Export
          • Import
          • Reset
      • Prerequisites
        • Endpoint Defense Console
        • Aurora Protect Desktop
          • Root certificates required for the Aurora Protect Desktop agent for Windows
        • Aurora Focus
        • Aurora Protect Mobile App
        • Aurora Endpoint Security Network
        • Aurora Endpoint Security Proxy
      • Access the Console
        • Sign In
        • Authentication
          • Configure Authentication for Sign-In
            • Add OTP
            • Add IDP SAML
            • Add an Authenticator
              • Considerations for adding SAML authenticators
            • Update IDP SAML
            • Generate an SSO Callback URL
            • Update the domain in a legacy SSO callback URL in the IDP environment
              • Entra (SAML)
              • Okta (OIDC)
              • Okta (SAML)
              • OneLogin (OIDC)
              • OneLogin (SAML)
              • PingOne (OIDC)
              • PingOne (SAML)
            • Remove OTP
          • Configure the Default Authentication Policies
          • Add a User Policy for Authentication
          • Custom Authentication
            • Configure Custom Authentication
            • Migrate External IDPs from Custom Authentication
            • Migrate Custom Authentication Settings
      • Administrator Configuration
        • Add an Administrator
        • Permissions of Default Administrator Roles
        • Add a Role
        • Configure Session and Idle Timeout Limits
      • Add and Configure a Zone
      • Migrate from Legacy Zones to New Zones
        • Create a Device Query
        • Create a New Zone
        • Identify and Organize Zones
        • Troubleshooting
      • Setting up Aurora Protect Desktop
        • Testing your Aurora Protect Desktop deployment
          • Create an Aurora Protect Desktop test policy
          • Exclusions and when to use them
        • Create and manage a device policy
          • Device policy: Malware Protection settings
          • Device policy: Memory Protection settings
            • Windows examples of wildcards used in memory protection exclusions
            • macOS examples of wildcards used in memory protection exclusions
          • Device policy: Script Control settings
            • Examples of script control exclusions
          • Device policy: External Device Control settings
          • Device policy: Application Control settings
          • Device policy: Agent Settings
        • Installing the Aurora Protect Desktop agent for Windows
          • Install the Windows agent
          • Windows installation parameters
          • Install Aurora Protect using Group Policy
        • Installing the Aurora Protect Desktop agent for macOS
          • Install the Aurora Protect Desktop agent for macOS
            • Aurora Protect Desktop configuration requirements for macOS and later
            • Commands for installing the macOS agent using the command line
          • Troubleshooting macOS installations
        • Installing the Aurora Protect Desktop agent for Linux
          • Linux installation prerequisites
            • Create a configuration file for the Linux agent installation
          • Enable Linux Secure Boot
          • Install the Linux agent automatically
          • Install the Linux agent manually
          • Updating the Linux driver
            • Automatically update the Linux driver
            • Manually update the Linux driver
          • Upgrade the Linux agent manually
          • Linux commands for the agent
          • Troubleshooting Linux agent installations
            • Start the UI manually
            • Error: Multilib version problems found
        • Require users to provide a password to remove the Aurora Protect Desktop and Aurora Focus agents
      • Setting up Aurora Focus
        • Install the Aurora Focus agent on devices
          • Configuration requirements for macOS 11.x and later
          • OS commands for the Aurora Focus agent
        • Enable and configure Aurora Focus
          • Aurora Focus sensors
          • Aurora Focus optional sensors
          • Data structures that Aurora Focus uses to identify threats
        • Configuring the Aurora Focus Behavioral Detection Engine
          • Transition Aurora Focus devices from detection rule sets to the Behavioral Detection Engine
          • Create a behavioral detection policy
            • Automated responses by detection type
          • Bulk change MITRE technique configurations in a BDE policy
          • Reviewing and searching for alerts generated by the Behavioral Detection Engine
          • Configure exceptions for the Behavioral Detection Engine
          • Approve updates to the Behavioral Detection Engine
          • Additional resources for BDE
      • Manage Updates for the Aurora Protect Desktop and Aurora Focus Agents
      • Best practices for deploying Aurora Protect Desktop on Windows virtual machines
        • Requirements and considerations for using Aurora Protect Desktop on virtual machines
        • Deploy Aurora Protect Desktop on virtual machines
        • Update Aurora Protect Desktop on cloned devices
      • Using RMM solutions to install the Endpoint Defense agents on devices
        • Use Datto RMM to install or remove the Endpoint Defense agents
        • Use Kaseya VSA 10 to install or remove the Endpoint Defense agents
      • Add users and devices
        • Add Aurora Protect Mobile app and Gateway users
        • Add user groups
          • Add a directory group
          • Add a local group
        • Assign policies to administrators, users, and groups
          • Rank policies
      • Setting up Aurora Protect Mobile
        • Create an Aurora Protect Mobile policy
        • Integrating Aurora Endpoint Security with Microsoft Intune to respond to mobile threats
          • Connect Aurora Endpoint Security to Intune
        • Use Intune app protection policies with Aurora Protect Mobile
      • Connect Aurora Endpoint Security to an External Service
        • Connect Aurora Endpoint Security to Mimecast
        • Connect Aurora Endpoint Security to Okta
      • Download Aurora software
Home ▸ Aurora Endpoint Security ▸ Aurora Endpoint Security Setup ▸ Aurora Endpoint Security Setup Guide
Share this page
  • LinkedIn
  • X
  • Facebook
  • Email
Print page

Setting up Aurora Focus

Step

Action


Step 1

Review the software requirements.


Step 2

Install the Aurora Focus agent on devices.


Step 3

Enable and configure Aurora Focus.

Manage updates for the Aurora Protect Desktop and Aurora Focus agents

Aurora Endpoint Defense Aurora Endpoint Security Installation or Configuration Public

Last updated: March 30, 2026

Previous Require users to provide a password to remove the Aurora Protect Desktop and Aurora Focus agents Next Install the Aurora Focus agent on devices

Explore Topics

Aurora Endpoint Security Managed Detection and Response (MDR) Aurora Attack Surface Management (Aurora ASM) Aurora Vulnerability Management (Aurora VM) Managed Security Awareness (MA) Incident Readiness and Response Arctic Wolf Unified Portal MSP Portal Authentication Sensors, Scanners, and Log Collectors Arctic Wolf Agent Onboarding Portal Active Response, Log Forwarding, and Security Monitoring Active Directory Cloud Security Posture Management (CSPM) IT Service Management (ITSM) Developer and OEM Product Updates Additional Information about Products and Services Legacy Risk Dashboard Legacy Analytics
Arctic Wolf Help Documentation
Privacy Policy
Terms of Use
Cookie Policy
Accessibility Statement
Information Security
Sustainability Statement
© 2026 Arctic Wolf Networks Inc. All Rights Reserved.