Installing a one-server topology on Windows Server 2003
Applies To: Forefront Client Security
This topic gives an overview about how to install Client Security on a one-server topology on Windows Server 2003.
Before installing Client Security, make sure you have completed the preinstallation tasks. For more information, see Preparing to install Client Security.
Important If you are installing multiple Client Security deployments, you must use unique computer names for each collection database server and reporting database server, as well as unique Management group names. Unique names allow you to use the Client Security Enterprise Manager tool to aggregate reporting and to manage your Client Security environment from a single Client Security console.
Installing the software prerequisites
It is highly recommended that you install the software prerequisites in exactly the order shown in the following table.
Computer | Task | Steps |
---|---|---|
Client Security server |
Install software prerequisites. |
Verify that all critical security and computer updates have been installed, and then begin installing the software prerequisites. For detailed instructions, see Installing the software prerequisites for a one-server topology. |
Install IIS and ASP.NET. |
Open the Manage Your Server window from Administrative Tools, and then add the Application Server role. |
|
Install SQL Server 2005 with SP2 or SP1. |
When installing SQL Server 2005, make sure to do the following:
|
|
Install MMC 3.0. |
Install MMC 3.0 from the Microsoft Download Center (https://go.microsoft.com/fwlink/?LinkID=77419). |
|
Install GPMC with SP1. |
Install GPMC with SP1 from the Microsoft Download Center (https://go.microsoft.com/fwlink/?LinkId=77421). |
|
Install and synchronize WSUS with SP1. |
After installing, make sure to synchronize WSUS. |
|
Add the Client Security server site to the Local intranet zone in Microsoft Internet Explorer®. |
In Internet Explorer, on the Tools menu, click Internet Options. On the Security tab, add the reporting server site to the Local intranet zone. |
Verifying a successful installation of the software prerequisites
Before continuing, it is recommended that you verify that the software prerequisites have been successfully installed and configured, as described in the following table. For detailed instructions, see Verifying the software prerequisites for a one-server topology.
Computer | Task | Steps |
---|---|---|
Client Security server |
Verify and record the reporting server URL. |
In Internet Explorer, on the Client Security server, verify that you can connect to the reporting server URL. Record the URL, because you will need to provide it when installing Client Security. |
Installing Client Security for a one-server topology
In the Setup wizard, you will provide server names, SQL Server instances, and service accounts you have already set up. In addition, you must specify the following:
Size of the databases Make sure the size does not exceed the space on your server.
Management group name You can enter the name you want or use the default value (ForefrontClientSecurity). Record the name that you enter, because you will need to provide it when configuring Client Security.
For detailed instructions, see Installing Client Security on a one-server topology.
Computer | Task | Steps |
---|---|---|
Client Security server |
Install Client Security. |
Run the Server Setup wizard. On the Component Installation page, select all the check boxes. Complete the steps in the wizard. |
Configuring Client Security for a one-server topology
After installing Client Security, you must configure it by following the steps in the following table. While completing the Configuration wizard, you will provide server names, SQL Server instances, service accounts, and the management group name you have already set up.
For detailed instructions, see Configuring Client Security on a one-server topology.
Computer | Task | Steps |
---|---|---|
Client Security server |
Configure Client Security. |
Open the Microsoft Forefront Client Security Console and run the Configuration wizard. Complete the steps in the wizard. |
All computers |
Grant permissions to service accounts. |
It is highly recommended that you follow the detailed instructions in Configuring Client Security on a one-server topology. |
Verifying your Client Security installation
To verify a successful installation of Client Security and a successful deployment of the client components to the client computers, follow the steps described in the following table. For more information, see Verifying the installation of Client Security on a one-server topology.
Computer | Task | Steps |
---|---|---|
Client Security server |
Open the Client Security console. |
Make sure you can view all of the data in the console, including the 14-day History chart. |
Browse the reports. |
Make sure you can view all of the data in the reports. |