Installation on Windows
Prerequisites
The following prerequisites must be met for CTE to install and register to CipherTrust Manager properly:
-
CipherTrust Manager installed and configured.
-
CipherTrust Manager must contain a Client Profile. See Changing the Profile for more information.
-
CipherTrust Manager must contain a registration token. See Creating a Registration Token.
-
Optionally, the name of the host group you want this client to be a part of.
-
CipherTrust Manager must contain an LDT Communication Group if you will use CTE to guard data over CIFS/NFS shares using LDT policies. See Managing LDT Communication Groups for more information.
LDT over CIFS/NFS is not supported with DSM.
Port Selection
The following port information applies to both Windows and Linux systems.
Communication through a Firewall
If a protected client must communicate with CipherTrust Manager through a firewall, see the CipherTrust Manager documentation to determine which of the ports must be opened through the firewall.
Communication with CipherTrust Manager
The default port for http communication between CipherTrust Manager and the CTE Agent is 443. If this port is already in use, you can set the port to a different number during the CTE Agent installation.
Communication for LDT over CIFS/NFS
All nodes that intend to use LDT over CIFS/NFS GuardPoint must have the following ports open:
-
7024
-
7025
Note
When you are registering a CipherTrust Transparent Encryption client with CipherTrust Manager, you can manually include a destination port number, (Default: 443). If you enter a port value, using the syntax <hostname or IP address>:<port number>
then CipherTrust Transparent Encryption does not perform a port scan. CipherTrust Transparent Encryption uses the port number provided to verify the target server type using a TLS operation.
If you do not enter a port number, CipherTrust Transparent Encryption performs a port scan to check which ports are listening, including port 443.
Procedure
-
Log on to the host as a Windows user with System Administrator privileges.
-
Copy the CTE installation file onto the Windows system.
-
Double-click the installation file. The InstallShield Wizard for CipherTrust Transparent Encryption opens.
-
Verify the version of CTE you are installing and click Next.
-
On the License Agreement page, accept the License Agreement and click Next.
-
On the Destination Folder page, click Next to accept the default folder or click Change to select a different folder. When you are done, click Next.
• Thales recommends that you install CTE in the default installation directory,
C:\Program Files\Vormetric\DataSecurityExpert\agent\
• You must install the CTE Agent on the same drive as Windows. For example, if Windows is installed on theC:
drive, you must install the CTE Agent on theC:
drive. -
On the Ready to Install page, click Install. When the installation is finished, the Install Shield Wizard Completed window opens.
-
On the InstallShield Wizard Completed page, make sure the Register CipherTrust Transparent Encryption now option is selected and click Finish. The installer opens the Register CipherTrust Transparent Encryption wizard.