Insight Agent requirements - an overview

The Insight Agent has several system, network, and security policy requirements that must be satisfied to ensure your agent deployment functions as intended. These articles cover each of these requirements in detail.

Supported operating systems

The Insight Agent supports installations on a range of Windows, Linux, and macOS operating systems. See the operating system support article for:

  • An explanation on how operating system support affects the functionality of the Insight Agent.
  • A comprehensive list of supported operating systems and how long they will be supported in the future.
  • A historical list of operating systems the Insight Agent no longer supports.

Network traffic and connectivity

Installed Insight Agents must be allowed to communicate with the Insight Platform in order to power your Insight products and services. See the network traffic and connectivity article for a list of all Insight Platform-related endpoints where connectivity requirements apply. In addition, this article covers common network security scenarios that may affect Insight Agent data in transit.

Network traffic allowance requirements for antivirus capabilities

If you use Rapid7's Next-Generation Antivirus add-on, the assets on which the Insight Agent is installed (or the proxy you configure to receive all agent-related traffic) must be able to communicate with the service that initializes and updates the On-Access Scanning prevention engine, which is Endpoint Prevention's antivirus implementation. The following URL must be reachable through port 443:

URLDescription
ht‌tps://rapid7-83473e9e-2016-47ba-a7ed-05d0c824b19c.2d7dd.cdn.bitdefender.netInitialization of the On-Access Scanning prevention engine and updates to antivirus signatures.

Endpoint protection software exclusion

Insight Agent processes must be allowed to run on your assets without triggering a response from any endpoint protection software deployed in your environment. See the endpoint protection software exclusion article for instructions on how to configure an allowlist for the Insight Agent with some known endpoint protection products.

InsightIDR asset quarantine

If you subscribe to InsightIDR and want to use the asset quarantine feature that the Insight Agent supports, your assets must be configured with additional properties beforehand. See the asset quarantine configuration article for details.

Antivirus and EDR software compatibility

If you already deploy other antivirus or Endpoint Detection and Response (EDR) solutions in your environment, you'll need to satisfy some additional requirements to ensure that Endpoint Prevention can run without being blocked from taking action when a threat is detected. See the Endpoint Prevention antivirus and EDR software compatibility article to learn about these requirements.