This article covers the system requirements for installing the VMware Carbon Black Cloud Endpoint sensor.
Affected Products:
VMware Carbon Black Cloud Endpoint
Affected Operating Systems:
Windows
Mac
Linux
The VMware Carbon Black Cloud Endpoint sensor has specific Software, Hardware, Network, and Anti-virus requirements. Click the appropriate tab for more information.
Click the appropriate operating system tab for specific platform software requirements.
General Requirements:
Internet Browser:
Click the appropriate VMware Carbon Black Cloud Endpoint version for additional software requirements. For more information, reference How to Identify the VMware Carbon Black Cloud Endpoint Sensor Version.
Operating Systems (64 and 32 bit):
1Unlisted Windows feature updates are not supported. For a status on all feature updates, reference Dell Data Security / Dell Data Protection Windows Version Compatibility.
2Requires Microsoft KB Update 4474419 (https://support.microsoft.com/help/4474419 ) and 4490628 (https://support.microsoft.com/help/4490628 ). For more information about this requirement, reference SHA-1 Signing Certificate Expiration and Deprecation on Dell Data Security / Dell Data Protection Products.
3Server Core (2008/2012/2016/2019) editions are not supported.
Operating Systems (64 and 32 bit):
1Unlisted Windows 10 feature updates are not supported. For a status on all feature updates, reference Dell Data Security / Dell Data Protection Windows Version Compatibility.
2Requires Microsoft KB Update 4474419 (https://support.microsoft.com/help/4474419 ) and 4490628 (https://support.microsoft.com/help/4490628 ). For more information about this requirement, reference SHA-1 Signing Certificate Expiration and Deprecation on Dell Data Security / Dell Data Protection Products.
3Server Core (2008/2012/2016/2019) editions are not supported.
Operating Systems (64 and 32 bit):
1Unlisted Windows 10 feature updates are not supported. For a status on all feature updates, reference Dell Data Security / Dell Data Protection Windows Version Compatibility.
2Requires Microsoft KB Update 4474419 (https://support.microsoft.com/help/4474419 ) and 4490628 (https://support.microsoft.com/help/4490628 ). For more information about this requirement, reference SHA-1 Signing Certificate Expiration and Deprecation on Dell Data Security / Dell Data Protection Products.
3Server Core (2008/2012/2016/2019) editions are not supported.
Operating Systems (64 and 32 bit):
1Unlisted Windows 10 feature updates are not supported. For a status on all feature updates, reference Dell Data Security / Dell Data Protection Windows Version Compatibility.
2Requires Microsoft KB Update 4474419 (https://support.microsoft.com/help/4474419 ) and 4490628 (https://support.microsoft.com/help/4490628 ). For more information about this requirement, reference SHA-1 Signing Certificate Expiration and Deprecation on Dell Data Security / Dell Data Protection Products.
3Server Core (2008/2012/2016/2019) editions are not supported.
General Requirements:
Internet Browser:
Click the appropriate VMware Carbon Black Cloud Endpoint version for additional software requirements. For more information, reference How to Identify the VMware Carbon Black Cloud Endpoint Sensor Version.
General Requirements:
Click the appropriate Linux distribution below for additional software requirements. For more information, reference How to Identify the VMware Carbon Black Cloud Endpoint Sensor Version.
Distribution | Distribution Version | VMware Carbon Black Cloud Audit and Remediation | VMware Carbon Black Cloud Endpoint Standard | VMware Carbon Black Cloud Enterprise EDR |
---|---|---|---|---|
Amazon Linux 2 | 2.4.0 and later | 2.11.0 and later | 2.10.1 and later |
Distribution | Distribution Version | VMware Carbon Black Cloud Audit and Remediation | VMware Carbon Black Cloud Endpoint Standard | VMware Carbon Black Cloud Enterprise EDR |
---|---|---|---|---|
CentOS 8 | 8.0 and later | 2.4.0 and later | 2.11.0 and later | 2.10.1 and later |
CentOS 7 | 7.9 | 2.4.0 and later | 2.9.1 and later | 2.9.1 and later |
CentOS 7 | 7.8 | 2.4.0 and later | 2.7.1 and later | 2.7.1 and later |
CentOS 7 | 7.0 to 7.7 | 2.4.0 and later | 2.7.0 and later | 2.7.0 and later |
CentOS 6 | 6.6 to 6.10 | 2.4.0 and later | 2.7.0 and later | 2.7.0 and later |
CentOS 6 | 6.0 to 6.5 | 2.4.0 to 2.9.1 | N/A | N/A |
Distribution | Distribution Version | VMware Carbon Black Cloud Audit and Remediation | VMware Carbon Black Cloud Endpoint Standard | VMware Carbon Black Cloud Enterprise EDR |
---|---|---|---|---|
Red Hat Enterprise Linux 8 | 8.0 and later | 2.4.0 and later | 2.11.0 and later | 2.10.1 and later |
Red Hat Enterprise Linux 7 | 7.9 | 2.4.0 and later | 2.9.1 and later | 2.9.1 and later |
Red Hat Enterprise Linux 7 | 7.8 | 2.4.0 and later | 2.7.1 and later | 2.7.1 and later |
Red Hat Enterprise Linux 7 | 7.0 to 7.7 | 2.4.0 and later | 2.7.0 and later | 2.7.0 and later |
Red Hat Enterprise Linux 6 | 6.6 to 6.10 | 2.4.0 and later | 2.7.0 and later | 2.7.0 and later |
Red Hat Enterprise Linux 6 | 6.0 to 6.5 | 2.4.0 to 2.9.1 | N/A | N/A |
Distribution | Distribution Version | VMware Carbon Black Cloud Audit and Remediation | VMware Carbon Black Cloud Endpoint Standard | VMware Carbon Black Cloud Enterprise EDR |
---|---|---|---|---|
Oracle 8 | 8.0 and later | 2.8.1 and later | 2.11.0 and later | 2.10.1 and later |
Oracle 7 | 7.9 | 2.8.1 and later | 2.9.1 and later | 2.9.1 and later |
Oracle 7 | 7.6 to 7.8 | 2.8.1 and later | 2.8.0 and later | 2.8.0 and later |
Oracle 7 | 7.0 to 7.5 | 2.8.1 and later | N/A | 2.8.0 and later |
Oracle 6 | 6.6 to 6.10 | 2.4.0 and later | N/A | 2.8.0 and later |
Oracle 6 | 6.0 to 6.5 | 2.8.1 to 2.9.1 | N/A | N/A |
Distribution | Distribution Version | VMware Carbon Black Cloud Audit and Remediation | VMware Carbon Black Cloud Endpoint Standard | VMware Carbon Black Cloud Enterprise EDR |
---|---|---|---|---|
Oracle 8 | 8.0 and later | 2.8.1 | 2.11.0 and later | 2.10.1 and later |
Oracle 7 | 7.9 | 2.8.1 and later | 2.9.1 and later | 2.9.1 and later |
Oracle 7 | 7.0 to 7.8 | 2.8.1 and later | 2.8.0 and later | 2.8.0 and later |
Oracle 6 | 6.6 to 6.10 | 2.4.0 and later | 2.8.0 and later | 2.8.0 and later |
Oracle 6 | 6.0 to 6.5 | 2.4.0 to 2.9.1 | 2.8.0 and later | N/A |
Distribution | Distribution Version | VMware Carbon Black Cloud Audit and Remediation | VMware Carbon Black Cloud Endpoint Standard | VMware Carbon Black Cloud Enterprise EDR |
---|---|---|---|---|
OpenSUSE 42 | 42.2 to 42.3 | 2.4.0 and later | 2.11.0 and later | 2.10.1 and later |
OpenSUSE 15 | 15.0 to 15.1 | 2.4.0 and later | 2.11.0 and later | 2.10.1 and later |
Distribution | Distribution Version | VMware Carbon Black Cloud Audit and Remediation | VMware Carbon Black Cloud Endpoint Standard | VMware Carbon Black Cloud Enterprise EDR |
---|---|---|---|---|
SUSE 15 | 15.0 to 15.2 | 2.4.0 and later | 2.11.0 and later | 2.10.1 and later |
SUSE 12 | 12.2 to 12.5 | 2.4.0 and later | 2.11.0 and later | 2.10.1 and later |
Distribution | Distribution Version | VMware Carbon Black Cloud Audit and Remediation | VMware Carbon Black Cloud Endpoint Standard | VMware Carbon Black Cloud Enterprise EDR |
---|---|---|---|---|
Ubuntu 21 | 21.04 | 2.11.3 and later | 2.11.0 and later | 2.10.1 and later |
Ubuntu 20 | 20.04 LTS | 2.4.0 and later | 2.11.0 and later | 2.10.1 and later |
Ubuntu 19 | 19.04 LTS, 19.10 | 2.4.0 and later | 2.11.0 and later | 2.10.1 and later |
Ubuntu 18 | 18.04 LTS, 18.10 | 2.4.0 and later | 2.11.0 and later | 2.10.1 and later |
Ubuntu 16 | 16.04 LTS | 2.4.0 to 2.11.3 | 2.11.0 to 2.11.3 | 2.10.1 to 2.11.3 |
Minimum Hardware Requirements:
Protocols:
External Destinations vary based on geographic zone of purchase. Click the appropriate region for more information.
Configure firewalls or proxies to allow outgoing and incoming connection to the following Destinations without packet inspection.
Function | Primary Port | Backup Port | Destination | IP Address | Notes |
---|---|---|---|---|---|
Administration | 443 | 54443 | defense-prod05.conferdeploy.net/ | Dynamic | |
Client | 443 | 54443 | dev-prod05.conferdeploy.net/ | Dynamic | |
Integration Services (API) | 443 | 54443 | defense-prod05.conferdeploy.net/ | Dynamic | |
Signature Updates | 80 | 4431 | updates2.cdc.carbonblack.io | Dynamic | |
Content Management System | 443 | 54443 | Content.carbonblack.io | Dynamic | Required for 3.6 and newer agents |
Online Certificate Status Protocol | 80 | N/A | ocsp.godaddy.com | Dynamic | |
Online Certificate Status Protocol | 443 | N/A | d.symcb.com | Dynamic | Required for 3.7.0.1503 and later installers |
Certificate Revocation List | 80 | N/A | crl.godaddy.com | Dynamic | |
Certificate Revocation List | 80 | N/A | sv.symcb.com | Dynamic | Required for 3.7.0.1503 and later installers |
Certificate Revocation List | 80 | N/A | s1.symcb.com | Dynamic | Required for 3.7.0.1503 and later installers |
Certificate Revocation List | 80 | N/A | s2.symcb.com | Dynamic | Required for 3.7.0.1503 and later installers |
1To leverage 443, or SSL/TLS connections for Signature Updates, the assigned policy group must have https://updates2.cdc.carbonblack.io defined within the Update Servers For Onsite Devices, and/or Update Servers for Offsite Devices.
Configure firewalls or proxies to allow outgoing and incoming connection to the following Destinations without packet inspection.
Function | Primary Port | Backup Port | Destination | IP Address | Notes |
---|---|---|---|---|---|
Administration | 443 | 54443 | defense-eu.conferdeploy.net/ | Dynamic | |
Client | 443 | 54443 | dev-prod06.conferdeploy.net/ | Dynamic | |
Integration Services (API) | 443 | 54443 | defense-eu.conferdeploy.net/ | Dynamic | |
Signature Updates | 80 | 4431 | updates2.cdc.carbonblack.io | Dynamic | |
Content Management System | 443 | 54443 | Content.carbonblack.io | Dynamic | Required for 3.6 and newer agents |
Online Certificate Status Protocol | 80 | N/A | ocsp.godaddy.com | Dynamic | |
Online Certificate Status Protocol | 443 | N/A | d.symcb.com | Dynamic | Required for 3.7.0.1503 and later installers |
Certificate Revocation List | 80 | N/A | crl.godaddy.com | Dynamic | |
Certificate Revocation List | 80 | N/A | sv.symcb.com | Dynamic | Required for 3.7.0.1503 and later installers |
Certificate Revocation List | 80 | N/A | s1.symcb.com | Dynamic | Required for 3.7.0.1503 and later installers |
Certificate Revocation List | 80 | N/A | s2.symcb.com | Dynamic | Required for 3.7.0.1503 and later installers |
1To leverage 443, or SSL/TLS connections for Signature Updates, the assigned policy group must have https://updates2.cdc.carbonblack.io defined within the Update Servers For Onsite Devices, and/or Update Servers for Offsite Devices.
Configure firewalls or proxies to allow outgoing and incoming connection to the following Destinations without packet inspection.
Function | Primary Port | Backup Port | Destination | IP Address | Notes |
---|---|---|---|---|---|
Administration | 443 | 54443 | defense-prodnrt.conferdeploy.net/ | Dynamic | |
Client | 443 | 54443 | dev-prodnrt.conferdeploy.net/ | Dynamic | |
Integration Services (API) | 443 | 54443 | defense-prodnrt.conferdeploy.net/ | Dynamic | |
Signature Updates | 80 | 4431 | updates2.cdc.carbonblack.io | Dynamic | |
Content Management System | 443 | 54443 | Content.carbonblack.io | Dynamic | Required for 3.6 and newer agents |
Online Certificate Status Protocol | 80 | N/A | ocsp.godaddy.com | Dynamic | |
Online Certificate Status Protocol | 443 | N/A | d.symcb.com | Dynamic | Required for 3.7.0.1503 and later installers |
Certificate Revocation List | 80 | N/A | crl.godaddy.com | Dynamic | |
Certificate Revocation List | 80 | N/A | sv.symcb.com | Dynamic | Required for 3.7.0.1503 and later installers |
Certificate Revocation List | 80 | N/A | s1.symcb.com | Dynamic | Required for 3.7.0.1503 and later installers |
Certificate Revocation List | 80 | N/A | s2.symcb.com | Dynamic | Required for 3.7.0.1503 and later installers |
1To leverage 443, or SSL/TLS connections for Signature Updates, the assigned policy group must have https://updates2.cdc.carbonblack.io defined within the Update Servers For Onsite Devices, and/or Update Servers for Offsite Devices.
Dell and VMware recommend the following exclusions if you are planning to run VMware Carbon Black Cloud alongside an existing anti-virus.
Directories:
C:\Program Files\Confer\ C:\Programdata\CarbonBlack\
Files:
C:\Windows\System32\drivers\ctifile.sys C:\Windows\System32\drivers\ctinet.sys C:\Windows\System32\drivers\cbelam.sys C:\Windows\system32\drivers\cbdisk.sys C:\Windows\Syswow64\ctintev.dll C:\Program Files\confer\Blades\LiveQuery\osqueryi.exe C:\Program Files\confer\repmgr.exe C:\Program Files\confer\scanner\upd.exe
Click the appropriate VMware Carbon Black Cloud Endpoint version for additional software requirements. For more information, reference, reference How to Identify the VMware Carbon Black Cloud Endpoint Sensor Version.
Directories:
/Applications/VMware Carbon Black Cloud /Library/Application Support/com.vmware.carbonblack.cloud/ /Library/Extensions/CbDefenseSensor.kext
Directories:
/Applications/Confer.app/
Directories:
/Applications/Confer.app/
To contact support, reference Dell Data Security International Support Phone Numbers.
Go to TechDirect to generate a technical support request online.
For additional insights and resources, join the Dell Security Community Forum.