Skip to main content

CyberSmart Active Protect: Revocable Authentication Mechanism


​

Summary

From CAP v5.7.0, we are changing how devices authenticate with CyberSmart Active Protect (CAP) by introducing a revocable authentication mechanism.

For organisations using centralised (bulk) deployment, an Activation Key will now be displayed when downloading CAP from the web application. This replaces the existing Activation Token.
For organisations using individual deployment, an Activation Key will be automatically embedded in the CAP installer.

What is an Activation Key?

An Activation Key is a secret value used to activate the installation. You can think of it as a license key.

  • By default it expires after 7 days of generation.

  • You have the ability to: extend the expiration, set to never expire, or disable the Activation Key.

  • If the Activation Key was not yet used, you can also delete it.

  • Disabled or expired Activation Keys will not be able to be used for future installations. Disabling or expiring the Activation Keys makes all the CAP installers that have not yet activated invalid.

  • CAP installations that have already been activated do not need an active Activation Key. Even after the Activation Key they have used expires or is disabled, they will continue to work correctly.

  • You will also be able to manage (search, edit and update) your Activation Keys and see the activation records for all activated devices.

Installation flow

During centralised (bulk) installation and if you use RMM, you will need to store the Activation Key locally. If you are using an RMM, replace any existing Activation Tokens with the new Activation Keys.
Please note that the new Activation Keys work only with CAP versions greater or equal to v5.7.0.

Please note - installation method by disk cloning will lead to undefined behaviour. Organisations that install and activate CAP and then clone the disk contents to a new device are advised to activate CAP separately on each device to avoid problems.

Walkthrough Steps

Centralised Bulk Deployment

When adding new MacOS or Windows active protect devices you’ll be shown a new Activation Key and have the opportunity to give it a meaningful name.

The Activation Key will be shown only once here. Please make sure to save it if you need it for RMM tools. If you do not save it, you can always generate a new one and delete this one from the Activation Keys page.

Review all existing Activation Keys in a new page beneath ‘Organisation Management’

From here the Activation Key name and validity (expiration) period can be controlled. This will allow your installers to be disabled in the case of customer contract ending or deployment window closure.

For the end Active protect user - if an installer with an invalid Activation Key is used the end user will be given an appropriate warning message.

Individual Deployment

There is no change to the current Individual Deployment flow except Activation Keys will be created per CAP installer invitation and embedded in the installer.

What you need to know / do

How to enable

We will turn on this new functionality by default for all partners and organisations.

Did this answer your question?