Summary
From CAP v5.7.0, we are changing how devices authenticate with CyberSmart Active Protect (CAP) by introducing a revocable authentication mechanism.
For organisations using centralised (bulk) deployment, an Activation Key will now be displayed when downloading CAP from the web application. This replaces the existing Activation Token.
For organisations using individual deployment, an Activation Key will be automatically embedded in the CAP installer.
What is an Activation Key?
An Activation Key is a secret value used to activate the installation. You can think of it as a license key.
By default it expires after 7 days of generation.
You have the ability to: extend the expiration, set to never expire, or disable the Activation Key.
If the Activation Key was not yet used, you can also delete it.
Disabled or expired Activation Keys will not be able to be used for future installations. Disabling or expiring the Activation Keys makes all the CAP installers that have not yet activated invalid.
CAP installations that have already been activated do not need an active Activation Key. Even after the Activation Key they have used expires or is disabled, they will continue to work correctly.
You will also be able to manage (search, edit and update) your Activation Keys and see the activation records for all activated devices.
Installation flow
During centralised (bulk) installation and if you use RMM, you will need to store the Activation Key locally. If you are using an RMM, replace any existing Activation Tokens with the new Activation Keys.
Please note that the new Activation Keys work only with CAP versions greater or equal to v5.7.0.
Please note - installation method by disk cloning will lead to undefined behaviour. Organisations that install and activate CAP and then clone the disk contents to a new device are advised to activate CAP separately on each device to avoid problems.
Walkthrough Steps
Centralised Bulk Deployment
When adding new MacOS or Windows active protect devices you’ll be shown a new Activation Key and have the opportunity to give it a meaningful name.
The Activation Key will be shown only once here. Please make sure to save it if you need it for RMM tools. If you do not save it, you can always generate a new one and delete this one from the Activation Keys page.
Review all existing Activation Keys in a new page beneath ‘Organisation Management’
From here the Activation Key name and validity (expiration) period can be controlled. This will allow your installers to be disabled in the case of customer contract ending or deployment window closure.
For the end Active protect user - if an installer with an invalid Activation Key is used the end user will be given an appropriate warning message.
Individual Deployment
There is no change to the current Individual Deployment flow except Activation Keys will be created per CAP installer invitation and embedded in the installer.
What you need to know / do
Existing installers will automatically work with the new system - no action required. In-place upgrades for activated devices do not require a new Activation Key.
Activation Keys are managed per-organisation.
Any new installers created will automatically include new unique Activation Keys. If using an RMM, you will need to store the Activation Key locally and replace any existing Activation Tokens (RMM reference: https://support.cybersmart.co.uk/knowledgebase/s/article/MacOS-RMM-Deployment-Script-and-Steps , https://support.cybersmart.co.uk/knowledgebase/s/article/How-to-Install-New-Improved-CyberSmart-Active-Protect )
How to enable
We will turn on this new functionality by default for all partners and organisations.








