
Agent-server communication
During agent-server communication, the agent and server exchange information using a
propietary network protocol (for ePO 4.0) or an industry-standard network protocol TLS (for
ePO 4.5) that ePolicy Orchestrator uses for secure network transmissions. At each communication,
the agent collects its current system properties, as well as events that have not yet been sent,
and sends them to the server. The server sends new or changed policies and tasks to the agent,
and the repository list if it has changed since the last agent-server communication. The agent
enforces the new policies locally on the managed system and applies any task or repository
changes.
Agent-server communication can be initiated in these ways:
• Agent-to-server communication interval (ASCI) lapses.
• Agent-initiated communication upon agent startup.
• Agent wake-up calls from ePO or Agent Handlers.
• Communication initiated manually from the managed system (Windows only).
Agent-server communication interval
The agent-server communication interval (ASCI) is set on the General tab of the McAfee Agent
policy page. This setting determines how often the agent calls in to the server. The default
setting of 60 minutes means that the agent contacts the server once every hour.
When deciding whether to modify the interval, consider the following:
• At each ASCI, the following actions occur:
• The agent collects and sends its properties to the server or Agent Handler.
• The agent sends the events that have occurred since the last agent-server communication.
• The server or Agent Handler sends new policies and tasks to the client. This action might
dictate other resource-consuming actions, such as an immediate DAT download.
• The agent enforces policies.
• Although these activities do not burden any one computer, the cumulative demand on the
network, on ePO servers, or on Agent Handlers can be significant, considering these variables:
• The number of systems being managed by ePolicy Orchestrator.
• Your organization’s threat response requirements.
• The network or physical location of clients in relation to servers or Agent Handlers.
• Available bandwidth.
In general, the more these variables reflect conditions that are likely to burden or slow down
your network, the less frequently you want to perform an agent-server communication. For
clients with critical functions, you might want to set a more frequent interval.
If you decide to change these settings, the McAfee Agent policy page is found by clicking Menu
| Policy | Policy Catalog, selecting McAfee Agent, then clicking Edit Settings.
Agent-initiated communication after agent installation
After the agent is installed, it calls in to the server at a randomized interval within ten minutes.
Thereafter, the agent calls in at each agent-server communication interval (ASCI). By default,
agent-server communication occurs every 60 minutes.
About the McAfee Agent
Agent-server communication
7McAfee Agent software version 4.5 Product Guide
Komentarze do niniejszej Instrukcji