Page tree

You are viewing an old version of this page. View the current version.

Compare with Current View Page History

« Previous Version 6 Next »

This topic only applies to Armor Anywhere users.

For invited users:

Before your account was created, your account administrator decided the proper roles and permissions for your account.

Consult with your account administrator to understand what permissions you have and how you should configure your account.

You can use this document to complete the account signup process and review high-level action items to complete.

This topic only applies to users who run:

  • Windows 2008 R2 Datacenter
  • Windows 2008 R2 Standard
  • Windows 2008 R2 Web


At a high-level, to install Armor Anywhere, including the agent, you must:  

  1. Complete your account signup
  2. Download and install the agent
  3. Test and verify the agent's connection
  4. Configure your AMP notification preferences

Step 1: Review requirements

Operating System Compatibility

Operating systemSupported version for 64-bit environments only
CentOS6.X, 7.X

Red Hat Enterprise Linux (RHEL)

6.X, 7.X

Ubuntu14.04 LTS, 16.04, 18.04
Amazon Linux

2015.03, 2015.09, 2016.03, 2016.09, 2017.03, 2017.09, 2018.03, Amazon Linux 2

Oracle Linux6.X, 7.X

2008, 2008 R2, 2012, 2012 R2, 2016 Standard, 2016 Datacenter, 2016 Essentials, 2016 Datacenter Core

For Windows users, PowerShell 3 must be installed.

For Windows 2012 users, when you install the Armor Agent, the corresponding Trend Micro agent may cause your system to reboot. Trend Micro is currently researching this issue.

Browser Support

The Armor Management Portal (AMP) supports the current version of the following browsers:

  • Chrome
  • Firefox
  • Internet Explorer
  • Safari

Armor cannot guarantee that previous versions will be supported.

Resource Requirements

RequirementWindows InstanceLinux Instance
CPU2 Cores1 Core
Disk Space3GB3GB
BandwidthEstimated 50-100Kb per minute, based on the logs generated in your system.

Firewall rules

The following ports will need to be opened for each server registered with Armor Anywhere.

Inbound / OutboundService / PurposePortDestination
OutboundArmor Agent443/tcp
    • (
OutboundMalware Protection, FIM, IDS


    • (
    • (
    • (
    • (
    • (
    • (
    • (
    • (
    • (
OutboundLog Management (Filebeat / Winlogbeat)515/tcp
    • (
    • (
    • (
    • (
OutboundRemote Access443/tcp
    • (
    • (alternate)

Vulnerability Scanning

    • (United States)

    • (Canada)

    • (Europe)

    • (Australia)
    • (Japan/Asia/Asia Pacific)

Vulnerability Scanning

    • (United States)
    • (Canada)
    • (Europe)
    • (Asia / Asia Pacific)
    • (Australia)
InboundLog Relay (Logstash)
  • 5140/udp
  • 5141/tcp
The IP address for your virtual machine
OutboundLog Relay (Armor's logging service (ELK))
  • 5443/tcp
  • 5400-5600/tcp (Reserved)
    • Armor reserves the right to utilize this port range for future expansion or service changes.

  • These endpoints are served by the Amazon Elastic Load Balancers. As a result, the actual endpoints will vary dynamically across Amazon's IP ranges.

* The agent will perform a lookup to the applicable DNS entry, which may resolve to one of multiple Amazon Web Services based subnets. As a result, if your firewall does not support outbound filtering by domain name, then you may need to open all outbound traffic to 443/tcp to accommodate this service.

Additionally, verify that your proxy server can externally communicate.

Remove existing anti-virus software

Before you install the Armor Anywhere agent, you must remove any previously installed anti-virus software, such as Trend Micro, McAfee, etc. Afterwards, you must reboot your system. 

Step 2: Complete your account signup

Step 1: Open the Account Signup email

  1. In the email from Armor, click the link.
    • You will be redirected to enter your account security information, including payment information.
      • If you already coordinated your payment process with Armor, then you will not see the payment screen.

Step 2: Complete your security information

In this step, you will add your phone number to your account. This phone number will be used for multi-factor authentication. To complete the account signup process and to log into AMP, you must be near this phone number.
  1. Note your Armor username. 
    • The Username will be pre-populated with the email address of the Primary Contact for the account.
  2. In Password and Confirm Password, create and enter an account password.
    • Your password must be at least 12 characters in length.
    • Your password must contain an upper-case character, a lower-case character, a number, and a special character.
    • Your password cannot contain personal information, such as your name, email address, birthday, etc. For example, if your name is John Smith, then you cannot use joh or smi in your password.
    • You can only change your password once every 24 hours.
    • Passwords expire after 60 days. 
    • After 6 failed login attempts, you will be locked out of your account for an hour. To resolve this, you must contact your account administrator or contact Armor Support.
    • After 15 minutes of no activity, you will be logged out of the Armor Management Portal (AMP).
  3. Complete the Challenge Phrase and Challenge Response
    • If you call Armor for technical support, you will be asked the Challenge Phrase, and you must correctly answer the Challenge Response
    • Do not use inappropriate language or suggestive material. 
    • The answer must be at least five characters long. 
  4. In Phone Number, select your country code / flag, and then enter your phone number.
    • This phone number will be used for multi-factor authentication (MFA). Every time you log into the Armor Management Portal (AMP), you will receive a phone call in order to complete the login process.
    • You can enter a phone number with spaces and special characters, such as (555) 555-555. 
    • (Optional) If your phone number contains an extension, enter the number in Extension. You cannot include spaces or special characters in this field.
  5. Click Validate to validate the phone number entered.
    • You will receive a phone call; answer the phone, and then follow the instructions.
    • (Optional) After you complete the signup process, you can configure your account to use the Microsoft Authenticator application for MFA. To learn how to use this application, see Configure multi-factor authentication for your account.
  6. Click Continue.

If you already coordinated with Armor to pay with a check, then you will be redirected to Armor Management Portal (AMP) login screen..

Step 3: Complete your payment information

  1. In Currency, select your currency.
  2. (Optional) If your business is tax exempt, select I'm tax exempt.
    • In Tax Exempt ID, enter a valid tax exempt ID.
  3. For Payment Method, mark the desired payment (credit card or bank account). 

Option 1: Credit card 

Cardholder Name, Address, City, State, and Postal Code will be pre-populated with the name and contact information for the Primary Contact on the account.

  1. In Card Number, enter the credit card number.
  2. In Expiration Date, select the appropriate month and year.
  3. In CVV, enter the verification number for the credit card
  4. In Country, select the corresponding country.
  5. Click Submit.

You will be redirected to Armor Management Portal (AMP) login screen.

Option 2: ACH Bank Debit

  1. In ABA / Routing Number, enter the corresponding banking number.
  2. In Bank Account Number, enter the account number.
  3. Select the appropriate Account Type.
  4. In Bank Name, enter the name of the banking institution.
  5. In Account Holder Name, enter the name of the account holder.
  6. Click Submit.

You will be redirected to Armor Management Portal (AMP) login screen.

Step 3: Locate the Armor Anywhere agent

  1. In the Armor Management Portal (AMP), in the left-side navigation, click Infrastructure
  2. Click Virtual Machines
  3. Click Deploy New Armor Agent or click the plus ( + ) icon.
  4. Copy your license key. You will need this information in a later step.
  5. Select your operating system (Windows or Linux).  

  1. Select your operating system (Windows or Linux).  

For Amazon Web Services users who:

  • Use Elastic Beanstalk to run their instance's applications, and
  • Run Windows 2012 R2,

Review the following example to understand how to install the Anywhere agent. Afterwards, you can skip to the Test your connection step.

    test: if not exist 'c:\\.armor\\opt\\armor.exe' exit 0
    command: c:\\Windows\\Temp\\armor-setup.exe /verysilent /license=AAAA1-A11AA-AA1AA-AAAAA-1AAAA
    ignoreErrors: false
    waitAfterCompletion: 5

You must replace AAAA1-A11AA-AA1AA-AAAAA-1AAA with your specific license key.

Step 4: Download and install the Armor Anywhere agent

If you run Windows 2016, after you install the agent, you must restart your system.

Before you install the Armor Anywhere agent, you must remove any previously installed anti-virus software, such as Trend Micro, McAfee, etc. Afterwards, you must reboot your system. 

There are two ways to install the Armor Anywhere agent. 

Option 1: Install via the GUI (Walkthrough)

  1. Under Standard Installation, click and download the Armor Agent installer (armor-setup.exe). 
  2. Follow the on-screen instructions. 
    • You will be asked to restart your system.

Option 2: Install via the command line

  1. Based on your Windows version, execute the following script in the PowerShell command line:

    Windows versionScript
    Windows Server 2012, Windows Server 2012 R2, Windows Server 2016
    Invoke-WebRequest -outfile $home\Desktop\armor-setup.exe
    Windows Server 2008, Windows Server 2008 R2
    Import-Module bitstransfer; start-bitstransfer -source -destination $home\Desktop\.
  2. Execute the following script: 

    cd $home\Desktop; .\armor-setup.exe
  3. Follow the interactive installer until complete, and then restart your system.

There are three types of scripts that you can use to install the agent. 

Script typeDescription

You can use these scripts to verify that your environment is compatible with Armor Anywhere. These scripts will not install the agent. 

[Net.ServicePointManager]::SecurityProtocol = [Net.SecurityProtocolType]::Tls12; Import-Module bitstransfer; start-bitstransfer -source -destination . ; .\armor_agent.ps1
Pre-installation and installation

You can use these scripts to:

  • Verify that your environment is compatible with Armor Anywhere
  • Install the agent
[Net.ServicePointManager]::SecurityProtocol = [Net.SecurityProtocolType]::Tls12; Import-Module bitstransfer; start-bitstransfer -source -destination . ; .\armor_agent.ps1 -license AAAA1-A11AA-AA1AA-AAAAA-1AAA

You can use these scripts to install the agent. These scripts will not verify your environment for compatibility. 

[Net.ServicePointManager]::SecurityProtocol = [Net.SecurityProtocolType]::Tls12; Import-Module bitstransfer; start-bitstransfer -source -destination . ; .\armor_agent.ps1 -license AAAA1-A11AA-AA1AA-AAAAA-1AAA -silent

In the above scripts, replace AAAA1-A11AA-AA1AA-AAAAA-1AAA with your specific license key.


Step 5: Test your connection

After you install the agent, Armor recommends that you test the connection for each configured firewall rule.

To verify connectivity to an Armor service endpoint, use the telnet command.

The following example tests connectivity to over 443/tcp:Troubleshooting:

telnet 443

For Windows systems without the telnet feature installed, you can also use PowerShell:

new-object System.Net.Sockets.TcpClient('', 443)

Step 6: Review the status of the Armor Anywhere agent 

  1. In the Armor Management Portal (AMP), in the left-side navigation, click Infrastructure
  2. Click Virtual Machines
  3. Review the corresponding Status column. The Status column contains a green or red status to indicate if the server's agent has registered a heartbeat to Armor.
    • A green status indicates the server's agent has registered a heartbeat in the past hour. 
    • A red status indicates the server's agent has not registered a heartbeat in the past hour. 
      • After four hours without a registered heartbeat, the API will close all service endpoints (firewall ports).

Step 7: Configure your notification preferences

Armor recommends that you configure your account to receive notifications for Account, Billing, and Technical events.

These notification preferences do not relate to support tickets.

To update your notification preferences for support tickets, see Support Tickets.


You will receive a notification when:

  • A password expires in 14 days.
  • A password expires in 7 days.
  • A password expires in 24 hours.
  • A password has expired.

You will receive a notification when:

  • An invoice has posted. 
  • An invoice is past due (2, 10, 15, 25, and 30 days).
  • A payment method will soon expire (1, 15, and 30 days).

You can configure a user to become the primary billing contact for an account. This user will receive billing notifications. Additionally, this user will be listed in the Bill to field in an invoice. 

  1. In the Armor Management Portal (AMP), in the left-side navigation, click Account.
  2. Click Users
  3. Locate and hover over the desired user. 
  4. Click the vertical ellipses. 
  5. Select Set as Primary Billing Contact
  6. Click OK

You will receive a notification when:

  • A virtual machine will be deleted or downgraded.
  • CPU, disk, and memory utilization is at more than 90% for 5 minutes.
  • Ping, SSH (Linux), or RDP (Windows) fails for 5 minutes.

You can only change the notification preferences for your own account. You cannot change the notification preferences for other user accounts.

  1. In the Armor Management Portal (AMP), in the top, right corner, click the vertical ellipses.
  2. Click Settings
  3. Click Notification Preferences.
  4. Use the slider to make your desired changes.
    • Select Alert to receive notifications in the top bar in the Armor Management Portal (AMP). 
    • Select Email to receive notifications through email. 
    • You can select both notification options.
  5. Click Update Notification Preference to save your changes. 

In this topic

Have a suggestion for the Armor Knowledge Base? Send a message to