For the complete documentation index, see llms.txt. This page is also available as Markdown.

Deploy Device Protection with ManageEngine

Use ManageEngine Endpoint Central to deploy Aikido Device Protection across your managed macOS fleet with the required permissions in place.

Installation

1

What you'll need

Before starting, make sure you have the following from the Aikido Device Protection dashboard:

  • The Aikido Device Protection .mobileconfig (downloaded from the Aikido Device Protection dashboard)

  • The Aikido Device Protection installer (.pkg file, downloaded from the dashboard)

If you're missing any of these, go back to the Aikido Device Protection dashboard, click Connect Device, and complete the pre-flight steps.

2

Add the Aikido Device Protection configuration profile

  1. In Endpoint Central, go to ConfigurationsMacCustom Configuration.

  2. Click Upload Configuration and select the .mobileconfig file.

  3. Give the profile a name (e.g. "Aikido Device Protection") and click Save and Publish.

  4. Associate the profile with the target devices or device groups.

This profile allows the Aikido Device Protection system extension to load silently, enables the network content filter, and stops users from disabling background services in System Settings → Login Items.

3

Create the Aikido Device Protection package

  1. In Endpoint Central, go to Software DeploymentPackage CreationPackagesAdd PackageMac.

  2. Upload the Aikido Device Protection .pkg file and fill in the package details.

  3. Save the package.

4

Create the install deployment

  1. In Endpoint Central, go to Software DeploymentInstall/Uninstall Software.

  2. Create a new deployment task, select Mac, and choose the Aikido Device Protection package you just created.

  3. Set the action to Install and scope it to the same target devices or groups.

  4. Configure the schedule and save the task.

5

Deploy in the right order

Deploy the configuration profile before the installer for a smoother rollout.

  1. Verify the Aikido Device Protection configuration profile has reached all target devices. Check status under ConfigurationsConfiguration Summary.

  2. Only then deploy the Aikido Device Protection install task.

6

Reboot devices after installation

  1. In Endpoint Central, go to ToolsRemote Shutdown.

  2. Select the target devices from the list.

  3. Click More Actions and choose Restart.

The agent fully activates on the next boot.

7

Verify the deployment

On a test device, confirm:

  1. The system extension is activated:

    systemextensionsctl list | grep aikido

    Expect to see the extension marked [activated enabled].

  2. Open System SettingsGeneralLogin Items & Extensions and confirm the Aikido Device Protection entries cannot be toggled off.

Troubleshooting

Last updated

Was this helpful?