evosecurity

Product Information

macOS Agent Beta

 

This guide will walk you through installing the macOS beta agent. Before installing however, we must recommend some best practices here. This is to ensure that you can recover should something go wrong.

NOTE: Once Evo is installed on a Mac, ANY and ALL users will be required to use Evo to login to the machine.

Supported macOS versions

  • macOS 27.x - Golden Gate
  • macOS 26.x - Tahoe
  • macOS 15.x - Sequoia
  • macOS 14.x - Sonoma

Prerequisites: Using a Fail-safe User

A Fail-Safe user is required. This is your "break glass" user that has administrative access to your machine and can bypass the credential provider. This must be a local administrative account on the machine.

Failure to configure a Fail-Safe user as a local administrator may result in you being locked out of the machine. If this occurs, the software may need to be uninstalled remotely through an RMM tool or script.

NOTE: The Fail-safe user should NOT be the same as the Domain Account used for Elevated Access or the user account that’s going to be primarily using Evo to authenticate.

Installation

Start the installation from the Local admin account you intend to set as the FAIL-SAFE User This product has been tested using the Evo Cloud Directory and On-Prem AD using our LDAPS agent. If using the Evo Cloud Directory Solution, before getting started, make sure you have users that exist locally that match your Evo Directory. For More Details See: Evo Cloud: Directory-As-A-Service Setup and Installation

1. Download and begin installing the macOS DMG File from the portal. (Found under Evo Admin → Downloads)

Notion image
Notion image

2. When you reach the "Evo Config" step and are prompted to enter values, you will need a Deployment Token created to install the agent. This can be found/created under your Desired tenant → Endpoints → Deployment Token

Notion image
 

3. After Applying the Token it will show you a “Confirm Connection” showing that it’s properly reaching back to your desired Tenant/Directory

Notion image

4. Successfully Complete the Installation

Notion image

5. After Completing the install, it will ask you for the password for the fail-safe account you installed the agent under.

Notion image
  1. Once password it submitted you will be prompted to Log out to finish installing the software

7. Once logged out, on the lock screen you will now see the Evo Secure Login

Notion image
  1. Additionally, you will have the Options for Elevated Login as well
Notion image
  1. Once Successful Credentials are used, you will get an MFA request to your Evo Mobile App ( or MFA method of choice )
Notion image
  1. Once approved, you’re now logged in and fully protected my MFA!

End User Elevation Requests on macOS

Evo End User Elevation (EUE) allows macOS users to request administrator permissions for applications that require elevated access. Requests are submitted to the Evo Portal, where authorized technicians can review and approve or deny them.

Submitting an Elevation Request

When a user attempts to run an application that requires administrator permissions, Evo displays an Administrator Approval Required prompt.

The user can enter a business justification explaining why elevated access is needed and select Submit Request to send the request for approval.

Notion image

Request Sent

Once the request has been submitted, the user receives a Request Sent notification confirming that their elevation request was successfully submitted to the Evo Portal.

The request will remain pending until an authorized technician reviews and approves or denies it.

Notion image

Request Approved

When a technician approves the elevation request in the Evo Portal, the user receives a Request Approved notification on their Mac.

This confirms that the requested application has been approved for elevation, allowing the user to proceed with the elevated action.

Notion image

Request Denied

If a technician denies the elevation request, the user receives a Request Denied notification on their Mac.

The application will not be granted elevated permissions through that request. The user can contact their IT administrator if additional access is needed.

Notion image

Uninstalling

If you wish to uninstall the credential provider, run the same download package that you used to install the app as Administrative User.

Find "Evo Mac Agent" and click on “Uninstall Evo Mac Agent”. Continue and observe the app being uninstalled!

Notion image
 
 
Did this answer your question?
😞
😐
🤩