Setup SentinelOne on MacOS

If you want to deploy the EDR on a large scale, we recommend starting with a manual test installation on a few endpoints.

Executable and customer ID

  • Download the executable from this link.

  • Find your customer ID on the Endpoint page > Settings.

Manual method

Deploying the executable

  1. Launch the executable.

  2. On the interface that opens, enter your customer ID in the Site token field.

  1. Click Continue.

Authorizing Full Disk Access

Allow full disk access for SentinelOne applications in the system settings if the icon displays one of the following messages: Needs user attention, Authorize Full-Disk-Access to SentinelOne in System Preferences, or Authorize SentinelOne components in System Preferences.

  1. Click System settings > Privacy & Security, and Full Disk Access

  2. Then click the + button

  3. Press and hold Command+Shift+G to open the Go to Folder menu.

  4. Enter the following path: /Library/Sentinel/sentinel-agent.bundle/Contents/MacOS/

  5. Double-click your destination folder

  1. Select the SentinelOne applications and click Open

    1. sentineld.app

    2. sentineld_helper.app

    3. sentineld_shell.app

  2. Close the window once you see them as activated in Full Disk Access.

Automatic method

Command-line

  1. Save your customer ID value to a file at the following path: com.sentinelone.registration-token. Ensure this file belongs to the root user with the following command: sudo chown root.

  2. Use the following command line, replacing /tmp/SentinelXXXX.pkg with the path to the executable downloaded in the first step: sudo /usr/sbin/installer -pkg /tmp/SentinelXXXX.pkg -target /

Via MDM

The two following guides detail the installation steps and prerequisites for deploying SentinelOne via your MDM solution.

Last updated

Was this helpful?