Deploying ThreatLocker Updates with Your Existing Management Tool

2 min. readlast update: 12.16.2025

ThreatLocker updates can be pushed via the ThreatLocker Portal, or using an external software management tool.

This requires Windows Agent 10.7.4.

To gain access to the updater msi or pkg file, you will first need to change the agent version for the group or groups you wish to update via an external management tool.

Navigate to the Devices page.

From either the Computers or the Groups tab, select the 'Update Agent Version' button.

In the 'Target Version' dropdown, select 'Package' for Windows, or 'MAC-Package' for macOS (coming soon).

Next, select the group, groups, or organization you wish to push updates to through your existing tool.

Once selected, click 'Update Agent Version'.

This will change the version to Package which tells every agent in the selected 'Applies To' to check a different location for updates.

Next, select the 'Install Computer' button.

  1. Choose the Computer Group you wish to retrieve the updater msi or pkg for.
  2. Select the Updater file with the correct architecture to download the file.

 

Please note: The Updater file will not be visible if the selected group in the Computer Group dropdown isn't set to the version 'Package'.

 

Once you've retrieved the file, you can use your existing method to deploy the update.

When new agent versions are released, this file will be replaced in the portal, and you will need to come back to the portal to retrieve the file from the same location.

 

 

Was this article helpful?