> Source: [sk181217](https://support.checkpoint.com/results/sk/sk181217)

# sk181217 - Harmony Endpoint Security Client - Tiny Agent ("Initial Client") installation on an endpoint that is not yet added to the domain is stuck

| Property | Value |
|----------|-------|
| Solution ID | sk181217 |
| Date Created | 2023-07-05 |
| Last Modified | 2025-01-13 |
| Technical Level | General |
| Products | Endpoint Security |
| Versions | Cloud, R83, R82.20, R82.10, R82, R81.20 |
| OS | Windows |

## Symptoms

- * Tiny agent installation is stuck or fails after the first loading bar is complete.
* The target endpoint shows "waiting for deployment".

## Cause

The endpoint is not part of the office domain. Therefore, the Harmony Endpoint Server does not recognize it to complete the installation of the deployment rule. As a result, only the Tiny Agent (DA and DAF) installation is complete without the blades.   

**Note** - Tiny Agent is the initial basic client that establishes the connection between the endpoint and the Harmony Endpoint server.

## Solution

You must add the endpoint to the deployment rule during the installation of the Harmony Endpoint Security client.  

1. Download the Harmony Endpoint Security client (.exe) from the Harmony Endpoint Administrator Portal (**Overview** \> **Download Endpoint**).
2. Transfer the *.exe* file to the endpoint without changing the file name.
3. Convert the *.exe* file a *.mst* file. To convert, open CMD:
   1. Enter the path to the folder containing the the *.exe* file.
   2. Run:  
      `EndpointSetup.exe /CreateMSI`
4. To install the generated *.msi* file, run:  
   `msiexec /i <path to .msi file>\EPS.msi /l*v C:\installation.log`  
   The installer shows two status bars. The first status bar reaches 100%, and the second status bar remains uninitiated.
5. In the Harmony Endpoint Administrator Portal, navigate to **Policy** \> **Software Deployment**.
6. Create a new deployment rule with the desired blades and make sure to add the endpoint to the rule (**Applies To**).
7. Save and install policy.
8. After a few minutes, the client installation on the endpoint resumes.

<br />

**Note** - To downgrade the client, uninstall the client manually and install the required version.

---

# Agent Instructions

This content is from the Check Point Support Center (https://support.checkpoint.com), the official knowledge base for Check Point cybersecurity products.

## Navigating This Knowledge Base

- **Complete index**: [llms.txt](https://support.checkpoint.com/llms.txt)
- **All SK articles**: [SecureKnowledge Sitemap](https://support.checkpoint.com/sitemaps/secureknowledge-sitemap-index.xml)
- **SK article URL pattern**: `https://support.checkpoint.com/results/sk/{skId}`
- **Markdown responses**: AI bot User-Agents automatically receive `text/markdown` content
