User guideAgents

Install the agent on macOS

In testing. macOS support is built but still being tested on real Macs. Try it on a test machine first.

You need an enrollment token. The portal shows the command below with your address and token filled in; copy it from there.

Install

In Terminal, as an administrator:

sh
curl -fsSL https://YOUR-PORTAL/install-macos.sh | sudo PATCHPILOT_ENROLLMENT_TOKEN='ppe_…' sh -s -- --server https://YOUR-PORTAL

The installer:

  1. downloads the agent for the Mac's processor (Intel or Apple silicon) from your portal and checks its SHA-256 checksum;
  2. installs it to /opt/patchpilot/bin/patchpilot-agent;
  3. starts it as the launchd daemon com.patchpilot.agent, which also starts at boot;
  4. waits up to 60 seconds for the Mac to enroll, then deletes the token.

What gets updated

  • macOS updates through Apple's softwareupdate.
  • Homebrew packages, where Homebrew is installed. They are updated as the user who owns the Homebrew installation, as Homebrew requires.

Checking the agent

sh
sudo launchctl print system/com.patchpilot.agent
tail -f /var/log/patchpilot-agent.log

If it does not enroll

Message What to do
"download failed: is … reachable from this host?" The Mac cannot reach your portal on port 443
"the agent did not enrol within 60s" Check /var/log/patchpilot-agent.log and Enrollment attempts in the portal
"this installer is for macOS; on Linux use install.sh" You ran the macOS command on Linux; use the Linux command

Next