This article describes the Microsoft Forefront Client Security (FCS) revised installation package.
INTRODUCTION
This package revises the current deployment package described in:
976669 Forefront Client Security deployment package (1.0.1725.0): December 2009 The purpose for this revision is to enable new computers to install the latest version of the Client Security client without having to apply multiple updates. This package is published to Windows Server Update Services (WSUS) and is used to perform new installations of the Forefront Client Security client components.
Hotfix information
A supported hotfix is available from Microsoft.
Note This hotfix is available only from Windows Server Update Services.Prerequisites
There are no prerequisites for installing this update.
Restart requirement
Windows XP SP2 client without KB914882 must restart the computer after you apply this update.
Update replacement information
This update replaces the following:
976669 Forefront Client Security deployment package (1.0.1725.0): December 2009 This update also replaces the initial release of the Forefront Client Security deployment package that is available from WSUS under the following title:
Client Update for Microsoft Forefront Client Security (1.0.1703.0)
More Information
The contents of this update are as follows:
-
clientsetup.exe
-
FCSSSA.MSI
-
MOMAgent.MSI
-
mp_AMBits.MSI
-
windowsxp-kb914882-x86-XXX.exe (x86 only)
Clientsetup.exe
This update installation starts the clientsetup.exe program that is in the package. ClientSetup.exe program starts the subordinate installation files in this section.
Changes in this release-
Checks were added to detect the following products. If they are detected setup will not continue and an error will be written to the setup log file.
-
Microsoft Security Essentials version 2
-
Forefront Endpoint Protection client
-
Forefront Client Security, x86-based versions
File name |
File version |
File size |
Date |
Time |
---|---|---|---|---|
Clientsetup.exe |
1.0.1728.0 |
116,120 |
01-Sep-2010 |
02:47 |
Forefront Client Security, x64-based versions
File name |
File version |
File size |
Date |
Time |
---|---|---|---|---|
Clientsetup.exe |
1.0.1728.0 |
121,240 |
31-Aug-2010 |
22:29 |
FCSSSA.MSI
This subordinate component will install the Microsoft Forefront Client Security State Assessment (SSA) client. The SSA client is compromised of the service host and the assessment definitions.
The assessment definitions functionality is the same as the release listed in the following article, but its version number has been incremented to match the version in the title of the update package. For more information, click the following article number to view the article in the Microsoft Knowledge Base:974253 Description of a Security State Assessment update (1.0.1710.103) for Forefront Client Security The service host (FcsSAS.exe) functionality has not changed from the release to manufacturing build, but its version number has been incremented to match the version in the title of the update package. Forefront Client Security, x86-based versions
File name |
File version |
File size |
Date |
Time |
---|---|---|---|---|
Bpacommon.dll |
1.0.1728.0 |
223,128 |
31-Aug-2010 |
23:22 |
Bpaconfigcollector.dll |
1.0.1728.0 |
364,952 |
31-Aug-2010 |
23:22 |
Eula.rtf |
206,773 |
03-Jun-2010 |
13:24 |
|
Fcssas.exe |
1.0.1728.0 |
69,528 |
31-Aug-2010 |
23:23 |
Fcssasengine.dll |
1.0.1728.0 |
84,376 |
31-Aug-2010 |
23:23 |
Fcssasmsg.dll |
1.0.1728.0 |
18,840 |
01-Sep-2010 |
02:47 |
Fcssasondemand.exe |
1.0.1728.0 |
17,816 |
31-Aug-2010 |
23:23 |
Fcssasrpc.dll |
1.0.1728.0 |
22,424 |
31-Aug-2010 |
23:23 |
Gdiplus.dll |
5.2.6001.22319 |
1,748,992 |
31-Aug-2010 |
23:08 |
Muauth.cab |
7,699 |
03-Jun-2010 |
13:23 |
|
Vacatalog_chinesesimplified |
6,355 |
31-Aug-2010 |
23:22 |
|
Vacatalog_chinesetraditional |
6,355 |
31-Aug-2010 |
23:22 |
|
Vacatalog_english |
6,355 |
31-Aug-2010 |
23:23 |
|
Vacatalog_french |
6,355 |
31-Aug-2010 |
23:22 |
|
Vacatalog_german |
6,355 |
31-Aug-2010 |
23:22 |
|
Vacatalog_italian |
6,355 |
31-Aug-2010 |
23:22 |
|
Vacatalog_japanese |
6,355 |
31-Aug-2010 |
23:22 |
|
Vacatalog_korean |
6,355 |
31-Aug-2010 |
23:22 |
|
Vacatalog_spanish |
6,355 |
31-Aug-2010 |
23:22 |
|
Vulnerabilitydefinitions_chinesesimplified |
125,628 |
31-Aug-2010 |
23:15 |
|
Vulnerabilitydefinitions_chinesetraditional |
126,035 |
31-Aug-2010 |
23:15 |
|
Vulnerabilitydefinitions_english |
134,024 |
31-Aug-2010 |
23:01 |
|
Vulnerabilitydefinitions_french |
132,407 |
31-Aug-2010 |
23:15 |
|
Vulnerabilitydefinitions_german |
131,532 |
31-Aug-2010 |
23:15 |
|
Vulnerabilitydefinitions_italian |
131,118 |
31-Aug-2010 |
23:15 |
|
Vulnerabilitydefinitions_japanese |
138,909 |
31-Aug-2010 |
23:15 |
|
Vulnerabilitydefinitions_korean |
131,933 |
31-Aug-2010 |
23:15 |
|
Vulnerabilitydefinitions_spanish |
131,854 |
31-Aug-2010 |
23:15 |
Forefront Client Security, x64-based versions
File name |
File version |
File size |
Date |
Time |
---|---|---|---|---|
Bpacommon.dll |
1.0.1728.0 |
264,600 |
31-Aug-2010 |
19:14 |
Bpaconfigcollector.dll |
1.0.1728.0 |
408,984 |
31-Aug-2010 |
19:14 |
Eula.rtf |
206,773 |
03-Jun-2010 |
13:24 |
|
Fcssas.exe |
1.0.1728.0 |
73,624 |
31-Aug-2010 |
19:14 |
Fcssasengine.dll |
1.0.1728.0 |
99,736 |
31-Aug-2010 |
19:14 |
Fcssasmsg.dll |
1.0.1728.0 |
18,840 |
31-Aug-2010 |
22:29 |
Fcssasondemand.exe |
1.0.1728.0 |
17,816 |
31-Aug-2010 |
19:14 |
Fcssasrpc.dll |
1.0.1728.0 |
23,448 |
31-Aug-2010 |
19:14 |
Muauth.cab |
7,699 |
03-Jun-2010 |
13:23 |
|
Vacatalog_chinesesimplified |
6,355 |
31-Aug-2010 |
19:14 |
|
Vacatalog_chinesetraditional |
6,355 |
31-Aug-2010 |
19:14 |
|
Vacatalog_english |
6,355 |
31-Aug-2010 |
19:14 |
|
Vacatalog_french |
6,355 |
31-Aug-2010 |
19:14 |
|
Vacatalog_german |
6,355 |
31-Aug-2010 |
19:14 |
|
Vacatalog_italian |
6,355 |
31-Aug-2010 |
19:14 |
|
Vacatalog_japanese |
6,355 |
31-Aug-2010 |
19:14 |
|
Vacatalog_korean |
6,355 |
31-Aug-2010 |
19:14 |
|
Vacatalog_spanish |
6,355 |
31-Aug-2010 |
19:14 |
|
Vulnerabilitydefinitions_japanese |
138,909 |
31-Aug-2010 |
19:07 |
|
Vulnerabilitydefinitions_korean |
131,933 |
31-Aug-2010 |
19:07 |
|
Vulnerabilitydefinitions_spanish |
131,854 |
31-Aug-2010 |
19:07 |
|
Vulnerabilitydefinitions_chinesesimplified |
125,628 |
31-Aug-2010 |
19:07 |
|
Vulnerabilitydefinitions_chinesetraditional |
126,035 |
31-Aug-2010 |
19:07 |
|
Vulnerabilitydefinitions_english |
134,024 |
31-Aug-2010 |
18:50 |
|
Vulnerabilitydefinitions_french |
132,407 |
31-Aug-2010 |
19:07 |
|
Vulnerabilitydefinitions_german |
131,532 |
31-Aug-2010 |
19:07 |
|
Vulnerabilitydefinitions_italian |
131,118 |
31-Aug-2010 |
19:07 |
MOMAgent.MSI
The Microsoft Operations Manager agent installation has not changed from the deployment package release. The installation package is the version released with MOM 2005 Service Pack 1. For more information, visit the following Microsoft website:
MOM 2005 Service Pack 1http://technet.microsoft.com/en-us/opsmgr/bb498239.aspx
mp_AMBits.MSI
This subordinate component installs the Microsoft Forefront Client Security anti-malware client. The changes and binary versions of this anti-malware client installation are described in the following Microsoft Knowledge Base article:
2394433 Forefront Client Security antimalware client update: October 2010
WindowsXP-kb914882-x86-XXX.exe
This updates is only applied on 32-bit Windows XP Service Pack 2 computers which do not have it already installed. Each localized Forefront Client Security deployment package will contain a corresponding localized version of this update.
If KB914882 is applied during installation of this update package then a restart is required. For more information, click the following article number to view the article in the Microsoft Knowledge Base:914882 The filter manager rollup package for Windows XP SP2
WSUS Applicability Logic
As described earlier, this update is published only to Windows Server Updates Services (WSUS) and is not available to computers directly from Microsoft Update. WSUS uses detection logic to determine which computers should receive this update. The logic it uses is as follows:
-
Supported operating systemhttp://go.microsoft.com/fwlink/?LinkId=77561
The computer must be running an FCS supported operating system. A list of supported operating systems can be found on the FCS system requirements page at the following TechNet Library page: -
FCS policy registry settings
or the deployment package to apply to potential clients those computers must have already received Client Security policy produced by the FCS management server console. The policy contains certain registry values which are used in determining package applicability. Additionally, when clientsetup.exe runs, the registry settings determine the Collection server to which the client reports. -
All three agents client components are not installed
The update detection logic looks for all three Client Security client components (anti-malware, security state assessment, Operation Manager 2005 agent). If any of these components are missing, and the other applicability rules match, the update applies and tries to install all three components. This can be useful if client computers are installed or imaged without one or more of the three components (for example, installed with the /NoMOM switch).
http://go.microsoft.com/fwlink/?LinkId=103309, in compliance with the configured Windows update policy.
As soon as the applicability logic is passed, the client computer downloads and installs the appropriate localized version of the Client Security client, as described in the Client Security planning guide at