Securus XT Client Installation Guide

The client is a standard MSI file and can be deployed via Group Policy, SCCM, Intune or any other software deployment program.

It can also be manually installed by double clicking the package file and following the on screen instructions. The Securus XT client will install over the top of any 9.x clients but not version 7, for version 7 clients we can provide a script to help with uninstalling it.

The computer will need to be rebooted or can be logged out and back in again to start the client.

 

Pre-requisites

The v11 client requires Visual C++ Redistributables to be installed. You can find the latest version of these here: Latest supported Visual C++ Redistributable downloads

 

Firewall Exceptions

The client requires the following ports to be opened to allow full communication to the Securus cloud service.

  • 443 TCP (Outbound)

Version 10.4.6+ clients will communicate with the server using HTTPS over port 443 instead of UDP, so only one rule for 443 TCP is necessary.

The destination hostname and IP address of your cloud service will be provided in your setup email.

 

Sophos Exceptions

If Sophos is in use at the school, we highly recommend that a global exclusion is created prior to installing the client. The exclusion should be for the Securus folder path which is:

Program Files\Securus\securusclient\*

This will ensure that Sophos does not detect the Securus client as a threat and remove any of the client files from the installation folder.


Test The Client Connection

The client icon will show in the system tray when it is running.

The icon will show as normal if it can connect to the server.

 The icon will be greyed out if it cannot connect to the server.

In most cases a firewall will be blocking the connection. Firewall instructions will have been provided in your initial setup email, but for more information please contact the support team. The client uses port 443 TCP over HTTPS for communication.

The icon can also show as other colours, please read on for descriptions of each colour.

The client icon can be right clicked for diagnostic options.

Selecting Status will show information such as which group the client is currently connected to and the server time. If the client is not connected, the server time will display that the client is not connected and will not show the correct time.

Selecting Version will show the version numbers for the client, server and library. Once the client has a current library date and time (it may not be the exact date and time for your computer), it is ready to start the next testing step. Please note that the client will not start monitoring until a library file has been successfully downloaded.

After confirmation that the client has started and is connected to the server, you should see a username within the Securus console. At this stage a test can be completed to ensure full connection to the server. We suggest opening a word document and typing in “Our Secret” (without quotes). This will generate a capture that can be viewed within the console.


View connected computers in the Securus console

It is also possible to see what stations have connected by looking in the Station group.

To do this, go to the Settings View and then click on All Stations. This will show a list every computer that has connected to the server with the client installed. Version numbers are also displayed to help during updates.

You can also see when the station last connected to the server and when it was last active.


Client Icon Colours

Connected

The client will show as the full colour Securus logo when successfully connected to the Securus server.

 

Not Connected

The icon will show as grey if the client cannot connect to the server. Likely causes for this are a
firewall or anti-virus blocking the connection, or an issue with the server itself. Please contact the
support team if this is the case.

 

In Console

The icon will change colour to green when it has detected the user is in the Securus console. The
client will then temporarily deactivate itself to stop duplicate captures from being created when
viewing new capture data. As soon as the window focus is changed or a new browsing tab select,
the client will re-activate and start monitoring again. This feature may not work in Internet Explorer.

 

Updating

The client will flash blue periodically when it is receiving an update from the server. This can be
observed when the library is updated or a server side setting is changed.

 

Deactivated

The icon will be displayed as red in colour when it has been deactivated. A user with administrator
privileges can deactivate the client when necessary to stop the client from monitoring.


Manual Install Checklist

  • Install the client by running the MSI package.

  • Restart the computer or log out and back in to start the client.

  • Check the client icon in the system tray.

  • Allow 5-10 minutes for the client to download the library and monitoring profile.

  • Create a test capture by opening WordPad and typing ‘our secret’.

  • Navigate to the Securus console and login with your details. Your test capture should be viewable in the Ungraded Captures view.

SCCM/GPO Install Checklist

Document number/reference: SEC-KB-INST-003

Classification Level: Public

Related Articles:

Version Date Comment
Current Version (v. 18) Dec 13, 2024 14:33 Chris Collins
v. 17 Dec 13, 2024 14:32 Chris Collins
v. 16 May 14, 2024 09:57 Chris Collins
v. 15 Sept 21, 2023 14:01 Chris Collins
v. 14 Mar 03, 2023 16:04 Chris Collins
v. 13 Mar 03, 2023 16:04 Chris Collins
v. 12 Sept 12, 2022 11:40 Chris Collins
v. 11 Mar 17, 2022 15:00 Chris Collins
v. 10 Mar 17, 2022 14:59 Chris Collins
v. 9 Mar 02, 2022 16:06 Chris Collins
v. 8 Feb 25, 2022 09:11 Chris Collins
v. 7 Feb 25, 2022 09:10 Chris Collins
v. 6 Feb 24, 2022 10:44 Chris Collins
v. 5 Feb 24, 2022 10:43 Chris Collins
v. 4 Feb 24, 2022 10:42 Chris Collins
v. 3 Feb 24, 2022 10:41 Chris Collins
v. 2 Dec 15, 2021 14:39 Chris Collins
v. 1 Dec 02, 2021 15:02 Chris Collins