---
title: "Installing Endpoint"
canonical: "https://docs.infoblox.com/space/BloxOneThreatDefense/35374340/Installing%20Endpoint"
format: markdown
---
You can install Infoblox Endpoint on roaming client devices to protect them from malicious attacks. Endpoint supports dual-stack IPv4 and IPv6 DNS configurations, ensuring protection across all network environments. In dual-stack networks, Endpoint proxies IPv6 DNS queries and securely forwards them to Infoblox Threat Defense using IPv4.

> ⚠️ ### Note
> ⚠️ 
> ⚠️ Endpoint does not support IPv6-only environments.

The following illustration shows the available Endpoint deployment options.  

> Macro (drawio)

Depending on the number and type of devices and your security management setup, you can deploy Endpoint using one of the following:

| **Endpoint Deployment Type** | **Link to Documentation** |
| --- | --- |
| ![a.png](media://fee44d9c-2dbd-4cf1-843f-d5f7f1ebbf2a) | [Standalone Deployment](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneThreatDefense/pages/35436945) |
| ![b.png](media://1b723714-b10b-4573-a508-4e4e61929064) | [Windows Mass Deployment](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneThreatDefense/pages/35436959) |
| ![c.png](media://814a9394-1e43-4a98-bfc3-055cc15b9e9b) | [MacOS X Mass Deployment](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneThreatDefense/pages/35470606) |
| ![d.png](media://8c3aae63-37b1-48de-8f46-a10811e13e40) | [McAfee ePO Deployment](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneThreatDefense/pages/35404718) |
| ![e.png](media://c93514d7-59c3-4cd5-af13-60cedae85da2) | [Linux Client Application Deployment](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneThreatDefense/pages/297666539) |
| ![f.png](media://b670b494-e108-4caf-b87f-ce13f619561f) | [Chromebook DOH Enrollment (MV3 ChromeOS)](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneThreatDefense/pages/1227128856) |
| ![g.png](media://82ef2fcb-6aec-4a2a-a079-8f13d77d9687) | [Windows 10/11 Deployment Using Microsoft Intune](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneThreatDefense/pages/1127383107) |

> ⚠️ ### Note
> ⚠️ 
> ⚠️ **Installing on Mac OS**
> ⚠️ 
> ⚠️ If installing on Mac OS and the default firewall setting is unchecked for “**Automatically allow downloaded signed software to receive incoming connections**”, then the OS will prompt “**Do you want the application “coredns” to accept incoming network connections?**”  
> ⚠️ Responding to the prompt and choosing to receive coredns network responses will have no affect on Firewall allow/block, as the bind IP is alias and the coredns functions and will work as intended.

Ensure that you review the best practices before installing Endpoint on your devices. For information, see <span style="color: #0000ff">*[Best Practices for Endpoint](https://infoblox-docs.atlassian.net/wiki/spaces/BloxOneThreatDefense/pages/334626941)*</span>.