Client Installation Guide (INSIGHT v5)
The GuardWare INSIGHT Client is installed on endpoint devices and runs as a background service, continuously monitoring user activity and data movement. Activity data is transmitted securely to the INSIGHT Management Console via HTTPS, where administrators can review logs, identify risky behaviour, and enforce policies.
With the Client deployed, organisations gain visibility into endpoint activity, apply protection policies at the device level, and detect or prevent data exfiltration attempts.
System Requirements
Verify that endpoint devices meet the following requirements before installing the Client.
Processor
Dual-core or higher
Memory
8 GB RAM
Disk Space
500 MB free
Operating System
Microsoft Windows 10 or later
Upgrading from Client v4
If you are installing the INSIGHT Client for the first time, skip this section and proceed to Whitelist Components.
GuardWare INSIGHT Client v5 requires a clean installation and is not compatible with v4 components or Server v4 environments. Before deploying Client v5, fully remove any existing Client v4 installation, including residual files, registry entries, and previous server configurations, as these can interfere with v5.
Client v4 cannot communicate with Server v5, and Client v5 cannot communicate with Server v4. Existing v4 settings and configurations are not preserved during the upgrade and must be reconfigured after deployment.
Contact GuardWare to obtain the uninstaller, then complete the following steps on each target device.
Open Command Prompt with administrator privileges.
Run the uninstaller with the
sjunixflag:GWUninstaller_NoDecrypt_5.1.0.1_2026.06.exe sjunix
In the same window, delete the following services as well:
Close the Command Prompt window and launch File Explorer.
Navigate to the following folders and delete them:
Finally, open the Registry Editor and delete the following folder:
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\GuardWare\INSIGHT

Restart your device.
Whitelist Components
Before deploying Client v5, add INSIGHT components to your antivirus, EDR, or XDR trusted applications list. This prevents security tools from blocking or interfering with the installation and runtime behaviour.
Some security solutions may flag INSIGHT executables, services, or drivers by default. To ensure a smooth deployment, configure exclusions in advance.
For the full list of components, see Whitelist GuardWare INSIGHT.
Installation Methods
The Client supports multiple deployment methods to suit different infrastructure requirements.
Suitable for individual devices or small-scale deployments.
Automated deployment across domain-joined devices via Group Policy.
Cloud-based deployment for enrolled Windows devices.
RMM tools for enterprise-scale deployments.
Manual Installation
Manual installation is performed by running the installer directly on each endpoint device and completing the setup wizard.
Double-click the installer file.
In the Setup Wizard, click Next to continue.
The Client will be installed in
C:\Program Files (x86)\Guardware\INSIGHT. Click Next to continue.
Click Install to begin the installation. The installation may take a few minutes to complete.

If a User Account Control (UAC) prompt appears, verify that the publisher is listed as GuardWare Australia Pty Ltd, then click Yes to proceed. Clicking No cancels the installation.
Once the installation is complete, click Finish to exit the wizard.
Active Directory Deployment
Group Policy-based deployment automates Client installation across multiple domain-joined computers. This method ensures consistent deployment across organisational units with minimal manual intervention.
On the domain controller or an admin workstation with RSAT installed, open Active Directory Users and Computers.
On the toolbar, click Create a new Organisational Unit (OU). A dedicated OU prevents the deployment policy from conflicting with existing group policies.
Enter a name for the new OU, for example, Install GW Client v5, and click OK.
Search for Group Policy Management and click to launch the console.
Locate the new OU, right-click it, and select Create a GPO in this domain, and Link it here…
Enter a descriptive name for the policy, such as GW INSIGHT v5 Installation, and click OK. The same GPO can be linked to additional OUs if required.
Right-click the new GPO and select Edit to open the Group Policy Object Editor.
In the GPM editor, go to Computer Configuration > Policies > Software Settings > Software Installation.
Right-click Software Installation, select New > Package…, and browse to the v5 Client MSI file.
Enter the package path using the FQDN (Fully Qualified Domain Name) format, for example,
\\DC01\client\Client.msi, whereDC01is the name of your domain controller, andclientis the shared folder containing the MSI installer.Select the package, click Open to add it to the policy, then close the Group Policy Object Editor once the package has been added.
In the Group Policy Management Console, confirm the new GPO is listed under Linked Group Policy Objects for the selected OU.
Press Win + R, type
gpupdate /force, and click OK to apply the policy on the local machine. Endpoints in the selected OU will receive the policy at their next startup or group policy refresh.
Microsoft Intune Deployment
Microsoft Intune enables centralised, automated deployment of the Client to enrolled Windows devices.
Sign in to the Microsoft Intune Admin Center using an administrator account.
From the left navigation menu, navigate to Apps > All apps.
Select Windows Apps and click + Create to create a new application.
Under Select app type, choose Line-of-business app, and click Select.
In the App information section, click Select app package file, then browse and upload the GuardWare INSIGHT Client installer file. Review the app details and click OK.
Enter the following information in the App information section, then click Next.
Name: Enter a display name of the application that appears in Intune and on endpoint devices during installation.
Description: Enter a description for the application.
Publisher: Enter the publisher’s name.
In the Assignments tab, click Add group under Required and select the Azure AD device or user groups that should receive the Client.
Click Next, review the configuration summary, and click Create to publish the deployment.
The Client will install automatically on all assigned devices the next time they check in with Intune. Monitor installation progress under Apps > Monitor > Installation status in the Intune Admin Center.
Third-Party Deployment
The Client can be deployed using third-party RMM tools such as PDQ Deploy, Datto RMM, ConnectWise Automate, or similar solutions. These tools support silent MSI installation using the following parameters:
Replace InsightAgent.msi with the filename of the downloaded installer.
Consult your RMM platform's documentation for specific deployment procedures. Most platforms support:
Scheduled or immediate deployment.
Target computer or group selection.
Pre-installation scripts (for uninstallation of Client v4 if installed).
Post-installation verification scripts.
Installation status reporting.
The client service starts automatically after installation. Verify deployment success by checking client connectivity in the INSIGHT Management Console.
Last updated

