Skip to content

PowerShell (Manual)

To deploy the Lockfy Agent manually on a Windows device, make sure you have the following:

  1. Administrator access to the device (Local or domain accounts).
  2. The Lockfy Agent deployment PowerShell script.

Copy the signed deployment script provided by your organization to the root of the C: drive. In the example shown, the file name is LOCKFY_AGENT_DEPLOYMENT_GPO_SIGNED.ps1.

  1. Open the Start menu.
  2. Search for Windows PowerShell.
  3. Right-click Windows PowerShell and select Run as Administrator.

In the PowerShell window, change to the root of the C: drive:

Terminal window
cd \
c:

Then verify that the script is present:

Terminal window
dir LOCKFY*.*

You should see LOCKFY_AGENT_DEPLOYMENT_GPO_SIGNED.ps1 in the output. If not, return to Copy the Script and confirm that the script was copied to the correct location.

If required by your environment, allow signed scripts to run:

Terminal window
Set-ExecutionPolicy AllSigned

Run the deployment script with your tenant-specific values:

If you need to verify or obtain the agent client values first, review Authorization Clients.

Terminal window
.\LOCKFY_AGENT_DEPLOYMENT_GPO_SIGNED.ps1 -BaseUrl "{baseUrl}" -ClientId "{clientId}" -ClientSecret "{clientSecret}"
ParameterDescription
-BaseUrlLockfy API URL for your hosted tenant or on-premises Lockfy server.Required string
-ClientIdThe agent client ID created during setup.Required string
-ClientSecretThe agent client secret related to the ClientIdRequired string
-SilentSuppress console output.Optional flag
-NoLogDo not write a log file.Optional flag
-ForceForce installation or update even if the local version matches or exceeds the server version.Optional flag

After the script completes, review the output for success or error details before closing the PowerShell window.

For a domain-wide rollout, use the Group Policy Objects (GPO) guide instead.