Browse documentation
AvailableWindows Agent

Agent Identity

How the Agent proves that posture belongs to the approved endpoint.

Applies to
Current OZVO production services
Product area
Windows Agent
Audience
Owners and Administrators
Last reviewed
September 17, 2026
Status
Available

Guidance

  • Enrollment creates a unique endpoint identity bound to the approved device.
  • The P-256 key is non-exportable and prefers TPM-backed CNG where supported.
  • Supported upgrades preserve identity, so reenrollment is normally unnecessary.
Still need help?Contact Support with the site, device, time, and exact error—never credentials or recovery secrets.Contact Support