Ok so I dont usually use detection rules but think this would be very beneficial.
I have been reading and searching and reading up but I guess the top question I need to ask is.
1. Do you have to do a custom inventory to read in for detection rule?
Example:
I have McAfee EPO 4.6 to 4.8 upgrade
I have McAfee Enterprise 8.8 w/Patch 2 to 8.8 w/Patch 4 upgrade
I have McAfee HIPS 8.0 w/Patch 2 to HIPS 8.0 w/Patch 4 upgrade
all in one policy. This works great but if I want to run this over again, overtop the current machines, how do I setup detection rules so it will just skip it and not install?
question 2.
2. Is a custom inventory required for this MSI Product Code to be detected or does this get verified during install?
so for now I guess I will see how this goes. Going to install overtop of my current test machine install...