Two agents. The Client Agent is for people connecting in. The Server Agent turns a machine into a gateway to the systems on its network.
Both are downloaded from the Downloads page in the console. Choose the agent, then your platform. Every download link is single-use and short-lived, so fetch a fresh one rather than sharing a URL.
Under Install Steps each platform carries a single command - PowerShell or Command Prompt on Windows, one form everywhere else - with Manual beside it for anyone who would rather do it by hand, which is where the package download is. Paste the command into a terminal on the machine you are installing on: it downloads the package, installs it, and starts the service. There is nothing to carry over, unpack, or paste at a prompt.
sudo, so it asks for your password. It will not
install without it.The steps below are that same install done by hand.
There is one button. Connect signs you in if it has to - your browser opens, you sign in there - and then brings the tunnel up. If your organization has more than one FGMesh you are asked which to join before anything is enrolled; a client is on one mesh at a time.
sudo apt install ./<package>.debGenerate a server licence key on the Licences page first: the installer takes it as an argument and a first install refuses to proceed without one. Once the gateway registers it appears on Asset Management, and you grant people access to it under Private Access → Access Policy.
sudo ./install.sh FG-XXXX-XXXX-XXXX-XXXX.xattr -dr com.apple.quarantine .), then
sudo bash install.sh --no-build --license-key FG-XXXX-XXXX-XXXX-XXXX..\install.ps1 -LicenceKey FG-XXXX-XXXX-XXXX-XXXX.No inbound port needs opening. The gateway makes its own way out.