McAfee Endpoint (ePO) Security offers various endpoint security solutions to managed devices. This article provides best practices recommendations to ensure smooth interoperability of Netskope Client and McAfee Endpoint Security installed in a managed device.
We recommend that you read these articles to gain a better understanding of how Client works and its interoperability with 3rd party apps.
This best practices and configurations are based on the following product versions.
We recommend the following configuration requirement to ensure Netskope Client is able to steer traffic to Netskope cloud and also allow McAfee to process their traffic without any conflicts.
Default policies in McAfee ePO does not introduce restrictions on Netskope Client traffic. However, when creating a new policy ensure that the ports 80 and 443 are enabled and allowed in the McAfee Security Firewall rules.
Note
HTTP/HTTPS traffic (via 80 and 443) is enabled and allowed in default firewall policy






Note
If the ports are not allowed or enabled, click the Edit button open the Edit Rule page to select the Allow option listed under Actions and select Enable rule under Status.
In the Netskope tenant WebUI, add McAfee Agent as a certificate pinned app exception and add a set of McAfee URLs as domain exception to the appropriate steering configuration.
Managing this file correctly allows you to bypass decryption issues, expand your game compatibility, and optimize your emulation workflow on PC, Steam Deck, or Android platforms. What is the keys.txt File?
The Wii U operating system (IOSU) uses a set of asymmetric and symmetric keys to encrypt game data. When Cemu loads a game, it must decrypt this data on the fly. The keys.txt file provides Cemu with these decryption keys.
While the key.txt file is essential for Cemu, it's not without its issues. Here are some common problems users may encounter:
Newer versions of Cemu (2.0 and later) have streamlined this. They generally expect a single keys.txt file, which acts as a container for both system keys and title keys. If you have an older titlekeys.txt , it is often best to rename or merge it into keys.txt to ensure the emulator detects the full library of decryption keys. keystxt for cemu better
Because they are already decrypted, Cemu can run them instantly without looking at your keys.txt file.
Emulating the Wii U on a PC using Cemu offers breathtaking visuals, often surpassing the console's original output. However, one of the most common hurdles for newcomers and experienced users alike is setting up the file properly.
For each encrypted game you want to run, add a new line below the Common Key with that game's specific key. You can use a # symbol to write a comment after the key to identify the game, which helps keep your file organized. Managing this file correctly allows you to bypass
The safest and most legal method to obtain your keys is by dumping them directly from your physical Wii U console.
: Some versions store it in %AppData%\Cemu\ .
Place Tik2SD on your SD card, run it via the Homebrew Channel, and select the option to dump keys. When Cemu loads a game, it must decrypt this data on the fly
The best and most legal way to get keys is from your own console. Homebrew your Wii U console. Use a homebrew tool like ** dumpling ** or ** JNUSTool **. Extract the system common key and your game-specific keys. Copy them into your text file on your PC. 3. Format the Text File Correctly
This is Cemu's modern compressed format. It merges game files, updates, and DLC into one file and does not require manual keys in keys.txt . Enable Graphic Packs Do not play games on stock settings. Open Cemu and go to Options > Graphic Packs . Click Download latest community graphic packs .
While using Cemu (the Wii U emulator), you might have encountered the need for a
Once you have the basics down, you can implement a few more advanced strategies to make your keys.txt handling even better.
Configure Input Settings by selecting Wii U GamePad , XInput API, your controller, and mapping buttons. Save as a Profile for ease of use.
Netskope Client is validated to work smoothly with McAfee ePO. To view the validation tests for Netskope Client, see Netskope Client Interoperability
McAfee functions were validated by executing the following tasks: