Do this only one time on every macOS endpoint. If you already approved it, there is no need to repeat it when the SentinelOne App is updated. If you do not complete this prerequisite step, your mac will not be fully protected.
If you get below alert (During and After Installation), click on "Allow".
To approve Network Extension:
Incase you did not click allow, Go to System Preferences -> Security & Privacy -> General, and look for the same prompt. Unlock & allow the same.
The macOS (10.15 Catalina and later releases) makes sure that applications are installed in a secure way. It limits installation only to applications that are approved by Apple and the user. This change does not let applications access specified paths (such as Documents, Downloads, and Desktop) without user consent.
If the SentinelOne icon shows "Needs user attention" or these messages "Authorize Full-Disk-Access to SentinelOne in System Preferences", "Authorize SentinelOne components in System Preferences". Approve Full Disk Access for SentinelOne Apps in the System Preferences.
Important: This is done only once on an endpoint. If already done on the endpoint, do not repeat it when the Agent is updated. If you do not complete this prerequisite step, the macOS Agent will not have full visibility to all files from all users.
Authorize Full Disk Access to these processes:
sentineld
sentineld_helper
sentineld_shell
Approve/Authorize Full Disk Access on a local computer :
sentineld_shell
sentineld_helper
sentineld
Check your Client UI to make sure it "Threat Protection" is enabled and screen looks like below
Check the Capture Client Management Console and you could see Sentinelone Icon showing Online