Add a Trellix Logon Collector server and certificate to Trellix DLP Network

Prev Next

To start using Trellix Logon Collector with Trellix DLP Network, you must add a Trellix Logon Collector certificate to a system and then add a Trellix DLP Network certificate to Trellix Logon Collector.

  • Have at least one Trellix Logon Collector server configured.

  • Do these web proxy changes to ensure smooth communication between Trellix Logon Collector and Trellix DLP Network:

    • The web proxy must be configured to send the X-Client-IP header. This is usually the IP of the host running the browser or the web client.

    • The web proxy must not send the X-Authenticated-User header.

  1. To download the certificate from Trellix DLP Network, go to https://<APPLIANCE>:10443/certificates, then select [Hostname.domain.crt]

  2. In Trellix Logon Collector, select MenuTrusted CAsNew AuthorityChoose File, select the certificate you downloaded, and click Save.

  3. In ePO - On-prem, open the Policy Catalog.

  4. Select the DLP Appliance Management product, choose the Users and groups category, and open the policy that you want to edit.

  5. Add the Trellix Logon Collector server details to Trellix DLP Network.

    1. In the Trellix Logon Collector section, select Identify users making web requests.

    2. Click + to open the Add dialog box.

    3. Type an IPv4 address or host name of a Trellix Logon Collector server you want to connect to.

    4. Edit the Trellix Logon Collector port if needed.

  6. Get the certificate text from Trellix Logon Collector.

    1. In Trellix Logon Collector, select MenuServer Settings.

    2. Click Identity Replication Certificate.

    3. Select the certificate text in the Base 64 field and copy it to the clipboard or into a file.

  7. Return to the Add dialog box and select either Import from file or Paste from clipboard to add the certificate text.

  8. [Optional] Add more Trellix Logon Collector servers.

    The Trellix Logon Collector server is added to the list of servers.