Set up your default shared storage to store evidence files, registered document fingerprints, and match highlights.
Create an S3 bucket in Amazon S3.
Note
After you create an Amazon S3 bucket, it can take up to 24 hours for the bucket name to propagate across all AWS Regions. During this time, you might receive the "307 Temporary Redirect" response for requests to regional endpoints that aren't in the same Region as the S3 bucket. For more information about Temporary Request Direction, see the AWS documentation.
Trellix DLP Endpoint - SaaS license activated in ePO - SaaS
Note
For information about configuring shared storage on Amazon S3 bucket, see KB92755.
In ePO - SaaS, select Data Protection → DLP Settings.
DLP Settings opens on the General page.
Enter your S3 Bucket name and click Register Bucket.
A setup connection is established.
Click Get Bucket Policy and create a copy of the policy.
Open your bucket policy in Amazon S3 and paste the policy from the previous step.
Click Test Connection to make sure ePO - SaaS can access your evidence storage.
Set the shared password to use for uninstalling the software, removing files from quarantine, encrypting evidence, and temporary client bypass.
Your shared storage is now configured. The Amazon S3 bucket configurations are automatically copied to your client configuration policies assigned to your systems.
Note
Evidence upload of large files to Amazon S3 storage can take a while to upload. Evidence files are available from incidents only once the upload is completed.