The Trellix Database Security installer requires specific firewall rules on the Windows Server to permit domain network traffic and TCP connections. You must create an inbound firewall rule for the Domain Network profile.
Configure a TCP Inbound Allow Rule for TrellixDBS.exe that includes the following ports:
8443 — Database Security console
1996 — Sensor–server communication
Important
If the Domain Network profile is configured to block inbound traffic by default, the firewall drops any packets that do not have an explicit allow rule. Unless the user approves the connection via the
Query Userprompt during installation, the server will not respond to incoming TCP SYN packets from the sensor.