Trellix DLP Endpoint for Windows can now seamlessly integrate with Chrome Enterprise, Microsoft Edge for Business, Firefox, and Island browsers using the Content Analysis Connector SDK. This improves performance, security and enhanced browsing experience.
Advantages of enabling this integration
This API-based integration offers several advantages over the traditional integration methods, including:
Note
Trellix recommends Content analysis connector SDK as the preferred method for web protection.
Integrates seamlessly with enterprise browsers to ensure users remain protected during browser updates.
API-based approaches provide efficient and high-performance data inspection and prevention.
Inspect and protects data in real-time, reducing the risk of a data leak and ensures compliance with PCI, PII, HIPPA and several other regulations.
Scalable integration ensures continued protection during browser upgrades while reducing compatibility issues, streamlining the implementation process for both IT and DLP administrators.
Note
Texts manually typed in the text box cannot be monitored or blocked using the Content Analysis Connector SDK.
What are we trying to solve?
Security updates and architectural changes in enterprise browsers, including network sandboxing can cause Trellix DLP Endpoint to crash and not display the URLs in the DLP Incident Manager page. It is necessary to constantly update the browser extension to ensure compatibility with the latest browsers and to meet browser security requirements. The interval between the update of browsers and the update of compatible extensions leaves the protections vulnerable.
In addition, printing from the browser has its own challenges, including the inability to block pdf printing and the inability to block printing based on file name or extension.
Browser prerequisite
To utilize the Content Analysis Connector (CAC) SDK feature, ensure the following minimum browser versions are installed:
Microsoft Edge for Business: Version 137 or later
Mozilla Firefox: Version 142 or later
Mozilla Firefox ESR: Version 140.2.0 or later
Island Browser: Contact the Island Support Team for the specific supported version.
Configure Chrome browser cloud management
Perform these steps to configure Chrome browser cloud management:
Use the existing Google admin account or sign up for Chrome Browser Cloud Management.
In the Google Chrome admin console, select Directory | Organizational Unit and click + to create a container for the devices you wish to integrate.
In the Google Chrome admin console, select Chrome browser | Managed browser and select the container created in step 2 and click Enroll.
Copy the token or download the .REG file and run it on your Endpoint using GPO or Intune and relaunch the Google Chrome browser.
In the Google Chrome admin console, select Devices | Chrome | Settings | Users & browser settings and search for Chrome Enterprise connectors
Select Trellix from the dropdown menu for Upload content analysis, Bulk text content analysis, and Print content analysis fields and click Save.
Open Google Chrome, browse chrome://policy and verify if the following policies are displayed:
OnBulkDataEntryEnterpriseConnector
OnFileAttachedEnterpriseConnector
OnPrintEnterpriseConnector
For more information, see Chrome Browser Cloud Management.
Configure Web Browser Content Inspection API for Microsoft Edge for Business
You can configure the Web Browser Content Inspection SDK for Microsoft Edge using two options:
Using Edge Management Service: You can manually configure Microsoft Edge Business using the Microsoft Edge management service. For more information, see Set up a Trellix DLP Connector.
Programmatic Automation: For a seamless experience, this configuration is programmatically automated in Trellix DLP Endpoint for Windows. This is enabled by selecting the option Browser API integration for Microsoft Edge for Business.
Configure Web Browser Content Inspection API for Mozilla FireFox and Island Browser
For a seamless experience, this configuration is programmatically automated in Trellix DLP Endpoint for Windows. This is enabled by selecting the option Browser API integration for Firefox and Island.
Enable Content Analysis Connector SDK in Trellix DLP Endpoint for Windows
Perform these steps to enable Content Analysis Connector SDK integration in enterprise browsers:
In the Policy Catalog, open the current Windows Client Configuration. Select Settings → Operational Modes and Modules.
Enable File upload protection for or Printer Protection for.
Choose the browsers you want to integrate.
Click Apply policy.
Policies are applied to web protection and printer protection rules.