Trellix DLP Discover – SaaS options

Prev Next

(This topic applies to Trellix DLP - SaaS.) Trellix DLP Discover – SaaS can run on physical or virtual servers. You can install one or more Discover servers on your network using Trellix ePO - SaaS (recommended) or manually.

Large networks typically divide the workload by LAN or workgroup, and Trellix DLP Discover – SaaS can assign different server configuration policies to different groups. Reporting can be by group, or a rollup data server task can collect data from several servers to produce a single report.

Make sure that any servers you use for Trellix DLP Discover – SaaS meet these requirements:

  • The server has Trellix® Agent installed and running.
  • The server is communicating with Trellix ePO - SaaS.
  • The server is added to the Trellix ePO - SaaS System Tree.

Trellix DLP Discover – SaaS has an optional Optical Character Recognition (OCR) add-on package for extracting text from image files and scanned images saved as PDF. The add-on is installed separately in the Trellix ePO - SaaS repository, and deployed to the server after deploying the Trellix DLP Discover server software. When updating, you must also update the OCR package, as it is automatically deleted when you update the server software.

Trellix DLP Discover – SaaS performs cryptographic operations in a way that is compliant with FIPS 140-2. Cryptographic libraries bundled with Trellix DLP Discover – SaaS always have FIPS mode enabled without any option to disable it. To enable FIPS mode on Windows, refer to the published Security Policy Document for the applicable platform which can be found at the NIST Validated Modules web site. For additional information, refer to the Microsoft FIPS 140-2 Validation documentation.