Check in Trellix EDR extension

Prev Next

Check in Trellix EDR extension to migrate from Active Response to Trellix EDR.

Make sure that you have:

  • ePO - On-prem 5.10.x or later installed.

  • Active Response 2.3 or later installed and configured.

For information about supported platforms, environments, and operating systems for Active Response, see KB84473. For information about installing the Active Response client, see KB89991.

When you create your Trellix EDR account, use the same email address you used to connect to Trellix CB for Active Response.

  1. Log on to Trellix EDR as administrator.

  2. Click the configuration icon on the top-right corner to access the Configuration page.

  3. On the Configuration page, select Use Trellix ePO - On-prem for management.

    Important

    Make sure you select the correct configuration. This setting can only be changed with the assistance of Customer Support.

  4. Click Save, then click Continue to confirm the configuration.

  5. In the View account settings section, you can opt to share telemetry data by clicking I choose to share telemetry data (defined below) with Trellix, then click Save.

  6. Check in the Trellix EDR extension:

    1. Log on to ePO - On-prem as administrator.

    2. On ePO - On-prem, select MenuSoftwareSoftware Manager / Software Catalog, search for Trellix EDR.

    3. Select Trellix Endpoint Detection & Response package and click Check In.

    After checking in the extension, all dependent packages and extensions are installed:

    • DXLBrokerMgmt

    • DXL ePO client

    • DXL Client Mgmt

    • Trellix EDR Client Package

    • Trellix EDR Endpoint Snapshot Tool

    • Trellix EDR Client Extension

    • ePO - SaaS Cloud Bridge