A cloud Endpoint Security (HX) server is an instance of the Endpoint Security (HX) system image deployed in the Amazon Web Services (AWS) cloud. The Endpoint Security (HX) server is the provisioning server in a cloud Endpoint Security (HX) environment. All agent communication is with the this server.
Cloud Endpoint Security (HX) servers are initially deployed for you by Trellix in AWS, with appropriate Trellix licenses already established. Verify that you have access to the server, using the information provided by Trellix. After your cloud Endpoint Security (HX) servers are deployed, you are responsible for maintenance. The cloud Endpoint Security (HX) servers can be maintained in the same manner as virtual or on-premises Endpoint Security (HX) servers.
Important
Ensure that you perform regular backups of your cloud Endpoint Security (HX), using the instructions found in "Backing up the Database" in the Endpoint Security (HX) Server User Guide Maintain a current copy of your PKI certificates using the instructions in "Managing HX Series PKI Certificates" in the Endpoint Security (HX) System Administration Guide. In case of a critical breakdown or corruption of the server, Trellix may redeploy a new instance and you can restore the backup on the new instance.
Endpoint Security (HX) servers are rated up to 100,000 agents. Cloud Endpoint Security (HX) servers have better performance than physical, on-premises, Endpoint Security (HX) servers due to their storage configurations, which are based on SSD volumes that are designed to deliver guaranteed performance. Virtual Endpoint Security (HX) performance will vary, depending on the hardware resources you have selected for the server.
Note
For more information about specific Endpoint Security (HX) models, see Supported appliance models.
If you need to migrate your agents or server settings from an existing on-premises Endpoint Security (HX) server to a cloud server, see Migrating between on-premises appliances and cloud servers.
In a new cloud Endpoint Security (HX) environment, the server and associated DMZ server instances (if a DMZ is used) are attached for you. If you migrate an on-premises HX server to a cloud server, the cloud server and any DMZ server will be detached and reattached during the migration.
Note
In Helix, cloud Endpoint Security (HX) servers can be managed by Central Management System. Central Management System of a cloud Endpoint Security (HX) is set up using the Central Management System Web UI. (Errors result for attempts to set up Endpoint Security (HX) management using the Central Management System CLI.) See the appendix "Configuring a Managed Appliance" in the Trellix System Security Guide.
Prerequisites
Deployment of an Endpoint Security (HX) server in the cloud is supported for Endpoint Security (HX) 3.6.0 and later versions.