Configure throttling values

Prev Next

For most enterprises, the default settings for the throttling feature are enough. But, if needed, you can change the default configuration for the feature.

  1. On the ePO - SaaS console, select MenuPolicyPolicy Catalog.

  2. Select Solidcore 9.x.x: General for the product.

  3. In the Configuration (Client) category, click Duplicate for the Trellix Default policy.

  4. Specify the policy name, then click OK.

  5. Open the policy and click the Throttling tab.

  6. Edit the values for events, inventory updates, and policy discovery requests, as needed.

    Value

    Description

    Events

    The value for threshold and cache size is defined in number of event XML files. By default, 2000 XML files can be processed per endpoint in 24 hours. Also, the default event cache size is set to 7000 XML files per endpoint.

    Inventory Updates

    The value for threshold is defined in number of file elements containing inventory updates. By default, 15000 files elements can be processed per endpoint in 24 hours.

    Policy Discovery (Observations)

    The value for threshold and cache size is defined in number of request XML files. By default, 100 XML files can be processed per endpoint in 24 hours. Also, the default event cache size is set to 700 XML files per endpoint.

  7. Save the policy and apply it to the relevant endpoints.