Configure using Trellix ePO - SaaS credentials authentication

Prev Next

Once you have downloaded and installed the Trellix ePO - SaaS Cloud Bridge extension on your Trellix ePO - On-prem server, you can then configure your Trellix ePO - On-prem to enable log on using Trellix ePO - SaaS credentials.

Before you begin

  • Ensure that you have a valid Trellix ePO - SaaS account with Trellix Cloud Administrator permissions.

  • If you have other Identify Provider configured in Trellix ePO - SaaS, note that you cannot use the IdP credentials to configure Trellix ePO - On-prem logon. You must use a valid customer ID.

Task

  1. Log on to the Trellix ePO - On-prem server as an administrator.

  2. Select Menu  Configuration  Server Settings, then select Trellix ePO - SaaS Cloud Bridge from Setting Categories. The Trellix ePO - SaaS Cloud Bridge Server Settings page displays these options:

    • Status — Displays the status of your Trellix ePO - SaaS connection. See Status Messages for detailed status information.

      Note: Before you configure your connection, the status is Not linked.

    • Refresh — Refreshes the interface with the current data and status from the Trellix ePO - On-prem database.

    • Linked Account — Displays the email address of the linked Trellix ePO - SaaS account.

  3. Add the Trellix ePO - SaaS users who want to access ePO - On-prem via Trellix ePO - SaaS:

    • Select Menu  User Management  User, then click New User button.

    • In the User name field, type the email address of your Trellix ePO - SaaS account.

    • Under Authentication type, select Trellix ePO - SaaS Authentication.

    • Under Manually assigned permission sets, assign a permission set for the user.

    • Click Save.

    Upon successful creation of the user, log off from the Trellix ePO - On-prem console.

  4. From the Trellix ePO - SaaS Cloud Bridge Server Settings page, click Edit.

    • Enter the Trellix ePO - SaaS account email and password.

    • In the ePO Logon URL section, enter the Trellix ePO - On-prem URL which you are using to access the on-premises Trellix ePO - On-prem server.

    • Click Save.

      Note: The Trellix ePO - SaaS Cloud Bridge settings page now contains a field ePO Logon URL which can be seen only from Trellix ePO - On-prem 5.10.0 Update 7 onwards. This URL is added to the allowed URL list in Identity and Access Management (IAM). This is needed for IAM to redirect the user to the on-premises Trellix ePO - On-prem after authentication using Log On With Trellix ePO - SaaS feature.

  5. The Trellix ePO - SaaS Cloud Bridge Server Settings page displays the status as This server is actively linked, and the linked account as the email address for the SaaS account:

    • Status — After configuration, the status is modified to This server is actively linked.

    • Linked Account — The email address configured for the Trellix ePO - SaaS account.

    • Trellix ePO - SaaS Customer ID — The Trellix ePO - SaaS Customer ID that is linked.

    • ePO Logon URL — Your Trellix ePO - On-prem URL which you are using to access the Trellix ePO - On-prem server.

Results

Your Trellix ePO - On-prem server is now connected to the Trellix ePO - SaaS account.