Once you have downloaded and installed theTrellix ePO - SaaS Cloud Bridgeextension on yourTrellix ePO - On-premserver, you can then configure yourTrellix ePO - On-premto enable log on usingTrellix ePO - SaaScredentials.
Before you begin
Ensure that you have a validTrellix ePO - SaaSaccount withTrellix Cloud Administratorpermissions.
If you have other Identify Provider configured inTrellix ePO - SaaS, note that you cannot use the IdP credentials to configureTrellix ePO - On-premlogon. You must use a valid customer ID.
Task
Log on to theTrellix ePO - On-premserver as an administrator.
SelectMenu→Configuration→Server Settings, then selectTrellix ePO - SaaS Cloud BridgefromSetting Categories. TheTrellix ePO - SaaS Cloud BridgeServer Settingspage displays these options:
Status— Displays the status of yourTrellix ePO - SaaSconnection. SeeStatus Messagesfor detailed status information.
Note:Before you configure your connection, the status isNot linked.
Refresh— Refreshes the interface with the current data and status from theTrellix ePO - On-premdatabase.
Linked Account— Displays the email address of the linkedTrellix ePO - SaaSaccount.
Add theTrellix ePO - SaaSusers who want to access ePO - On-prem viaTrellix ePO - SaaS:
SelectMenu→User Management→User, then clickNew Userbutton.
In the User name field, type the email address of yourTrellix ePO - SaaSaccount.
UnderManually assigned permission sets, assign a permission set for the user.
ClickSave.
Upon successful creation of the user, log off from theTrellix ePO - On-premconsole.
From theTrellix ePO - SaaS Cloud BridgeServer Settingspage, clickEdit.
Enter theTrellix ePO - SaaSaccount email and password.
In theePO Logon URLsection, enter theTrellix ePO - On-premURL which you are using to access the on-premisesTrellix ePO - On-premserver.
ClickSave.
Note:TheTrellix ePO - SaaS Cloud Bridgesettings page now contains a field ePO Logon URL which can be seen only fromTrellix ePO - On-prem5.10.0 Update 7 onwards. This URL is added to the allowed URL list in Identity and Access Management (IAM). This is needed for IAM to redirect the user to the on-premisesTrellix ePO - On-premafter authentication usingLog On WithTrellix ePO - SaaSfeature.
TheTrellix ePO - SaaS Cloud BridgeServer Settingspage displays the status asThis server is actively linked, and the linked account as the email address for the SaaS account:
Status— After configuration, the status is modified toThis server is actively linked.
Linked Account— The email address configured for theTrellix ePO - SaaSaccount.
Trellix ePO - SaaS Customer ID— TheTrellix ePO - SaaSCustomer ID that is linked.
ePO Logon URL— YourTrellix ePO - On-premURL which you are using to access theTrellix ePO - On-premserver.
Results
YourTrellix ePO - On-premserver is now connected to theTrellix ePO - SaaSaccount.