General

Prev Next

Here are answers to general frequently asked questions.

Can email delivery be prioritized?

No. It cannot be prioritized, as this is an Exchange server task.

Do I still need to enable anonymous access to exchange server receive connector?

TSME does not require anonymous access to exchange receive connector. The on-demand user takes care of these functions. For more information on configuring anonymous access settings, see Trellix KnowledgeBase article KB81752.

Why should I use "Run as administrator" option in Windows 2012, 2016, or 2019 to open the TSME user interface?

Due to security reasons, TSME will not be able to communicate with the RPC servers. This is due to the SID having no permission to do Inter-process communication (IPC) with the RPC process.

Under which executable does the scanning modules of TSME gets loaded across all Exchange versions?

The RPCServ.exe process loads all the scanning binaries. To find the process id of the scanner process, check the command line in Task Manager and see which RPCServ.exe process has the command line parameter: /EVENTNAME:Global\MSME_scanner_RPCEvent.

What is the optimum TSME configuration?

The configurations are for Enhanced protection and Maximum performance. The default configuration is to have maximum performance.

What should I exclude if TSME and a file level anti-virus is installed on the same server?

Exclude all the TSME binary folders and sub-folders, Postgres database, Replication folders, Exchange folders, ePO - On-prem events folder, and product log.

How do I access the product interface of the remote system?

To access the remote TSME standalone interface:

  1. Launch Trellix Security for Microsoft Exchange - Product Configuration.

  2. From the Change Server menu, click New Connection.

  3. In the Browse for Computer dialog box, type the IP address of the remote system, then click OK

To access the remote TSME web interface:

  1. Launch Trellix Security for Microsoft Exchange - Product Configuration (Web Interface).

  2. In the address bar, type: https://<Remote system IP Address>/MSME/0409/html/index.htm

  3. Provide the login credentials when prompted.

How does TSME connect with the TIE server?

TSME connects with the TIE server through Data Exchange Layer (DXL) from ePO - On-prem. The ePO - On-prem that manages TSME should also manage the TIE server.

How do I configure the TIE server in TSME?

You can't configure the TIE server directly from TSME. However, your ePO - On-prem server that manages TSME, should manage the TIE server also. For integrating the TIE server with ePO - On-prem, see Trellix Threat Intelligence Exchange Product Guide.