Perform the following steps to deploy TrellixEndpoint Security Agent (HX) software in your environment.
Important
Trellix recommends that you deploy your Endpoint Security (HX) server software before you deploy your agent software.
Note
A single ecosystem, which includes the Endpoint Security (HX) server and any installed DMZ server, can support up to 100,000 agents.
Some of these steps are optional configuration steps that allow you to configure your agent software before it is deployed to your endpoints. If you elect to configure your agent software after it is deployed to your endpoints, the configuration changes will be applied to the endpoints at the next poll interval.
Whitelist Endpoint Security Agent (HX) files in your antivirus software packages.
For example, if you are running Symantec Endpoint Protection (SEP), you should create exclusions in SEP for TrellixEndpoint Security Agent (HX) processes and folders. See Before you install or upgrade the agent software.
This will maximize performance and ensure compatibility with other antivirus software.
Create malware detection process and folder exclusions for any other antivirus software you have installed on your Windows host endpoints.
Use the malware detection global policy in the Endpoint Security (HX) Web UI to define these exclusions. For example, if you are running Symantec Endpoint Protection (SEP), you should create process and folder exclusions for malware protection for SEP processes and folders. See "Defining the Malware Detection Exclusion Policy" in the Endpoint Security Agent (HX) Administration Guide.
This will maximize performance and ensure compatibility with other antivirus software.
Define your server address list. See Configuring the server address list.
Optionally, configure your HTTPS proxy server to allow endpoints on your network to access the Internet. This step is only required if your enterprise uses an HTTPS proxy server to allow endpoints to access the Internet. An Internet connection is required for the Endpoint Security (HX) to download malware definitions and other agent updates. See HTTPS proxy server overview and configuration.
Important
Direct HTTPS proxy support for Internet access is supported in Endpoint Security Agent (HX) version 25 or later only.
You must configure your proxy settings before installing Endpoint Security Agent (HX) software version on your endpoints.
Verify that the primary (provisioning) Endpoint Security (HX) servers have been identified. See "Designating Provisioning Servers," in the Endpoint Security (HX) Server Deployment Guide.
You must decide which Endpoint Security (HX) server or DMZ server will be your provisioning server before you download the TrellixEndpoint Security Agent (HX) installation software to your host endpoints. When agent installation software is downloaded, the IP addresses or DNS names of the provisioning servers are identified in the agent download package.
If you would like to use a Windows file system junction (symbolic link) for the agent data stored in the Windows
ProgramDatafolder, set it up before you install the agent software. See Using symbolic links for agent program data in Windows environments.Obtain the agent installation images required for your environment and upload them to the Web UI. See Obtaining agent installation software.
When the agent installation image has been uploaded to the Web UI, the server generates agent installation packages and list the packages on the Agent Versions tab of the Agent Settings page.
For Windows deployments only: Enable Windows Defender Device Guard Code integrity on the Windows system that you plan to use as a golden image to deploy the Endpoint Security Agent (HX) software to multiple host endpoints. See Enabling device guard code integrity
Optionally, configure polling settings for endpoints. See Configuring polling.
Optionally, configure other agent policies and settings. Real-time indicator detection, agent resource use, concurrent host limit, Exploit Guard, and agent logging policies can be configured. In addition, host aging settings can be specified. Defaults are supplied for all these policies and settings. See your Endpoint Security Agent (HX) Administration Guide.
Install the agent software on your endpoints. See Installing the agent installation package.
Note
Trellix recommends that after installing Endpoint Security Agent (HX) version , you restart your host endpoints to ensure agent notifications are started.
Configure the Removal Protection policy for all of your host endpoints to prevent the unauthorized removal of the Endpoint Security Agent (HX) software from your host endpoints. See Configuring the agent removal protection password for more information.
Information about uninstalling agent software is also provided. See Uninstalling agent software.
After Endpoint Security Agent (HX) are deployed in your environment, you can upgrade the software on the agents as new versions become available. See "Upgrading Agent Software" in the Endpoint Security Agent (HX) Administration Guide.