Launching an Endpoint Security (HX) instance on AWS

Prev Next

This topic describes how to launch an Endpoint Security (HX) instance on AWS.

Important

The navigation instructions and user interface may vary based on the AWS Management Console version that is running when you deploy your appliances.

Note

This procedure covers the required settings for a Trellix virtual appliance. You can accept the default values for the other settings, or specify values that are appropriate for your environment.

To launch an Endpoint Security (HX) instance on AWS:
  1. Go to the AWS login page and log in using your AWS ID.

  2. On the Profile page, select your AWS role and then click AWS Console URL.

  3. On the next page, click AWS Console login. The AWS Management Console opens.

  4. In the navigation bar at the top of the console, select the region for the instance.

  5. In the AWS services section, select EC2.

  6. Click Launch Instance in the Create Instance section.

  7. To select the appropriate AMI, do the following on the Choose an Amazon Machine Image (AMI) page:

    1. Click My AMIs in the left pane.

    2. To view AMIs that are shared with you, click Shared with me in the left pane.

      Note

      The Cloud Delivery Enablement Service enables you to obtain the Endpoint Security (HX) AMI from Trellix. For instructions on how to obtain the Endpoint Security (HX) AMI, see this community article.

    3. Click the appropriate Endpoint Security (HX) AMI and then click Select.

  8. On the Choose an Instance Type page, select an instance type that is compatible with the AMI that you have chosen (see AWS specifications to select the appropriate instance type). Then click Next: Configure Instance Details.

  9. On the Configure Instance Details page, select your VPC network and IP range from the Network and Subnet drop-down lists respectively, and specify other settings provided by your network administrator. Click Next: Add Storage.

  10. On the Add Storage page, change the Volume Type from gpg2 to gpg3, and then click Next: Add Tags.

  11. (If required by your AWS administrator) On the Add Tags page, provide key and value combinations. Then click Next: Configure Security Group.

  12. On the Configure Security Group page, select or create the security group that defines firewall rules that control traffic to your Endpoint Security (HX) instance. These rules specify which incoming network traffic is delivered to your instance.

    Important

    Trellix recommends using a security group applicable to your organization instead of using the default security group, which is less secure.

  13. Click Review and Launch.

  14. On the Review Instance Launch page, review the details about your instance. Click the appropriate Edit link if you need to make changes. When you are satisfied with the details, click Launch.

  15. In the Select an existing key pair or create a new key pair dialog box:

    1. Select an existing pair or create a new one. To use the key pair you created when you were set up to use Amazon EC2, click Choose an existing key pair, and then select that key.

      Important

      Store the name of the key pair and the private key in a secure location.

    2. Select the checkbox to confirm that you agree to the acknowledgment statement, and then click Launch Instances.

To perform initial configuration of the Endpoint Security (HX) instance, see Performing the initial configuration of an Endpoint Security instance.