Trellix Agent is the client-side component that provides secure communication between Trellix ePolicy Orchestrator - On-premises (ePO - On-prem) and managed products.
The agent also serves as an updater for products.
Systems can be managed by the ePO - On-prem server only if they have an agent installed. While running silently in the background, the agent:
Installs products and their upgrades on managed systems.
Updates security content such as the V3 DAT files or AMCore Content Package associated with Trellix ENS.
Enforces policies and schedules tasks on managed systems.
Gathers information and events from managed systems, and sends them to ePO - On-prem.
The term agent is used in these contexts inePO - On-prem:
Agent — The basic operating mode for Trellix Agent, providing a communication channel to ePO - On-premand local services for managed products.
SuperAgent — An agent that acts as an intermediary between ePO - On-prem and other agents in the same network broadcast segment. The SuperAgent caches information received from ePO - On-prem, the Main Repository, or a mirrored Distributed Repository, and distributes it to the agents in its network subnet.
Configure a SuperAgent in every subnet when managing agents in larger networks.
Note
SuperAgent is not available on McAfee ePO Cloud.