Preventing cloned xAgent s in a VDI environment

Prev Next

A virtual desktop infrastructure (VDI) is virtualization technology that allows you to host a user desktop inside a virtual machine. If you are deploying Trellix Endpoint Security (HX) xAgent software in a VDI environment, Trellix recommends deploying in a persistent or semi-persistent VDI environment to prevent cloned xAgents. To learn more about Endpoint Security (HX) xAgent deployment in a VDI environment, see the community article on this topic.

If you deploy in a non-persistent VDI environment, multiple host entries may be created with the same agent IDs. A massive number of duplicate host entries can impede communication between the Trellix Endpoint Security (HX) server and the host endpoint.

There are two ways to remove duplicate hosts:

  • Using the VDI pruning tool

  • Manually merging hosts

The VDI pruning tool does not preserve the attributes of the duplicate hosts. To preserve the duplicate host attributes, you must merge the hosts manually via the API.

Important

Data may be lost if you use the VDI pruning tool. To preserve all host attribute data on your Endpoint Security (HX) server, perform a manual host merge. See Merging Hosts Manually for more information on how to do this.