Application Control includes seeded server tasks to send feedback to Trellix about your current use of the Trellix GTI and Application Control features.
Solidcore: Send Event Feedback to Trellix GTI Server (disabled by default)
Solidcore: Send Policy and Inventory Feedback to Trellix GTI Server (enabled by default to run daily)
Solidcore: Send Policy Discovery Request Feedback to Trellix GTI Server (enabled by default to run daily)
Note
No information about individual computers or users is sent to Trellix. Trellix stores no data that can be used to track the feedback information to a specific customer or organization.
Server task settings
You can configure the server tasks to send information about how you are currently using one or all these parameters.
Events | Send information, such as file name and SHA-1 for the Execution Denied, Process Hijack Attempted, and Nx Violation Detected events. You can also send information about the number of endpoints where the event occurred with the full path of the file. This information helps Trellix determine how frequently and effectively Application Control blocks actions, and helps to improve product functionality and efficacy. |
Policies | Send information about user-editable Change Control, Application Control, and General policies. Information is also sent for the Global Rules and Global Observation Rules (Deprecated) rule groups. This information helps Trellix understand how you are currently using policies and applying rules, and helps to improve the default policies and rules. |
Inventory | Send detailed information for files, including base name, application name, application version, file version, and enterprise trust level. You can also send information about the number of endpoints where the file is present, its execution status, and full path of the file. The feedback does not include any information to identify the endpoints, such as system name or IP address. This information helps Trellix determine how you are using (and changing) the File Hash Trust Score (GTI) and File Hash Reputation (GTI) values assigned to files. This information also helps to improve the Trellix GTI file reputation service. |
Policy Discovery requests | Send Trellix GTI information for policy discovery requests and include details about the certificate associated with the file. This information helps Trellix determine the type of requests generated for your setup and identify certificates associated with commonly used applications. |
ePO base information | Sends information about the number of nodes managed by ePO - On-prem and number of nodes where Application Control is installed. |