To install Trellix TIE Server on AWS, make sure that your server and client systems meet the minimum requirements.
Systems | Requirements |
|---|---|
ePO | 5.10 or later |
Trellix DXL Broker and Extensions | 6.x or later |
Trellix DXL client and Extensions | 6.x or later |
Trellix Agent and Extensions | 5.8.x or later |
Trellix Endpoint Security (ENS) and Trellix Adaptive Threat Protection (ATP) | 10.7 September 2023 update and later |
Trellix Threat Intelligence Exchange (TIE) Server Management extension | 4.6.x and later |
To deploy the TIE Server, your AWS account must have sufficient limits to launch at least two virtual machines (VMs). We recommend starting with instance types of “t3.xlarge” or larger. These instance types meet the minimum recommended specifications for the TIE Server. However, deploying larger VMs from other instance families is also supported to accommodate increased workloads.
Minimum Recommended Specifications per VM:
Systems | Requirements |
|---|---|
Client systems | RAM: 16 GB CPU: 4 vCPUs (virtual CPUs) Storage: 120 GB SSD (Solid-State Drive) with gp3 performance class (or higher) |
For the recommended security group configuration, see TIE Server security group setup. For more information about open port requirements, see KB83713.
The user needs to have a valid Trellix license to use Trellix Endpoint Security (ENS), Trellix Adaptive Threat Protection (ATP), Trellix Data Exchange Layer (DXL), Trellix Threat Intelligence Exchange (TIE) and Trellix ePolicy Orchestrator – On-prem (ePO).
The deployment can be done either AWS Commercial or AWS GovCloud (US) on any of the following supported regions:
US West (Oregon, N. California)
US East (Ohio, N. Virginia)
Asia Pacific (Singapore)
EU (Frankfurt)
AWS GovCloud (US-West, US-East)
ePO is deployed with the latest available extensions for Trellix Endpoint Security, Adaptive Threat Protection, DXL and TIE Server. For more information about Trellix ePO, see Trellix ePO – On-prem documentation. Endpoints will be managed by the deployed ePO and it will have ENS, ATP and DXL Client installed.
Note
The user will be responsible for deploying or destroying the cloud environment on their own account. Additionally, the user will be the sole owner of the data stored in this environment.