Trellix Agent policy settings

Prev Next

Trellix Agent provides configuration pages for setting policy options that are organized into these categories: General, Repository, Product Improvement Program, Troubleshooting, and Custom Properties.

Before distributing Trellix Agent throughout your network, consider carefully how you want Trellix Agent to behave in the segments of your environment. Although you can configure Trellix Agent policy settings after they are distributed, we recommend setting them before the distribution, to prevent unnecessary impact on your resources.

Note

Only the difference in the policy settings is downloaded from the server when using Trellix Agent 5.6.0 or later.

General policy

Settings available for General policy are divided into following tabs.

Tab

Settings

General

  • Policy enforcement interval

  • Use of system tray icon in Windows environments

  • Enable/disable the About option in the system tray menu

  • Enabling system tray icon in a remote desktop session

  • (ePO - On-prem) Trellix Agent and SuperAgent wake-up call support

  • Whether to accept connections only from ePO - On-prem

  • Yielding of the CPU to other processes in Windows environments

  • Restricting Trellix Agent processes, services, and registry keys change

  • Rebooting options after product deployment in Windows environments

  • The agent-server communication

  • Retrieving all system and product properties

SuperAgent

  • Enabling RelayServer on Trellix Agent

  • Disabling discovery of RelayServers

  • ePO - On-prem parameters:

    • The repository path where the SuperAgent goes for product and update packages

    • Specify the interval to flush lazy cache memory

    • Specify the disk space for the lazy cache

    • Specify the interval to purge the files from the disk

    • Broadcast wake-up call to SuperAgent

    • Enabling lazy caching

Events

  • Enabling/disabling priority event forwarding

    • Forward non-priority events

  • Level of priority events forwarded

  • Interval between event uploads

  • Maximum number of events per upload

Logging

  • Enabling/disabling application logging

  • Setting the log file size limit and rollover count

  • Level of logging detail

  • (ePO - On-prem) Enabling/disabling remote logging

  • (ePO - On-prem) Setting to enable remote access to logs

  • Setting the zipped log file size limit for product logging

Note

To know about enabling debug logging for Trellix Agent for non-Windows troubleshooting, see KB69542.

Updates

  • Custom update log file location

    Note

    For information about log file option requirements for Trellix Agent Product update, see KB85549.

  • Specifying post-update options (runs only after a successful update)

  • Downgrading DAT files

  • Enabling automatic update of products post deployment

  • Selecting update type and repository branch

    Note

    The selected update type is considered for tasks that run post deployment of products and when you run Update Security using the system tray icon.

Peer-to-Peer

  • Enable peer-to-peer communication on Trellix Agent to enable peer-to-peer client

    Note

    Peer-to-peer policies are enabled by default for the Trellix Default policies and are disabled for the Large Organization Default policies.

  • Enable Trellix Agent to serve updates or installation files to peer agents

  • Specify the repository path

  • Specify the disk space for the updates on the peer-to-peer server

  • Specify the interval to purge the files from the peer-to-peer server repository

Deployment

  • Enable Trellix Agent to perform incompatibility check during product deployment

Note

When importing My Default General policy from the ePO - On-prem 4.6.6 server to the ePO - On-prem 5.1.1 server, the policy values for Peer-to-Peer feature are replicated from Trellix Default policy rather than My Default policy on the ePO - On-prem 5.1.1 server.

Repository policies

Repository policies settings can be configured using Repositories and Proxy tabs.

Note

On McAfee ePO Cloud, only Proxy server settings can be configured using the Repository policy.

Tab

Settings

(ePO - On-prem) Repositories

Repository selection

Proxy

Proxy configuration

Troubleshooting policies

Settings available for Troubleshooting policies are contained in one tab.

Tab

Settings

General

Trellix Agent user interface and log language

Product Improvement Program policies

Settings available for Product Improvement Program policies are contained in one tab.

Tab

Settings

Product Improvement Program

Allowing Product Improvement Program to collect anonymous diagnostic and usage data.

Custom Properties policies

Settings available for Custom Properties policies are contained in one tab.

Tab

Settings

Custom Properties

Determine end-user access permission to view or edit a particular custom property.