This Trellix Endpoint Detection and Response - Cloud July 31, 2024 release includes export threat details feature in the Trellix EDR monitoring dashboard.
Every update release is cumulative and includes all features and fixes from the previous release.
The Trellix EDR Monitoring dashboard includes Export feature
The Trellix EDR Monitoring dashboard now includes an Export feature that allows users to export threat details into a .csv file for threat analysis. This feature enables users to export threat details within a specific time frame, according to the threat retention policy configured for the tenant. For more information, refer to the Threat Details section in the Trellix Endpoint Detection and Response Product Guide.
Note
The export option will not be visible in the Trellix EDR Monitoring dashboard if there are no threats present for the selected time frame.
Resolved issues
Reference | Resolution |
|---|---|
SEC-123132 | This release resolves the issue of creating threat exclusions beyond 1000 entries in the EDR monitoring or configuration dashboard. The threat exclusion limit has now been increased from 1000 to 1500. |
SEC-183975 | This release enhances the Activity Feed output by including the start time, end time, and device name information associated with each threat. This addition allows users to differentiate between the threats sent to SIEM. |
Installation information
The Trellix Endpoint Detection and Response Installation Guide has all the information you need to install the product for the first time and to migrate from Trellix® Active Response.
Known issues
For a list of known issues in this product release, see KB91275.