To verify the connection between Endpoint Security (HX) and ePO, check the configuration in both locations.
In ePO
Log in to the XConsole and select ePO.
Go to Menu → Configuration.
Select Settings for ePO - SaaS.
Select HX Instance Management.
In the list of added HX instances, verify that your HX instance is listed.
Verify that the HX server is selected in the EDRF General policy. For details, see Enable server communication.
Navigate to Menu → System Tree and select the target system.
Click the Products tab and select Trellix EDR with Forensics.
Scroll to the HX Server Information field, and verify the HX server details.
In the Current HX Instances pane, confirm your Endpoint Security (HX) instance is listed.
Review the Last HX Connection Time field to verify that the target system is connected to the HX server.
In the Forensics workspace
Log in to the Endpoint Security (HX) server.
Go to Menu → All Hosts.
Verify that the target system is listed, and review the EDRF Client version and last connection details.
Note
Make sure that the EDRF Client is deployed before verifying that the target system is listed.
(Optional) If the Host Management module is installed, you can verify the target system details, status, and last connection details from the Host Management view.
This confirms that the EDRF Client is communicating with the ePO server and the HX server.