The integration of IVX Cloud with Trellix Insights enhances file scanning. IVX Cloud can now perform additional scans on manually submitted files and share the results in both IVX Cloud and Insights reports.
With this integration:
Manually uploaded files through Insights UI will be automatically scanned using IVX Cloud’s advanced threat analysis capabilities.
The results are synchronized in the form of Reports between both platforms, thus improving visibility.
Additional information such as screenshots and videos of the files are also captured for better results.
Generate an API Authentication Key in IVX Cloud.
Log in to IVX Cloud with your credentials.
Go to Settings → Key Management.
Click Create Authorization Key to generate a new API key.
Save the key for use in Insights platform.
Configure IVX Cloud in Insights.
Log in to Trellix Insights.
Go to the Settings tab under the IVX Cloud section.
Paste the previously generated API Authentication Key.
Select your region.
Click Save to complete the configuration.
Submit a file for scanning and view the scan report.
Navigate to the File Upload tab under IVX Cloud section in Insights.
Click Browse to upload a file for scanning.
Turn on "Advanced Settings" to enable below options:
Force Execution: When Force Execution is disabled, IVX Cloud checks if the file has already been analyzed and retrieves results from the cache to avoid redundant scanning. When Force Execution is enabled, the system bypasses cache and performs a fresh scan, executing the file regardless of prior analysis history.
Screenshots and Video: These are visual evidences captured while performing dynamic analysis of the file and are stored in IVX Cloud for detailed post-analysis review.
Optionally, set passwords and parameters.
Click Scan. The file is submitted to IVX Cloud for scanning.
Navigate to the Reports tab to view detailed analysis results, including detection insights from both Insights and IVX Cloud. You can also download JSON format of the report or get the report URL.