Integrate Trellix Data Loss Prevention with IVX Cloud

Prev Next

Integrate Trellix Data Loss Prevention (Trellix DLP) with IVX Cloud to unify your data security strategy. Trellix DLP is an API-driven service designed for SaaS, on-premises, and hybrid environments that scans content to detect potential data leaks. This integration consolidates essential DLP functionalities, providing advanced capabilities such as text abstraction, Optical Character Recognition (OCR), classification, and fingerprinting.

To configure Trellix DLP settings:
  1. Log on to the IVX Cloud portal and go to SettingsDLP Settings.

  2. Go to the Trellix DLP tab and then click Add.

  3. In the pop-up, select an API Key from the dropdown to enable Trellix DLP.

  4. Set the timeout value in seconds. The default is 60 seconds. If Trellix DLP responds before the timeout, the IVX Cloud action is applied. If it times out, the scan is skipped to prevent delays.

  5. In the Action section, select Trellix DLP or DLP Network Prevent action to apply to the key.

    Note

    You can select only one action per key. IVX Integration action will take priority for malicious samples and DLP Network Prevention/Trellix DLP action will be executed for non-malicious samples (if configured). For manually created API keys, this option is not available.

  6. Click Save.

    A health check will confirm if the DLP is reachable from IVX Cloud. If successful connection is established, the settings are saved. If the connection fails, review your network firewall changes and verify the configured hostname/port.

To manage DLP SaaS settings:

  • Enable/Disable: Check an entry and click the appropriate button above the table.

  • Remove: Select an entry and click the remove button.

  • Edit: Click the edit icon in the last column of the table.

  • View results: Scan results are available on the reports page after completion.