Make sure you complete the following list of requirements before you continue with your Trellix Insights installation on ePO - On-prem.
ePO - On-prem
Update to ePO - On-prem 5.10.0 Update 7 or later.
ePO - SaaS Cloud Bridge
Install the latest ePO - SaaS Cloud Bridge 2.1.0 extension.
Trellix Insights
Install the latest version of the Trellix Insights extension.
Trellix Agent
Install Trellix Agent 5.6.0 or later.
Trellix ENS
Install Trellix ENS 10.7.0 or later with product telemetry OPT-IN. Trellix Insights uses this telemetry to alert you to malware threats targeting you, your sector, and geography. Trellix Insights assesses if your system countermeasures would detect this threat and if changes must be made to improve detection and protection. Make sure that the following configuration is enabled to receive full value in Trellix Endpoint Security (ENS) and Trellix Insights threat correlation: Trellix Endpoint Security (ENS) Threat Prevention: Policy Category > On-Access Scan > Trellix GTI.
Note
To receive the full value that Trellix Insights delivers, endpoint telemetry is sent to Trellix by default. If you do not wish to provide this telemetry to Trellix, you will have reduced Trellix Insights functionality and will only receive threat intelligence information.
URL
If you are using a proxy server, make sure that you allow insights.trellix.com to communicate with the server.
Browser version
Use the latest versions of Chrome or Mozilla Firefox.
(Optional)Threat Intelligence Exchange
Trellix Insights supports ePO - On-prem with TIE installed and in use in the environment.
Note
When TIE is in use, Trellix Insights might not be able to use some telemetry for campaign detections from Trellix GTI. When using TIE with Trellix Insights, we recommend that the following policy configuration is enabled: Trellix ENS Adaptive Threat Protection : Policy Category > Options > Reputation Source > Use Trellix GTI if the TIE server is not reachable.
(Optional)Trellix IPS
Trellix Insights supports ePO - On-prem with Trellix IPS 9.0 or later is installed with product telemetry OPT-IN and in use in the environment. Trellix uses a secure product telemetry framework that, when enabled, allows Trellix to collect key data using Trellix IPS, and to use this data for essential product functions, such as detecting malware, assessing system vulnerability, and implementing protective measures.