Task list for deploying SmartVision

Prev Next

This task list summarizes the steps for deploying SmartVision.

Prerequisites

  • Completion of the Prerequisite tasks.

  • Admin access to the Network Security appliances that will use SmartVision.

To deploy and enable an appliance:
  1. (Optional) Change the Web UI background display theme from dark to light.

  2. Make sure is enabled.

    SmartVision is enabled by default on SmartVision Edition appliances. On SmartVision-enabled Network Security sensors and integrated appliances, or if has been explicitly disabled, you must use the Setting > Configuration page or CLI commands to explicitly enable SmartVision:

  3. (Recommended) Make sure the context service is enabled. This service enables the appliance to collect and display related network activity for SmartVision alerts. This feature is enabled by default.

  4. (Centrally managed SmartVision-enabled appliances only) To view alerts that are enhanced with user details obtained from Microsoft Active Directory, enable the Active Directory (AD) Logger feature on the Central Management System appliance.

    For detailed information, see How to configure Central Management active directory integration for SmartVision alerts in the Trellix Community Knowledge Base. You must sign in with your Trellix account credentials in the Username and Password fields.

  5. ( SmartVision-enabled Classic edition appliances) Measure the average EPS load.

  6. If the average EPS measured on your Classic edition appliance exceeds the recommended maximum EPS for that model, the appliance may fail to detect some post-exploitation attacker activities. Contact Trellix Technical Support.