Trellix Central Management configuration

Prev Next

Use these instructions to configure the Central Management System appliance to send notifications to Trellix Helix.

Prerequisites
  • The Central Management System appliance must have an established connection to the Internet.

  • You must have admin access to the Central Management System appliance.

To configuring Rsyslog settings:

Use the Rsyslog Settings area on the CM Settings page to set up the default configuration for rsyslog notifications. To configure rsyslog notifications:

CMS-rsyslog.png
  1. On the Central Management System Web UI, select the Settings tab.

  2. Select Notifications on the side bar.

  3. Click the rsyslog column heading to display the Rsyslog Settings area in the Settings column.

  4. Select Common Event Format (CEF) in the Default format drop-down list box.