Trellix Helix data streaming troubleshooting

Prev Next

This section provides steps to take if metadata is not being streamed to Trellix Helix.

To troubleshoot metadata streaming:

  1. Verify the data streaming configuration:

    1. Run the show datastreaming helix command on the appliance.

    2. If no is the value for fields in the command output, enable settings as described in Configuring data streaming to Helix using the appliance CLI.

  2. Verify that the appliance customer ID matches the Trellix Helix customer ID:

    1. Run the show version command on the appliance. Locate the Customer ID field in the command output.

    2. Log into your Trellix Cloud Account and click My Settings > My Organization. Locate the Oracle Customer ID field on the Organization Settings page.

  3. Verify the DTI credentials for the download source, enrollment, and Trellix Helix services:

    hostname # show fenet dti configuration
  4. Verify that the Registry and Discovery Service (RDS) client is enabled and has discovered the Trellix Helix ingestion service address:

    hostname # show fenet rds discovery status
  5. Verify that Trellix Helix mode is enabled, the Trellix Helix bootstrap certificate name, the FQDN, and the console URL:

    hostname # show helix               

If these configurations are correct, contact Trellix Technical Support for assistance.