Configure ePO - SaaS Cloud Bridge

Prev Next

Configure the ePO - SaaS Cloud Bridge server settings to link the ePO - On-prem server with your ePO - SaaS account.

The ePO - SaaS Cloud Bridge extension must be installed on your ePO - On-prem server.

Note

You must have a valid account with Trellix Account Administrator role assigned.

  1. From ePO - SaaS, select Menu  Configuration  Appliance and Server Registration.

    1. Click Add to add a new registration token.

    2. Select the Client Type as Trellix ePolicy Orchestrator - SaaS.

    3. Type the number of appliances or servers you want to register in the Number of clients field and click Save. To view the generated token, expand Trellix ePolicy Orchestrator - SaaS under Servers. Note down the registration token.

    4. Perform one of these actions if you want to revoke the token:

      • From the token list, click Revoke under Actions.

      • Select the token, then select Revoke from the Take Action drop-down list in the token details pane.

      • To revoke the token from a client - select a token from the token list, then select one or more clients from the Registered Clients pane and select Revoke from the Take Action drop-down list.

  2. Log on to the ePO - On-prem server as an administrator. Select Menu  Configuration  Server Settings, then select Trellix Cloud Bridge from Setting Categories.

    The Trellix Cloud Bridge Server Settings page displays these options:

    • Status — Displays the status of your ePO - SaaS connection. See Status Messages for the detailed status information.

      Note

      Before you configure your connection, the status is This server is not linked with ePO - SaaS.

    • Tenant ID — Displays the tenant ID of the linked ePO - SaaS account.

    • Cloud Bridge Client ID — Displays the Client ID associated with the token.

  3. From the ePO - SaaS Cloud Bridge Server Settings page, click Edit.

    1. Enter the Registration Token from Step 1.

    2. In the ePO Logon URL section, enter the ePO - On-prem URL which you are using to access the on-premises ePO - On-prem server.

    3. Click Save.

      Note

      The ePO - SaaS Cloud Bridge settings page now contains a field ePO Logon URL which can be seen only from ePO - On-prem 5.10.0 Update 7 onwards. This URL is added to the allowed URL list in Identity and Access Management (IAM). This is needed for IAM to redirect the user to ePO - On-prem after authentication.

  4. The ePO - SaaS Cloud Bridge Server Settings page displays the status as This server is actively linked, and the linked account as the email address for the ePO - SaaS account:

    • Status — After configuration, above the Refresh button, the status is This server is actively linked.

    • Trellix ePO-SaaS Tenant ID — The ID for the particular ePO - SaaS tenant.

    • Cloud Bridge Client ID — The Client ID associated with the token.

    • ePO Logon URL — Your ePO - On-prem URL which you are using to access the ePO - On-prem server.

    Your ePO - On-prem server is now connected to the ePO - SaaS account.

    Note

    You might see some error messages while linking your ePO - On-prem account with the ePO - SaaS account.

  5. To view the connected servers in ePO - SaaS, go to Menu  Configuration  Appliance and Server Registration.

    1. Click Trellix ePolicy Orchestrator - SaaS under Servers.

    2. The Used Clients column displays the number of clients connected to ePO - SaaS.