How to access EDRF

Prev Next

Access depends on your deployment model.

ePO - SaaS deployment

In an ePO - SaaS deployment, you access EDRF features through Trellix XConsole.

Note

In XConsole, EDRF features are available in the Forensics and EDR tiles. There is no separate product tile labeled "EDRF".

  1. Log in to XConsole with your Trellix credentials.

  2. From the Apps menu, select the product you want to use. The menu lists all Trellix products available to your account.

For more information about deploying EDRF in a SaaS environment, see Deploy EDRF with ePO - SaaS.

ePO - On-prem deployment

In an ePO - On-prem deployment, access each product individually and integrate them using ePO - On-prem. EDRF functions rely on the connection between ePO, Trellix EDR, and Endpoint Security (HX) (HX) (cloud or on-premises).

Access points:

  • ePO - On-prem: Log in to ePO - On-prem using the ePO Server URL https://<ServerIPAddress>:<PortNumber>.

  • Trellix EDR: Log in to Trellix EDR (EDR workspace) from XConsole.

  • Endpoint Security (HX): Log in to the Endpoint Security (HX) (Forensics workspace) using the Endpoint Security (HX) URL with your HX credentials.

For more information about deploying EDRF in a hybrid environment, see Deploy EDRF with ePO - On-prem.