Endpoint Security (HX) modules extend data collection and forensic capabilities for your infrastructure. These modules include Forensics Bridge, Logon Tracker, Process Tracker, and all additional modules in the EDRF package. Use the Forensics workspace to manage all module tasks from a central location.
The EDRF package includes the client component for Endpoint Security (HX) modules. Use the Endpoint Module Administration page in the Forensics workspace to install the server component.
Administrative actions in the Forensics workspace, such as installing or upgrading modules, affect only the server component. These actions do not impact the client component in the EDRF package.
Prerequisites
Administrator access to the Forensics workspace.
How to configure Endpoint Security (HX) modules
To ensure proper functionality, perform the configuration tasks in this sequence:
Add the Endpoint Security (HX) server to the ePO server (SaaS or On-prem).
Install the Endpoint Security (HX) module in the Forensics workspace.
Enable the Endpoint Security (HX) module in the Forensics workspace.
Upgrade the Endpoint Security (HX) module in the Forensics workspace.
Configure the Endpoint Security (HX) module in the Forensics workspace.
Enable the corresponding module in the EDRF Policy Catalog on the ePO server.