The new docs.trellix.com offers a modernized UI and AI-powered features like conversational searches. Content is currently available only in English. Other languages will be available in mid-October 2026. We hope you enjoy the new experience.

Install the TIE server manually

Prev Next

Install and configure the TIE server, Trellix DXL brokers on a single appliance.

  • Make sure that the server extension is installed correctly and that it matches the version of the server before you deploy the OVA appliance.

  • Store your root password in a secure location.

  • Make sure that you have the following versions installed or upgraded to:

    • Trellix ePO - On-prem to version 5.10.0 CU 14.

    • Trellix Agent to version 5.7.8 or later

    • Trellix DXL to version 6.0.3 or later

See KB83368 for details about supported platforms, environments, and operating systems.

  1. Download the OVA component for the server appliance from Software Manager (or Software Catalog on Trellix ePO - On-prem 5.10) or from the Trellix product download site, then extract.

  2. Open the VMware vSphere client, then click FileDeploy OVF Template.

    1. Browse to and select the *.ova file on your computer.

    2. Click Next and complete the steps in the wizard.

    3. Turn on the virtual machine and open a Console window.

  3. Read and accept the license agreement. You can use scroll up and down arrows to see the details.

  4. Select I Agree and press enter to accept the terms to continue.

  5. Create a root password for the new server appliance.

    For the root user, the username is root and password is whatever you have set it.

    Note

    Root user has complete access to the server appliance. Choose the secure password accordingly.

  6. Enter the operational account name, real name, and password for the admin user. Select Submit and click enter to continue

    The account name is typically something like jsmith and is used to log on to the server and to the managed services. The real name is your full name, for example, John Smith.

    Note

    Admin user has access to the server appliance but not the complete access as root user.

  7. On the Network Selection page, select a network device and continue.

  8. On the Network Setup page, select the configuration type and continue.

  9. Enter the host name and domain name of the computer where you are installing the new server appliance. Select OK and click enter to continue.

    The host name entered here is shown on System tree in Trellix ePO - On-prem.

  10. Enter up to three Network Time Protocol servers to synchronize the time of the new server. Use the default servers listed, or enter the address for up to three servers.

    Verify with your networking team that you can access the URLs from your network, or you can provide internal or external NTP servers. Select Submit and click enter to continue.

    Caution

    If the NTP servers are not synchronized, Trellix DXL and TIE handshake isn't completed immediately. The handshake process might take longer and might also fail if time isn't correctly synchronized among Trellix DXL Brokers, TIE servers, and Trellix ePO - On-prem. If NTP syncs fail, it will reboot the TIE server.

  11. Enter the IP address, port, and account information for your Trellix ePO - On-prem server and continue. The user account must have administrator rights.

    Before proceeding, verify the authenticity of the certificate fingerprint of your Trellix ePO - On-prem. In a browser, navigate to Trellix ePO - On-prem and verify that the fingerprint matches the one shown on the installation screen. If it does, select Yes and click enter to continue.

    Note

    In Windows, Internet Explorer and Chrome show the certificate information about using a built-in SHA-1 thumbprint. Firefox implements its own cross-platform and shows the certificate SHA-256 fingerprint.

  12. You can select the services that you want to run on the new server.

  13. (Applicable only if the Trellix DXL Broker is installed) Configure the Trellix DXL Broker port, select Submit and click enter to continue.

  14. Verify that the installation finishes successfully.

    All components must be in green to continue. If not, follow the suggestions to troubleshoot the issue.

  15. When the logon screen appears, close it.

  16. Verify that the new server is provisioned. In Trellix ePO - On-prem, select MenuSystem TreeMy organizationPresetThis group and All subgroups to look in the domain where you installed the server appliance.

  17. Verify that the registered server is provisioned correctly in Trellix ePO - On-prem as a managed system. Select MenuConfigurationRegistered Servers.

  18. Verify that the operation modes are configured correctly. In Trellix ePO - On-prem, select MenuConfigurationServer SettingsTIE Server Topology Management.

    Important

    The first two installed servers are assigned with an operation mode automatically. If you have more than two servers, the third instance is left unassigned (the operation mode of the third instance depends on your environment settings).

The appliance shows the DXLBROKER and TIESERVER tag, depending on the products installed.