Overview

Prev Next

Trellix Agent is the client-side component that provides secure communication between Trellix ePolicy Orchestrator - On-premises (ePO - On-prem) and managed products.

The agent also serves as an updater for products.

Systems can be managed by the ePO - On-prem server only if they have an agent installed. While running silently in the background, the agent:

  • Installs products and their upgrades on managed systems.

  • Updates security content such as the V3 DAT files or AMCore Content Package associated with Trellix ENS.

  • Enforces policies and schedules tasks on managed systems.

  • Gathers information and events from managed systems, and sends them to ePO - On-prem.

The term agent is used in these contexts inePO - On-prem:

  • Agent — The basic operating mode for Trellix Agent, providing a communication channel to ePO - On-premand local services for managed products.

  • SuperAgent — An agent that acts as an intermediary between ePO - On-prem and other agents in the same network broadcast segment. The SuperAgent caches information received from ePO - On-prem, the Main Repository, or a mirrored Distributed Repository, and distributes it to the agents in its network subnet.

    Configure a SuperAgent in every subnet when managing agents in larger networks.

    Note

    SuperAgent is not available on McAfee ePO Cloud.