How to use load balancers with Agent Handlers when SSL is in use
Last Modified: 2023-02-21 05:11:32 Etc/GMT
Affected Products
Languages:
This article is available in the following languages:
Trellix CEO, Bryan Palma, explains the critical need for security that’s always learning.
As per Gartner, "XDR is an emerging technology that can offer improved threat prevention, detection and response."
Trellix announced the establishment of the Trellix Advanced Research Center to advance global threat intelligence.
Trellix Advanced Research Center analyzes threat data on ransomware, nation-states, sectors, vectors, LotL, MITRE ATT&CK techniques, and emails.
After December 1, 2024, please log in to the Thrive Portal for support, knowledge articles, tools, and downloads. For information about using the Thrive Portal, view the Trellix Thrive Portal User Guide.
How to use load balancers with Agent Handlers when SSL is in use
Technical Articles ID:
KB87820
Last Modified: 2023-02-21 05:11:32 Etc/GMT Environment
ePolicy Orchestrator (ePO) 5.x
SummaryTo provide load balancing for large numbers of clients, multiple Agent Handlers can be deployed in an agent handler group. If you have existing load-balancing hardware, place multiple Agent Handlers behind one or more load balancers. But, if you use Secure Sockets Layer (SSL) for agent-to-server communications, the load balancer(s) must be configured to allow SSL traffic to pass between the clients and Agent Handlers.
Instructions: NOTE: We recommend that you enable SSL traffic pass-through on your load balancer. If your Trellix Agent (TA) version is earlier than version 5.0 (branded McAfee Agent), the load balancers must be configured to enable SSL traffic pass-through between the clients and Agent Handlers. For TA 5.0 or later, this is optional but recommended.
For instructions to import these files to your load balancer or other related load balancer configuration, consult the manufacturer's documentation.
Related Information
To create an Agent Handler certificate, see KB90760 - How to regenerate the certificates used by the ePO server service.
Affected ProductsLanguages:This article is available in the following languages: |
|