Unable to link accounts in Trellix ePO - SaaS Cloud Bridge (multifactor authentication enabled)
Last Modified: 2023-02-02 04:40:53 Etc/GMT
Affected Products
Languages:
This article is available in the following languages:
Trellix CEO, Bryan Palma, explains the critical need for security that’s always learning.
As per Gartner, "XDR is an emerging technology that can offer improved threat prevention, detection and response."
Trellix announced the establishment of the Trellix Advanced Research Center to advance global threat intelligence.
Trellix Advanced Research Center analyzes threat data on ransomware, nation-states, sectors, vectors, LotL, MITRE ATT&CK techniques, and emails.
After December 1, 2024, please log in to the Thrive Portal for support, knowledge articles, tools, and downloads. For information about using the Thrive Portal, view the Trellix Thrive Portal User Guide.
Unable to link accounts in Trellix ePO - SaaS Cloud Bridge (multifactor authentication enabled)
Technical Articles ID:
KB93420
Last Modified: 2023-02-02 04:40:53 Etc/GMT Environment
Trellix ePolicy Orchestrator (ePO) 5.10.x (on-premises) Trellix ePO - SaaS Cloud Bridge (CB) 2.1, 2.0 extensions Trellix ePO - SaaS Summary
While integrating Trellix Insights into ePO on-premises, you're unable to link the Trellix ePO - SaaS account in the Trellix ePO - SaaS Cloud Bridge settings page. You follow the steps outlined in the section "Configure Trellix ePO - SaaS Cloud Bridge" in the Trellix Insights Product Guide. You see the error below in the ePO console: details. You see the error below in the ERROR [http-abc-9085-exec-102] action.CloudBridgeServerSettingsAction - Cloud Bridge registration failed, IAM error code: 401 "Token Endpoint: Password grant: Error: invalid_grant - Resource owner password credentials authentication denied by sign on policy." com.mcafee.epo.cloudbridge.RegistrationException: Could not get access token from IAM service with scope(s) epo.reg_token. Cause
Multifactor authentication is enabled for the Trellix ePO - SaaS user account. Multifactor authentication is used to link to the Trellix ePO - SaaS Cloud Bridge and Trellix ePO - SaaS Migration extension. When configured with two-factor authentication, these connectors can't authenticate to the Trellix ePO - SaaS resources and obtain an access token. Solution 1
This issue is scheduled to be resolved in Trellix ePO - SaaS Cloud Bridge 2.2, which isn't currently available. NOTE: Any future product functionality or releases mentioned in the Knowledge Base are intended to outline our general product direction and should not be relied on, either as a commitment, or when making a purchasing decision. To receive email notification when this article is updated, click Subscribe on the right side of the page. You must be logged on to subscribe.
To receive information about product updates, sign up for the Support Notification Service.
Solution 2
Other issues are documented that incur the same errors, but have a different cause and solution. These issues are collated in KB94931 - Troubleshooting unable to link accounts in Trellix ePO - SaaS Cloud Bridge. Workaround
Disable Multifactor authentication in Trellix ePO - SaaS:
Affected ProductsLanguages:This article is available in the following languages: |
|