How to install supported Trellix products on Nutanix Acropolis Hypervisor
Technical Articles ID:
KB96300
Last Modified: 2023-10-17 09:05:15 Etc/GMT
Last Modified: 2023-10-17 09:05:15 Etc/GMT
Environment
Data Exchange Layer (DXL) Broker 6.x
Data Loss Prevention (DLP) Prevent Appliance 11.10.400
ePolicy Orchestrator (ePO) 5.10.x
Threat Intelligence Exchange (TIE) Server 4.x
Trellix Endpoint Security (HX) 5.3.3
Nutanix Acropolis Hypervisor (AHV)
Data Loss Prevention (DLP) Prevent Appliance 11.10.400
ePolicy Orchestrator (ePO) 5.10.x
Threat Intelligence Exchange (TIE) Server 4.x
Trellix Endpoint Security (HX) 5.3.3
Nutanix Acropolis Hypervisor (AHV)
Summary
Contents
Click the headings below to expand the section you want to view:
To configure DLP Prevent Appliance on the Nutanix AHV environment, follow the steps mentioned in the DLP Prevent Installation Guide.
Use these steps to configure DXL and TIE Broker on the Nutanix AHV environment:
- Create and set up the VM:
- Click the Create VM link.
- Enter the basic configuration details:
- General Configuration:
- Name: Unique name for the VM.
- Description: Description for the VM.
- Time zone: Select the required time zone.
- Compute Details:
- vCPUs: Enter the number of CPUs required.
NOTE: It's recommended to use one CPU for each TIE and DXL Broker.
- Number of cores per vCPU: Enter the number of cores required.
NOTE: The recommended number of cores per CPUs for TIE setup is 8, whereas for the DXL Broker setup is 4.
- Memory: Enter the memory.
NOTE: The recommended memory for TIE setup is 16 GB, whereas for the DXL Broker setup is 8 GB.
- vCPUs: Enter the number of CPUs required.
- Boot Configuration:
- Select Legacy Bios.
- Select Legacy Bios.
- General Configuration:
- Configure your Disk setup:
- Click the Add New Disk link.
- Enter the first disk setup details as required:
- Type: Select the type as CD-ROM.
- Operation: Select the option Clone from Image Service.
- Bus Type: Select the bus type as IDE.
- Image: Select the TIE iso / DXL Broker iso image. For more information, see Image Configuration.
- Index: Set as Next Available.
- Click Add.
- Add another disk set up details as required:
- Type: Select the type as DISK.
- Operation: Select the option Allocate on Storage Container.
- Bus Type: Select the bus type as IDE.
- Storage Container: In the drop-down, select a container from the list. For TIE / DXL Broker setup, use the Default container.
- Size: You can set it as per usage.
NOTE: The recommended size for the TIE server instance is 120 GB, whereas for the DXL Broker server instance is 25 GB.
- Index: Set as Next Available.
- Click Add.
- Configure your Network Adaptors (NIC):
- Click Add new NIC.
- Configure the new adaptor:
- Subnet Name: Select a subnet name according to the NICs defined in the Nutanix environment.
- Network Connection State: Select Connected to connect to the network.
- Private IP Assignment: If needed, Assign private IP.
- Click Add.
NOTE: For the TIE / DXL Broker setup on Nutanix, you don't need to set the VM host affinity.
- Review the new configurations and click Save.
- Switch on the VM:
- Open Recent Tasks and view the status of the new VM. You see the new VM is in the Switched Off state.
- Right-click the VM and click Power On. Wait for the VM to start. Once Switched On, you see the status as a green dot beside the VM name.
- Launch the VM console: Right-click the VM and click Launch Console.
- Install the TIE / DXL Broker Server:
Once the VM Setup is completed, you have to install the TIE / DXL Broker. For help with installation, see the TIE 4.0.x Installation Guide and DXL Broker 6.0.x Installation Guide.
NOTE: You can safely ignore the steps related to OVA.
NOTE: You can safely ignore the steps related to OVA.
- Image Configuration:
- Click Settings (Gear icon), and then click Image Configuration, Upload Image.
- Enter the following details:
- Name: A unique name for the image.
- Annotation: Description of the image.
- Image Type: ISO.
- Storage Container: In the drop-down, select a container from the list. For TIE / DXL Broker setup, use the Default container.
- Image Source: Enter a source URL (available in the Nutanix environment) of the iso file. Alternatively, browse to the local directory.
- Click Save. Wait for the image upload to complete.
The following scenario helps verify that the TIE setup is working fine.
Scenario 1 | Monitor the health status of your TIE Server instances. |
Goal | Validate that the TIE Server Topology is healthy and works correctly. |
Steps |
|
Scenario 2 | Sample creation and execution on client and check TIE Reputation |
Goal |
|
Prerequisites |
|
Steps |
|
Basic setup validation for DXL Broker Server:
To verify the DXL Broker installation, see the DXL Broker Installation Guide.
Back to top
NOTE: For details about the ePO-supported environments, see KB51569 - Supported platforms for ePolicy Orchestrator.
- Create and set up the VM:
- Click the Create VM link.
- Enter the basic configuration details:
- General Configuration:
- Name: Unique name for the VM.
- Description: Description for the VM.
- Time zone: Select the required time zone.
- Compute Details:
- See the "System requirements and recommendations" section under the Trellix ePolicy Orchestrator - On-prem 5.10.0 Installation Guide.
- See the "System requirements and recommendations" section under the Trellix ePolicy Orchestrator - On-prem 5.10.0 Installation Guide.
- Boot Configuration:
- Select Legacy Bios.
- Select Legacy Bios.
- General Configuration:
- Configure your Disk set up:
- Click the Add New Disk link.
- Enter the first disk setup details as required:
- Type: Select the type as CD-ROM.
- Operation: Select the option Clone from Image Service.
- Bus Type: Select the bus type as IDE.
- Image: Select the iso image. For more information, see Image Configuration.
- Index: Set as Next Available.
- Click Add.
- Enter the second disk set up details as required:
- Type: Select the type as CD-ROM.
- Operation: Select the option Clone from Image Service.
- Bus Type: Select the bus type as IDE.
- Image: Select Windows driver’s image. For more information, see Image Configuration.
- Index: Set as Next Available.
- Click Add.
- Add another disk set up details as required:
- Click Add New Disk.
- Type: Select the type as DISK.
- Operation: Select the option Allocate on Storage Container.
- Bus Type: Select the bus type as SCSI.
- Storage Container: In the drop-down, select a container from the list. For this setup, use the Default container.
- Size: You can set it as per usage.
- Index: Set as Next Available.
- Click Add.
- Configure your Network Adaptors (NIC):
- Click Add new NIC.
- Configure the new adaptor:
- Subnet Name: Select a subnet name according to the NICs defined in the Nutanix environment.
- Network Connection State: Select Connected to connect to the network.
- Private IP Assignment: If needed, assign a private IP.
- Click Add.
NOTE: For the Windows Server setup on Nutanix, you don't need to set the VM host affinity.
- Review the new configurations and click Save.
- Switch on the VM:
- Open Recent Tasks and view the status of the new VM. You see that the new VM is in the Switched Off state.
- Right-click the VM and click Power On. Wait for the VM to start. Once Switched On, you see the status as a green dot beside the VM name.
- Launch the VM console: Right-click the VM and click Launch Console.
- Product setup:
Once the VM setup is completed, you have to install ePO. For help with installation, see the ePolicy Orchestrator 5.10.0 Installation Guide.
- Image Configuration:
- Click Settings (Gear icon), and then click Image Configuration, Upload Image.
- Enter the following details:
- Name: A unique name for the image.
- Annotation: Description of the image.
- Image Type: ISO.
- Storage Container: In the drop-down, select a container from the list. For this setup, use the Default container.
- Image Source: Enter a source URL (available in the Nutanix environment) of the iso file. Alternatively, browse to the local directory.
- Click Save. Wait for the image upload to complete.
Log on to the ePO Server (
Use these steps to configure HX on the Nutanix AHV environment:
- Download, extract, and transfer the
vmdk file to your environment:- Download the ova package from the Trellix Downloads site.
- Move the ova package to your Nutanix environment.
- Extract the contents of the ova file using an archive tool of your choice.
You see the following extracted files:vmdk filemr fileovf file
- Upload the HX image:
- Click Settings (Gear icon), and then click Image Configuration, Upload Image.
- Enter the following details:
- Name: A unique name for the image.
- Annotation: Description of the image.
- Image Type: DISK.
- Storage Container: In the drop-down, select a container from the list. For HX setup, use the Default container.
- Image Source: Enter a source URL (available in the Nutanix environment) of the image file.
Alternatively, browse to the local directory you placed thevmdk file in.
- Click Save.
Wait for the image upload to complete.
- Create and set up the VM:
- Click the Create VM link.
- Enter the basic configuration details:
- General Configuration:
- Name: Unique name for the VM.
- Description: Description for the VM.
- Time zone: Select the required time zone.
- Compute Details:
- vCPUs: Enter the number of CPUs required.
- Number of cores per vCPU: Enter the number of cores required.
- Memory: Enter the memory.
NOTE: The compute details vary depending on the HX model. See the Deployment Guide for details of each model's requirements.
- Boot Configuration:
- Select Legacy Bios.
- Select Legacy Bios.
- General Configuration:
- Configure your Disk setup:
- Add a new disk:
Click Add New Disk.
- Enter the disk set up details as required:
- Type: Select the type as Disk.
- Operation: Select the option Clone from Image Service.
- Bus Type: Select the bus type as IDE.
- Image: Select the HX image file that you uploaded earlier.
- Size: The size of the disk is automatically picked up based on the image selected.
- Index: Set as Next Available.
- Add your configured disk:
Click Add.
- Add a new disk:
- Configure you Network Adaptors (NIC)
- Click Add new NIC.
- Configure the new adaptor:
- Subnet Name: Select a subnet name according to the NICs defined in the Nutanix environment.
- Network Connection State: Select Connected to connect to the network.
- Private IP Assignment: None.
- Click Add.
- Review the new configurations and click Save.
- Switch on the VM:
- Open Recent Tasks and view the status of the new VM.
You see that the new VM is in the Switched Off state.
- Right-click the VM and click Power On.
Wait for the VM to start. Once Switched On, you see the status as a green dot beside the VM name.
- Launch the VM console:
Right-click the VM and click Launch Console.
- Open Recent Tasks and view the status of the new VM.
Back to top
Affected Products
Languages:
This article is available in the following languages: