TDR and Trend Micro. Integration Guide

Similar documents
TDR and Sophos Software. Integration Guide

TDR and Symantec. Integration Guide

TDR and Panda Fusion. Integration Guide

TDR and Kaspersky. Integration Guide

TDR and Avast Business Antivirus. Integration Guide

TDR and McAfee. Integration Guide

TDR and Malwarebytes. Integration Guide

TDR & Bitdefender. Integration Guide

TDR and ESET Endpoint. Integration Guide

TDR and Microsoft Security Essentials. Integration Guide

TDR and Symantec. Integration Guide

VMware AirWatch Certificate Authentication for Cisco IPSec VPN

TPP: Date: October, 2012 Product: ShoreTel PathSolutions System version: ShoreTel 13.x

TDR and Windows Defender. Integration Guide

Avigilon Control Center Server User Guide. Version 6.4

Avigilon Control Center Server User Guide. Version 6.8

Admin Report Kit for Exchange Server

Universal CMDB. Software Version: Backup and Recovery Guide

Dell EqualLogic PS Series Arrays: Expanding Windows Basic Disk Partitions

EView/400i Management Pack for Systems Center Operations Manager (SCOM)

HPE AppPulse Mobile. Software Version: 2.1. IT Operations Management Integration Guide

SMART Room System for Microsoft Lync. Software configuration guide

Quest InTrust Connector for Microsoft System Center Operations Manager User

HP Universal CMDB. Software Version: Backup and Recovery Guide

Kaltura Video Extension for SharePoint 2013 Deployment Guide for Microsoft Office 365. Version: 1.0

Repstor custodian. On Premise Pre-Requisites. Document Version 1.1 January 2017

Technical Paper. Installing and Configuring SAS Environment Manager in a SAS Grid Environment

Avigilon Control Center Virtual Matrix User Guide. Version 6.8

Troubleshooting Citrix- Published Resources Configuration in VMware Identity Manager

Technical Paper. Installing and Configuring SAS Environment Manager in a SAS Grid Environment with a Shared Configuration Directory

Xerox Security Bulletin XRX12-007

IMC QoS Manager 7.3 (E0502) Copyright 2015, 2016 Hewlett Packard Enterprise Development LP

HP Server Virtualization Solution Planning & Design

Manually Upgrading PostgreSQL 9.1 to PostgreSQL

McAfee Endpoint Upgrade Assistant 2.2

Date: October User guide. Integration through ONVIF driver. Partner Self-test. Prepared By: Devices & Integrations Team, Milestone Systems

Advanced and Customized Net Conference Powered by Cisco WebEx Technology

USO RESTRITO. SNMP Agent. Functional Description and Specifications Version: 1.1 March 20, 2015

How to Guide. DocAve Extender for MOSS 2007 and SPS Installing DocAve Extender and Configuring a Basic SharePoint to Cloud Extension

Virtual Server Protection (VSP)

How to set up Dell SonicWALL Aventail SRA Appliance with OPSWAT GEARS Client

Introduction to Mindjet on-premise

ABELDent Platform Setup Conventions

Stellar Phoenix Excel Repair. Version 5.0. Installation Guide

Cisco Tetration Analytics, Release , Release Notes

Integration Framework for SAP Business One

ESET REMOTE ADMINISTRATOR PLUG-IN FOR KASEYA Technical Setup and User Guide. Click here to download the latest version of this document

SMART Product Drivers 11.3 for Windows and Mac computers

Dell Chassis Management Controller (CMC) Version 1.35 for Dell PowerEdge VRTX. Release Notes

AvePoint Accessibility Accelerator 2.0

This document lists hardware and software requirements for Connected Backup

Configuring the McAfee Windows Event Collector Management Utility *Also can provide client transmission of other non-windows log files*

PL-2302 Mac OS Driver MAC/PC and PC/MAC Communication Software

Group Policy Manager Quick start Guide

HP ExpertOne. HP2-T21: Administering HP Server Solutions. Table of Contents

UPGRADING TO DISCOVERY 2005

NiceLabel LMS. Installation Guide for Single Server Deployment. Rev-1702 NiceLabel

Level 2 Development Training

Aras Innovator 8.1 Document #: Last Modified: 4/4/2007. Copyright 2007 Aras Corporation All Rights Reserved.

Proficy* SmartSignal 6.1 Installation Guide

Trimble Survey GNSS Firmware Version 4.81 (July 2013)

Licensing the Core Client Access License (CAL) Suite and Enterprise CAL Suite

Enterprise Chat and Developer s Guide to Web Service APIs for Chat, Release 11.6(1)

Your New Service Request Process: Technical Support Reference Guide for Cisco Customer Journey Platform

CaseWare Working Papers. Data Store user guide

Troubleshooting Citrix- Published Resources Configuration in VMware Identity Manager

App Orchestration 2.6

HW4 Software version 3. Device Manager and Data Logging LOG-RC Series Data Loggers

LiveEngage and Microsoft Dynamics Integration Guide Document Version: 1.0 September 2017

ABELMed Platform Setup Conventions

OO Shell for Authoring (OOSHA) User Guide

SANsymphony Installation and Getting Started Guide. November 7, 2016

DataCore Deployment Wizard For vsphere User Guide. July 31, 2017

Oracle Universal Records Management Oracle Universal Records Manager Adapter for Documentum Installation Guide

WinEst 15.2 Installation Guide

Virtual Server Protection (VSP)

Planning, installing, and configuring IBM CMIS for Content Manager OnDemand

INTELLISNAP. TECHNOLOGY QUICK START GUIDE Pure Storage FlashArray. Publish Date: July 30, 2015 Distribution: Public Author: Jonathan Howard

Click Studios. Passwordstate. RSA SecurID Configuration

PRIVACY AND E-COMMERCE POLICY STATEMENT

TIBCO Statistica Options Configuration

WorldShip PRE-INSTALLATION INSTRUCTIONS: INSTALLATION INSTRUCTIONS: Window (if available) Install on a Single or Workgroup Workstation

September 24, Release Notes

USER MANUAL. RoomWizard Administrative Console

Table of Contents. WipeDrive Enterprise Logging, March Logging Settings... 3 Log Format Types Audit Log Destination Options...

Virtual Office

DELL EMC VxRAIL vcenter SERVER PLANNING GUIDE

Password Reset for Remote Users

Troubleshooting of network problems is find and solve with the help of hardware and software is called troubleshooting tools.

NSE 8 Certification. Exam Description for FortiGate 5.2 and higher

Release Notes. Dell SonicWALL Security firmware is supported on the following appliances: Dell SonicWALL Security 200

Frequently Asked Questions

Customer Information. Agilent 2100 Bioanalyzer System Startup Service G2949CA - Checklist

Demand Forecasting. For. Microsoft Dynamics 365 for Operations. Technical Guide. Release 7.1. December 2017

Wave IP 4.5. CRMLink Desktop User Guide

Milestone XProtect. NVR Installer s Guide

CounterSnipe Software Installation Guide Software Version 10.x.x. Initial Set-up- Note: An internet connection is required for installation.

HP Oracle LMS. Software Version: User Guide

Investor Services Online Quick Reference Guide FTP Delivery

Launching Xacta 360 Marketplace AMI Guide June 2017

Transcription:

TDR and Trend Micr Integratin Guide

i WatchGuard Technlgies, Inc.

TDR and Trend Micr Deplyment Overview Threat Detectin and Respnse (TDR) is a cllectin f advanced malware defense tls that crrelate threat indicatrs frm Firebxes and Hst Sensrs t enable real-time, autmated respnse t stp knwn, unknwn, and evasive threats. As part f the TDR slutin, yu install TDR Hst Sensrs t prvide endpint prtectin. In sme cases, the TDR Hst Sensr might have cnflicts with the antivirus sftware installed n yur endpints. T reslve this issue, yu can cnfigure exclusins in the antivirus sftware and in TDR. This dcument includes infrmatin abut the integratin f a TDR Hst Sensr with a hst that runs Trend Micr sftware. It des nt describe the prcedure t set up Threat Detectin and Respnse. Fr infrmatin abut hw t set up yur TDR accunt, hw t enable TDR n a Firebx, and hw t install a Hst Sensr, see Quick Start Set Up Threat Detectin and Respnse. TDR and Trend Micr Integratin Guide 1

Integratin Summary Exclusins in TDR fr Trend Micr Wrry-Free Business Security Services Fr Windws: C:\Prgram Files (x86)\trend Micr\ C:\Prgram Files\Trend Micr\ Exclusins in TDR fr Trend Micr Wrry-Free Business Security Services Fr Mac: /Library/Applicatin Supprt/TrendMicr Exclusins in TDR fr Trend Micr Smart Prtectin fr Endpint Suite Fr Windws: C:\Prgram Files (x86)\trend Micr\ C:\Prgram Files\Trend Micr\ Exclusins in TDR fr Trend Micr OfficeScan and Security fr Mac plug-in prgrams Fr Mac: Nt needed Exclusins in TDR fr Trend Micr Endpint Sensr Fr Windws: C:\Prgram Files\Trend Micr\ Exclusins in Trend Micr Wrry-Free Business Security Services Trend Micr Smart Prtectin fr Endpint Suite fr the TDR Hst Sensr Fr Windws: C:\Prgram Files (x86)\watchguard\threat Detectin and Respnse\ C:\Prgram Files\WatchGuard\Threat Detectin and Respnse\ Exclusins in Trend Micr Endpint Sensr fr the TDR Hst Sensr Fr Windws: Nt needed Exclusins in Trend Micr Wrry-Free Business Security Services fr the TDR Hst Sensr Fr Mac: /usr/lcal/watchguard/tdr/amd64/hst_sensr Exclusins in Trend Micr OfficeScan and plug-in prgrams Security fr Mac fr the TDR Hst Sensr Fr Mac: /usr/lcal/watchguard If the Hst Sensr and Trend Micr sftware detect and respnd t a threat at the same time, this can cause high utilizatin f system resurces such as CPU, memry, and disk I/O. Trend Micr Endpint Sensr des nt have a versin fr Mac. 2 WatchGuard Technlgies, Inc.

Cnfiguratin Details T cmplete this deplyment, yu must have: An active Threat Detectin and Respnse subscriptin with Hst Sensr licenses TDR Hst Sensr 5.2.1.8015 Firebx with Fireware v12.0 r higher Trend Micr Wrry-Free Business Security Services (Windws): Trend Micr Wrry-Free Business Security Services Agent 6.2.1169 Trend Micr Smart Prtectin fr Endpint Suite (Windws): Trend Micr OfficeScan XG Agent 12.0.4345 Service Pack 1 Trend Micr Vulnerability Prtectin Agent 2.0 Trend Micr Endpint Encryptin 6.0.0.1070 Trend Micr Wrry-Free Business Security Services (Mac): Trend Micr Security 2.0.1291 Trend Micr OfficeScan and plug-in prgrams Security fr Mac 3.0.3079 Trend Micr Endpint Sensr 1.6.0.3107 The Windws test envirnment fr this deplyment included: Windws 7, 8, 10 Enterprise 64-bit Operating System Memry (RAM) 8 GB Prcessr 2 CPU Cres The Windws test envirnment t test Trend Micr Smart Prtectin fr Endpint Suite, included: Windws Server 2012r 64-bit Operating System Memry (RAM) 10 GB Prcessr 2 CPU Cres The Mac test envirnment fr this deplyment included: macos 10.13 Memry (RAM) 8 GB Prcessr Intel cre i5 TDR and Trend Micr Integratin Guide 3

Cnfigure Exclusins in TDR In yur TDR accunt, add the exclusins t manually identify paths fr files and prcesses that yu d nt want Hst Sensrs t mnitr. Befre yu deply a Hst Sensr n cmputers that have Trend Micr installed, add exclusins fr the Trend Micr file paths as TDR Exclusins in yur TDR accunt. T exclude Trend Micr directries, add exclusins with these paths in yur TDR accunt. Flders specified in an exclusin must end with a backslash. Exclusins fr Windws: C:\Prgram Files (x86)\trend Micr\ C:\Prgram Files\Trend Micr\ Exclusins fr Mac (Trend Micr Wrry-Free Business Security Services): /Library/Applicatin Supprt/TrendMicr/ Exclusins fr Trend Micr Endpint Sensr: C:\Prgram Files\Trend Micr\ T add an exclusin in TDR: 1. Lg in t yur TDR accunt r managed accunt as a user with Operatr privileges. 2. Select Cnfiguratin > Exclusin. 3. Click Add Exclusin. The Add Exclusin dialg bx appears. 4. In the Path text bx, type the path t exclude. 5. Click Save. Repeat these steps t add each exclusin. 4 WatchGuard Technlgies, Inc.

Cnfigure Exclusins in Trend Micr Wrry-Free Business Security Services In Trend Micr Wrry-Free Business Security Services, add the exclusins t identify the paths fr files and lcatins t exclude. T prevent cnflicts between the Trend Micr Wrry-Free Business Security Services, we recmmend yu add exclusins in Trend Micr Wrry-Free Business Security Services fr the paths used by the TDR Hst Sensr. T exclude TDR Hst Sensr files n 64-bit Windws add an exclusin fr: C:\Prgram Files (x86)\watchguard\threat Detectin and Respnse\ T add an exclusin in Trend Micr Wrry-Free Business Security Services Fr Windws: 1. Lg in t the WFBS cnsle with yur accunt credentials. 2. Click Devices. A grup tree with all devices and servers appears. 3. Select the grup t cnfigure, click Cnfigure Plicy. 4. In the feature tree, select Antivirus/Anti-spyware. 5. On the Target tab, click [+]next t Exclusins. 6. Select the Enable Exclusins check bx. 7. Make sure the check bx fr D nt scan directries where Trend Micr prducts are installed is selected. 8. T exclude specific flders r directries, under D nt scan the fllwing directries, type the directry path, and then click Add. 9. Click Save. T exclude TDR Hst Sensr files n macos add an exclusin fr: /usr/lcal/watchguard/tdr/amd64/hst_sensr T add an exclusin in Trend Micr Wrry-Free Business Security Services Fr Mac: 1. Lg in t the WFBS cnsle with yur accunt credentials. 2. Click Devices. A grup tree with all devices and servers appears. 3. Select the grup that yu want t cnfigure. 4. In the right panel, click Cnfigure Plicy. 5. Click the Mac table. 6. In the feature tree, click Antivirus/Anti-spyware. 7. Under Exclusins, select the Enable Exclusinscheck bx. 8. Click Addt add the exclusin. TDR and Trend Micr Integratin Guide 5

Cnfigure Exclusins in Trend Micr Smart Prtectin fr Endpints Suite In Trend Micr Smart Prtectin fr Endpints Suite, add the exclusins t identify the paths fr files and lcatins t exclude. T prevent cnflicts between the Trend Micr Smart Prtectin fr Endpints Suite, we recmmend yu add exclusins in Trend Micr Smart Prtectin fr Endpints Suite fr the paths used by the TDR Hst Sensr. The Suite is deplyed n a server integrated with several prduct managers, yu shuld deply the agents via the managers r add cmputers t the managers. The prduct yu shuld add exclusins fr is OfficeScan XG. T exclude TDR Hst Sensr files n 64-bit Windws add an exclusin fr: C:\Prgram Files (x86)\watchguard\threat Detectin and Respnse\ There are tw methds t add an exclusin in OfficeScan XG. The first methd is t set the unlck passwrd (r set n passwrd) thrugh the web cnsle r unlck the agent n the endpint, then add exclusins. The secnd methd is t add exclusins in the OfficeScan XG web cnsle. We recmmend that yu add exclusins in the web cnsle: T add exclusin in the web cnsle: 1. Lg in t the OfficeScan XG web cnsle. 2. Select Agents > Agent Management. 3. T shw the endpints, in the left panel, duble-click yur dmain. 4. Chse the endpints t manage, and right-click the endpints. 5. Select Settings > Scan Settings > Real-Time Scan Settings. 6. Click Scan Exclusins. 7. Select Enable scan exclusin and Apply scan exclusin settings t all scan types. 8. In the Scan Exclusin List (Directries) panel, select Exclude directries where Trend Micr prducts are installed. 9. In the text bx, type the exclusin paths. Fr each path t add, click [+] nce and type a new path. 10. Click Save. T exclude TDR Hst Sensr files n macos add an exclusin fr: /usr/lcal/watchguard T add an exclusin in Trend Micr OfficeScan and Security plug-in prgrams fr Mac: 1. Lg in t the OfficeScan XG web cnsle. 2. Select Plug-ins n the tp. 3. Belw Trend Micr Security fr Mac, click Manage Prgram. 4. At the tp, click Agents. 5. Select the agent yu want t cnfigure. 6. Select Settings > Scan Exclusin Settings. 7. Belw Scan Exclusin List (File Extensins), in the Exclusins text bx, type the path. 8. Click Add. Fr infrmatin abut the integratin testing methdlgy, see TDR Testing Methdlgy. 6 WatchGuard Technlgies, Inc.

Abut This Guide Guide Type Dcumented Integratin WatchGuard r a Technlgy Partner has prvided dcumentatin demnstrating integratin. Guide Details WatchGuard prvides integratin instructins t help ur custmers cnfigure WatchGuard prducts t wrk with prducts created by ther rganizatins. If yu need mre infrmatin r technical supprt abut hw t cnfigure a third-party prduct, see the dcumentatin and supprt resurces fr that prduct. Infrmatin in this guide is subject t change withut ntice. Cmpanies, names, and data used in examples herein are fictitius unless therwise nted. N part f this guide may be reprduced r transmitted in any frm r by any means, electrnic r mechanical, fr any purpse, withut the express written permissin f WatchGuard Technlgies, Inc. Guide revised: 2/8/2018 Cpyright, Trademark, and Patent Infrmatin Cpyright 1998 2018 WatchGuard Technlgies, Inc. All rights reserved. All trademarks r trade names mentined herein, if any, are the prperty f their respective wners. Cmplete cpyright, trademark, patent, and licensing infrmatin can be fund in the Cpyright and Licensing Guide, available nline at http://www.watchguard.cm/wgrd-help/dcumentatin/verview. Abut WatchGuard WatchGuard Technlgies, Inc. is a glbal leader in netwrk security, prviding best-in-class Unified Threat Management, Next Generatin Firewall, secure Wi-Fi, and netwrk intelligence prducts and services t mre than 75,000 custmers wrldwide. The cmpany s missin is t make enterprisegrade security accessible t cmpanies f all types and sizes thrugh simplicity, making WatchGuard an ideal slutin fr Distributed Enterprises and SMBs. WatchGuard is headquartered in Seattle, Washingtn, with ffices thrughut Nrth America, Eurpe, Asia Pacific, and Latin America. T learn mre, visit WatchGuard.cm. Fr additinal infrmatin, prmtins and updates, fllw WatchGuard n Twitter, @WatchGuard n Facebk, r n the LinkedIn Cmpany page. Als, visit ur InfSec blg, Secplicity, fr real-time infrmatin abut the latest threats and hw t cpe with them at www.secplicity.rg. Address 505 Fifth Avenue Suth Suite 500 Seattle, WA 98104 Supprt www.watchguard.cm/supprt U.S. and Canada +877.232.3531 All Other Cuntries +1.206.521.3575 Sales U.S. and Canada +1.800.734.9905 All Other Cuntries +1.206.613.0895 TDR and Trend Micr Integratin Guide 7