McAfee Security Connected Integrating EPO and MAM

Similar documents
McAfee Security Connected Integrating epo and MVM

McAfee Security Connected Integrating epo and MFECC

Tenable for McAfee epolicy Orchestrator

Tenable for McAfee epolicy Orchestrator

How-to Guide: Tenable for McAfee epolicy Orchestrator. Last Updated: April 03, 2018

Intel Security/McAfee Endpoint Encryption

McAfee Endpoint Encryption

McAfee Security-as-a-Service

McAfee Red and Greyscale

<Partner Name> <Partner Product> RSA Ready Implementation Guide for. Rapid 7 Nexpose Enterprise 6.1

Release Notes McAfee Change Control 8.0.0

McAfee Firewall Enterprise epolicy Orchestrator Extension

McAfee MVISION Mobile epo Extension Product Guide

<Partner Name> <Partner Product> RSA SECURID ACCESS Authenticator Implementation Guide. Intel Security Drive Encryption 7.1.3

CounterACT VMware vsphere Plugin

Firewall Enterprise epolicy Orchestrator

ForeScout CounterACT. Plugin. Configuration Guide. Version 2.1

McAfee Application Control Windows Installation Guide. (McAfee epolicy Orchestrator)

SafeNet Authentication Client

Interface Reference. McAfee Application Control Windows Interface Reference Guide. Add Installer page. (McAfee epolicy Orchestrator)

ForeScout Extended Module for ServiceNow

McAfee Boot Attestation Service 3.5.0

McAfee Enterprise Security Manager. Data Source Configuration Guide. Data Source: Microsoft Windows Event Log - WMI.

Installing Client Proxy software

Installation Guide Revision B. McAfee Cloud Workload Security 5.0.0

McAfee Change Control Using Change Reconciliation and Ticket-based Enforcement

Integrated McAfee and Cisco Fabrics Demolish Enterprise Boundaries

State of Cloud Adoption. Cloud usage is over 90%, are you ready?

Forescout. Configuration Guide. Version 2.4

Product Guide Revision B. McAfee Cloud Workload Security 5.0.0

The McAfee MOVE Platform and Virtual Desktop Infrastructure

Resolution: The DataChannel servlet no longer stops working, regardless of the state of the DataChannel extension.

Quick Reference Guide Updating Anti-Virus to Microsoft Security Essentials. Check for McAfee EPO Agent

McAfee Application Control/ McAfee Change Control Administration

McAfee Data Loss Prevention Endpoint

ForeScout Extended Module for IBM BigFix

McAfee epolicy Orchestrator

McAfee Enterprise Security Manager 9.5.2

SNC-HMX70. Version Upgrade Guide

Introducing MVISION. Cohesive Cloud-based Management of Threat Countermeasures and Devices Leveraging Built-in Device Controls. Jon Parkes.

Installation Guide. . All right reserved. For more information about Specops Inventory and other Specops products, visit

USER GUIDE. Snow Integration Manager Version 4.3 Release date Installation Configuration Import provider settings Document date

ForeScout Extended Module for Carbon Black

McAfee Labs Threat Advisory Photominer

ForeScout CounterACT. Configuration Guide. Version 1.1

McAfee Vulnerability Manager 7.0.1

How-to Guide: Tenable Nessus for BeyondTrust. Last Revised: November 13, 2018

ForeScout Extended Module for MobileIron

Managing Client Proxy

ForeScout Extended Module for MaaS360

McAfee MER for EPO 3.1 Walkthrough Guide. About this guide This guide provides information on how to use McAfee MER for EPO 3.1.

Boot Attestation Service 3.0.0

USER GUIDE. Snow Integration Manager Version 4.5 Release date Document date

CounterACT VMware vsphere Plugin

McAfee Total Protection for Data Loss Prevention

Traditional Security Solutions Have Reached Their Limit

Contents Upgrading BFInventory iii

Client Proxy interface reference

McAfee Change Control and McAfee Application Control 6.1.4

MCAFEE THREAT INTELLIGENCE EXCHANGE RESILIENT THREAT SERVICE INTEGRATION GUIDE V1.0

USER GUIDE. Snow Integration Manager. Version 4.7. Release date Document date SNOWSOFTWARE.COM

McAfee Cloud Workload Security Suite Amazon Machine Image Installation Guide

ForeScout Extended Module for Qualys VM

ForeScout CounterACT. (AWS) Plugin. Configuration Guide. Version 1.3

ForeScout Extended Module for ServiceNow

McAfee Data Loss Prevention Endpoint 10.0

Data Loss Prevention Endpoint

McAfee Complete Endpoint Threat Protection Advanced threat protection for sophisticated attacks

ForeScout Extended Module for IBM BigFix

McAfee Change Control and McAfee Application Control 8.0.0

Endpoint Intelligence Agent 2.2.0

MOVE AntiVirus page-level reference

McAfee Rogue Database Detection For use with epolicy Orchestrator Software

McAfee Investigator Product Guide

Start Up and Shutdown Procedures (Unix)

RSA NetWitness Logs. EMC Ionix Unified Infrastructure Manager. Event Source Log Configuration Guide

McAfee Application Control 6.2.0

SIMATIC. Process Control System PCS 7 V7.0 SP1 Security Information Note: Setting up antivirus software. Preface. Using virus scanners 2

ForeScout Extended Module for VMware AirWatch MDM

Integration with McAfee DXL

McAfee Public Cloud Server Security Suite

Quick Installation Guide for RHV/Ovirt

Installation Guide. McAfee Endpoint Security for Servers 5.0.0

McAfee Data Loss Prevention Endpoint

Lab 7 Configuring Basic Router Settings with IOS CLI

McAfee Cloud Workload Security Product Guide

Reducing Operational Costs and Combating Ransomware with McAfee SIEM and Integrated Security

McAfee Endpoint Security for Servers Product Guide. (McAfee epolicy Orchestrator)

Forescout. Configuration Guide. Version 4.2

High Availability Configuration Guide

Altiris 060-NSFA600. Altiris Notification System Foundation 6.0. Download Full Version :

McAfee MVISION Mobile Microsoft Intune Integration Guide

To stop. Server#service postgresql stop

Forescout. eyeextend for Carbon Black. Configuration Guide. Version 1.1

McAfee MVISION Endpoint 1811 Installation Guide

Update 9/16/16: Version published to the ServiceNow store now supports Helsinki, Istanbul and Jakarta.

McAfee MA McAfee Certified Product Specialist - DLPE.

Reference Guide Revision B. McAfee Cloud Workload Security 5.0.0

Tanium Asset User Guide. Version 1.1.0

Forescout. eyeextend for IBM BigFix. Configuration Guide. Version 1.2

Transcription:

McAfee Security Connected Integrating EPO and MAM

Table of Contents Overview 3 User Accounts & Privileges 3 Prerequisites 3 Configuration Steps 3 Value Add 7 FOR INTERNAL AND CHANNEL USE ONLY Rev 1 March 5, 2014 2

Overview Integration between McAfee epolicy Orchestrator and McAfee Asset Manager provides added network visibility for the enterprise, enabling comprehensive security, configuration, compliance, and risk management on the network. The McAfee Asset Manager epo extension is used to update the McAfee epo asset database in near real-time, allowing the McAfee epo platform to become the single source of truth about the network. The integration makes use of the rogue system detector (RSD) API. The McAfee Asset Manager epo extension is used to communicate with the McAfee Asset Manager Console s PostgreSQL database on a regular basis (down to 1 minute intervals) and to receive delta updates about the network, its devices, and its users. User Accounts & Privileges Administrative rights to McAfee epo Root account for MAM Console Prerequisites MAM Extension for epo 4.6 and above Configuration Steps 1. Log in to the McAfee Asset Manager Console with the root user account 2. Using VI, open the following file for editing a. /usr/lib/insightix/management/memory_config/current_config/postgresql_add.conf FOR INTERNAL AND CHANNEL USE ONLY Rev 1 March 5, 2014 3

3. Add the following line to the file a. Press the Insert Key on the keyboard to begin editing mode b. Listen_addresses= * c. To save press Shift : on the keyboard Type wq to write and quit 4. Using VI, open the following file for editing a. /etc/postgresql/9.1/main/pg_hba.conf b. Press the Insert Key on the keyboard to begin editing mode c. Under IPv4 local connections add the following line if it does not exist d. Host all all 0.0.0.0/0 md5 e. To save press Shift : on the keyboard Type wq to write and quit 5. Type Exit one time 6. Type monit stop all 7. Type /etc/init.d/postgresql restart 8. Type monit start all FOR INTERNAL AND CHANNEL USE ONLY Rev 1 March 5, 2014 4

9. Using VI, open the following file to gather needed information to configure the epo Server a. /usr/lib/insightix/management/conf/msconfig.properties b. Take note of the username under dbuser and the database password under dbpwd 10. Log in to the epo server console with an administrator account 11. Using VI, open the following file to gather needed information to configure the epo Server 12. Browse to Menu Extensions Install Extension 13. Check in the MAM Extension 14. Browse to Menu Registered Servers New 15. Select MAM Console Server from the drop down menu 16. Enter a name for the server Next 17. Enter the IP Address of the MAM Console Server FOR INTERNAL AND CHANNEL USE ONLY Rev 1 March 5, 2014 5

18. Enter the Password for the database that was noted in step 9 19. Click Test Connection 20. If the connection is successful click Save 21. Browse to Menu Server Tasks New Task 22. Name the Task (This task is to pull data from MAM) 23. Click Next 24. Select McAfee Asset Manager Detected Systems from the drop down menu 25. Ensure the correct registered MAM server is selected 26. Click Next 27. Configure the schedule frequency for epo to pull data from MAM 28. Click Next Save FOR INTERNAL AND CHANNEL USE ONLY Rev 1 March 5, 2014 6

Value Add McAfee Asset Manager augments McAfee s visibility of devices connected to the network, enabling comprehensive security, configuration, compliance, and risk management on the network. McAfee has achieved this by integrating McAfee Asset Manager with McAfee epo software, the centralized platform that manages all endpoint security and compliance solutions from McAfee. As part of the integration with the McAfee epo platform, McAfee Asset Manager updates the McAfee epo asset database in near real-time, allowing the McAfee epo platform to maintain a more complete, accurate, and up-to-date inventory of the devices, their profiles, and the identities of those using the devices. Combining the data from existing McAfee solutions and McAfee Asset Manager, the McAfee epo platform now becomes the single source of truth about the network. This integration provides the foundation for effectively managing security, compliance, and risk against all devices across your entire network. FOR INTERNAL AND CHANNEL USE ONLY Rev 1 March 5, 2014 7