- Allow outbound connection to the following urls below in the customers network (firewall,proxy,etc)
- api-us1.xbc.trendmicro.com (<region>.xbc.trendmicro.com)
- scpsa.xbc.trendmicro.com
- rpcollectedthings.blob.core.windows.net (Microsoft Azure Storage)
- No ACL on https (i.e. TCP 443 port)
- Deep Security Manager (DSM) version 20.0.198 and above
- DSA10.0 and above running on XBC supported platforms:
- Windows 7 SP1 and 10
- WIndows Server 2019, 2016 and 2012
- Amazon Linux 1 & 2
- CentOS 6 & 7
- Red Hat Enterprise Linux 6 & 7
- Before the Solution Center is ready for Deep Security support team, Endpoint Basecamp package should be provided by Trend Micro Support Team
- Request Trend Micro Support Team to create a new company in XBC backend for this customer, please provide either the following information:
- CLP Company ID
- DSM Server GUID (refer to “Getting the Deep Security Manager Server GUID ” section)
- Trend Micro Support Team provides Endpoint Basecamp packages (with the specific token), the package only can be used in this customer
- Windows (X86/X64) : EndpointBasecamp.exe
Platform Support:
- Windows 7 SP1 and later version
- Linux : tmxbc_linux64.tgz
Platform Support:
- Amazon Linux
- Amazon Linux2
- CentOS 6
- CentOS 7
- Red Hat Enterprise Linux 6
- Red Hat Enterprise Linux 7
- Windows (X86/X64) : EndpointBasecamp.exe
- Request Trend Micro Support Team to create a new company in XBC backend for this customer, please provide either the following information:
- Install Endpoint Basecamp into the target endpoints
- Windows: (Online help:https://docs.trendmicro.com/en-us/enterprise/trend-micro-xdr-online-help/apps/endpoint-inventory_001/getting-started-with.aspx)
- For Windows endpoints that not require proxy to connect to external networks
- Run EndpointBasecamp.exe with administrator permission
- For Windows endpoints that require a proxy server to connect to external networks, open a command line editor as an administrator and execute the following command:
-
EndpointBasecamp.exe /proxy_server_port <proxy_server_ip_or_fqdn:port>
For example:
EndpointBasecamp.exe /proxy_server_port 10.1.1.1:80
-
- For Windows endpoints that not require proxy to connect to external networks
- Linux : (Online help : https://docs.trendmicro.com/en-us/enterprise/trend-micro-xdr-help/LinuxDeployment)
-
To install the Endpoint Basecamp program without a proxy, execute the following command:
$ ./tmxbc install
-
To install the Endpoint Basecamp program with a proxy, execute the following command:
$ ./tmxbc install --proxyURL <IPv4 or IPv6 address of proxy server>
For example:
$ ./tmxbc install --proxyURL http://10.1.1.1:80
-
- Windows: (Online help:https://docs.trendmicro.com/en-us/enterprise/trend-micro-xdr-online-help/apps/endpoint-inventory_001/getting-started-with.aspx)
Here are the steps to get the Deep Security Manager GUID (Optional if you have provided the CLP Company ID)
Login to the DSM Server and open the cmd for Windows or Terminal for Linux and run the following command
- Windows:
C:\> "\Program Files\Trend Micro\Deep Security Manager\dsm_c"
-action viewsetting -name settings.configuration.dsmGUID
- Linux:
# /opt/dsm/dsm_c
-action viewsetting -name settings.configuration.dsmGUID
- Deep Security support team will help to create SCP tool for case troubleshooting depending on the issue reported, the tool might perform the following actions
- Debug information collection (refer to “Collected Information” section”
- Agent recovery
- Other troubleshooting actions
- Register the SCP actions to the specific endpoint (Executed by Deep Security support team by XBC API script)
- Only when a support ticket being created and deployment plan being acknowledged by customers, Deep Security support team will deploy SCP to agent side. Without SCP, Endpoint Basecamp will only send agent GUID to Trend Micro backend for task check on 10 minutes basis.
- Once Support Connector Package (SCP) is executed, it will be removed from the endpoint and will feedback the result to Trend Micro backend server and Technical Support team will proceed to solve the issue.
Depending on the troubleshooting scope, the Support Connector Tool collects one or more of the following information, but not limited to:
- GUID
- User account
- Host name
- Domain name
- IP address
- MAC address
- File name/path/owner
- Process name/path/owner
- URL
- Registry hive
- Would Endpoint Basecamp and SCP collect any Personally Identifiable Information (PII) without notice?
- Endpoint Basecamp will NOT collect PII without user notice. It will only send GUID for task checking on 10 minutes basis.
- ONLY when a support ticket has been created and customer acknowledged the deployment plan, a SCP could be deployed to agent side for debug information collection.
- How Endpoint Basecamp connection being secured?
- Endpoint Basecamp connection to backend is secured by HTTPS, thus TCPport shall be allowed on agent side.
- How Endpoint Basecamp agent being secured?
- Endpoint Basecamp checks all SCP files, only the files are provided from Trend Micro and only for Support Connector Packages can be executed on the endpoints
- Only authenticated Endpoint Basecamp agent can be communicated with Endpoint Basecamp backend