cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
vtgt
Level 10
Report Inappropriate Content
Message 1 of 5

Comparison features supported on Windows, Linux, and Macintosh

Is there an overview available which MVISION EDR features should work on the different operating systems as it is done for ENS with KB85005?

According to KB91345 there are a lot of version dependencies especially for Linux and macOS.

We want to test the EDR client version 3.3.0 on Red Hat 7.9 and have Windows 10 client with EDR 4.0.0 installed.
Are there any restrictions for Linux?
Which features should definitely work in this scenario with the latest On-Prem ePO extensions installed?

Thanks in advance!

4 Replies
Pravas
Employee
Employee
Report Inappropriate Content
Message 2 of 5

Re: Comparison features supported on Windows, Linux, and Macintosh

Hi @vtgt ,

Mvision EDR has mainly 3 features.

Trace

Hashing

Network Flow

All of which works for Windows OS. 

For MAC & Linux Trace is unavailable. Please refer the Document below.

https://docs.trellix.com/bundle/mvision-endpoint-detection-and-response-product-guide/page/GUID-4A0B...

Please refer KB91345 for versions compatible with Linux.

Thanks

Was my reply helpful?
If you find this post useful, Please give it a Kudos! Also, Please don't forget to select "Accept as a solution" if this reply resolves your query!

vtgt
Level 10
Report Inappropriate Content
Message 3 of 5

Re: Comparison features supported on Windows, Linux, and Macintosh

Hi @Pravas 

Thanks for your reply!

Do I understand it correctly that I never will see any data from a Linux system in the MVISION EDR Device Search and Historical Search? Only the Real Time Search can be used for Linux systems?

Is a test detection also available for Linux as it is described in KB93745 for Windows systems?

The MVISION EDR installation dependencies for Linux systems is nightmare:

Red Hat 7.9 requires MVISION EDR 3.3 and this version is only supported with McAfee Agent 5.7.3!

You don't really mean that!

Pravas
Employee
Employee
Report Inappropriate Content
Message 4 of 5

Re: Comparison features supported on Windows, Linux, and Macintosh

Hi @vtgt ,

Yes, there won't be any trace event generated by Linux Systems on EDR Console.

You may use it for Real-Time Search.

Since Trace feature isn't available for Linux, there isn't a test file at the moment.

Please submit a feature request for Linux in our Ideas Forum. For instructions, refer the link below.

https://kc.mcafee.com/corporate/index?page=content&id=KB60021

Thanks

Was my reply helpful?
If you find this post useful, Please give it a Kudos! Also, Please don't forget to select "Accept as a solution" if this reply resolves your query!

Re: Comparison features supported on Windows, Linux, and Macintosh

Ask for a quick roadmap call.  😉

You Deserve an Award
Don't forget, when your helpful posts earn a kudos or get accepted as a solution you can unlock perks and badges. Those aren't the only badges, either. How many can you collect? Click here to learn more.

Community Help Hub

    New to the forums or need help finding your way around the forums? There's a whole hub of community resources to help you.

  • Find Forum FAQs
  • Learn How to Earn Badges
  • Ask for Help
Go to Community Help

Join the Community

    Thousands of customers use our Community for peer-to-peer and expert product support. Enjoy these benefits with a free membership:

  • Get helpful solutions from product experts.
  • Stay connected to product conversations that matter to you.
  • Participate in product groups led by employees.
Join the Community
Join the Community