Manage, locate, and take action on any endpoint in your environment or download the
agent installer packages to deploy on more endpoints.
Use the Endpoint Inventory to manage the endpoints in your environment. You can quickly
find
and take action on endpoints that have issues, view detailed information about endpoints
with
agents installed, and download new agent packages.
The following table lists the options available in Endpoint Inventory.
Options
Screen Location
Description
Available Actions
Displays all discoverable endpoints that may require attention
Click any status to display a list of the affected endpoints. Click any endpoint to
see
recommended remediation actions. Endpoint Inventory automatically hides actions that
have
zero (0) matching endpoints.
Immediate action required: An issue occurred on the endpoint that
requires user intervention
Unmanaged endpoints: The endpoints are discoverable on your
network but do not have any available protection or sensor agent program installed
Sensor disabled: The endpoints have the Trend Vision One sensor
installed but not enabled, either through the sensor or policy settings
Sensor update recommended: The endpoint has an older version of
the Endpoint Sensor component installed (including Activity Monitoring and Apex One
Endpoint Sensor) and should update to the latest Trend Vision One version
Security Deployment
Displays all endpoints that have a protection or sensor agent installed
Click any status to view a list of all related endpoints. Click any endpoint to view
detailed information about the endpoint and applied policies.
All managed endpoints: All endpoints on your network that have a
protection or sensor agent installed
Standard Endpoint Protection: All endpoints that have the
Standard Endpoint Protection agent installed (includes endpoints that also have the
Endpoint sensor detection and response feature enabled)
Server & Workload Protection: All endpoints that have the Server & Workload agent installed (includes endpoints
that also have the Endpoint sensor detection and response feature enabled)
Sensor only: All endpoints that only have the Sensor agent
installed
Connected Endpoint Protection: All endpoints that have protection
or sensor agent installed from a connected product.
Endpoint Management
Displays your Protection Managers, Endpoint Group Managers, and all endpoint groups
for
your business
Standard Endpoint Protection Management: Your provisioned
Standard Endpoint Protection Manager and Endpoint Group Managers.
Server & Workload Protection Management: Your provisioned Server & Workload Protection Managers and Endpoint Group Managers
Sensor only endpoints are not included in any endpoint groups. Use the Add
filters () button to locate the sensors you want to manage.
Endpoint actions
After selecting an endpoint from the displayed list, you can take the following actions.
The actions available may vary depending on your region and if you have chosen to
opt-in to certain pre-release features.
Tip
If you have a large number of connected endpoints, the select all
option appears after selecting all endpoints on the current page, or at least 100
endpoints.
Move Endpoint: Select the new endpoint group that the endpoints
belong to
Note
You can only move endpoints to other endpoint groups managed by the same Endpoint
Group
Manager.
Certain restrictions apply if you have updated Trend Vision One to the Foundation
services release without unlocking the Trend Vision One Endpoint Security functionality.
Specifically, you cannot move endpoints managed by on-premises servers or SaaS instances
that have not updated to Trend Vision One Endpoint Security yet.
You cannot move sensor only endpoints to an endpoint group. Use the Add
filters () button to locate the sensors you want to manage.
Detection Mode: Configure the endpoint monitoring behavior to
allow for more aggressive detection and response. For more information, see Configuring endpoint detection mode.
Important
Detection mode is a "Pre-release" sub-feature and is not part of the existing features
of an official commercial or general release. Please review the Pre-release Sub-Feature Disclaimer before using the sub-feature.
Response actions: Create response tasks on specific endpoints and
follow the task status using the Response Management app
If you isolate an endpoint using the Isolate Endpoint task, you must go to the Response
Management app and find the Isolate Endpoint task to restore the connection.
Configure sensor policy: Enable the
Endpoint Sensor by configuring the sensor settings on the endpoint and clicking
Deploy Policy.
Endpoint sensor detection and response: Sends activity data for
state-of-the-art threat detection and alerts (required for advanced XDR detections
and
Workbench alerts)
Detection mode: Only available if already enabled
Hypersensitive mode in Support Settings
Note
Hypersensitive mode is only available for Windows endpoints. Linux and macOS
endpoints automatically apply Normal mode.
Advanced risk telemetry: Analyzes endpoints for potential
security posture weaknesses and performs vulnerability assessments for zero-day threats
(Not supported on macOS or non-persistent virtual desktops; required for advanced
Risk
Insight analysis of endpoint and user behaviors)
Endpoint security policy: enable or disable policy override mode. Enable policy override to configure endpoint
settings for specific endpoints that are different from the endpoint security policy
assigned to the endpoint.
Important
Endpoint security policies are a "Pre-release" sub-feature and are not part of the
existing features of an official commercial or general release. Please review the
Pre-release Sub-Feature Disclaimer before using the sub-feature.
This feature is not available in all regions.
Component updates: Configure component update policy settings or
pause and resume scheduled component updates.