File Security Storage provides easy deployment using AWS CloudFormation to integrate
automated
scanning of files as you upload them into your storage and effortlessly detect all
types of
malware including viruses, trojans, spyware, and more.
You deploy File Security Storage using the AWS CloudFormation template. After deploying
the
File Security Storage scanner stack to the selected region and turning on EventBridge
for
selected buckets in that region, the scanner stack scans all incoming files. The Scanner
stack is
located in each region, with one server in each region and bucket. When event notification
turned
on, the scanner Lambda scans any incoming file in the scanner stack. In the CloudFormation
template, you can set parameters to send malicious files to a quarantine bucket and
clean files
to a promote bucket.
NoteWhen you add a bucket to your CloudFormation template, it does not immediately appear
in the File Security Inventory. The Inventory is updated when Trend Vision One carries
out its scheduled asset sync. This occurs every hour for licensed Trend Vision One
users and once per day for non-licensed users. To have the bucket added in real-time,
you can enable Real-Time Posture Monitoring.
|
You can either enable File Security Storage when you add a new account to Trend Vision
One, or
upgrade an existing Trend Vision One account.
ImportantCurrently File Security Storage does not support
Organization accounts.
|
It is a simple process and takes about 10 minutes to add your account.
- You enable File Security Storage, set its parameters in your AWS CloudFormation template, and deploy the template.
- In the File Security console, for each region, you select your buckets that you want the scanner to access.
- Enable EventBridge for each bucket to return the scan results to the File Security console.