Views:
File Security Storage provides easy deployment using AWS CloudFormation to integrate automated scanning of files as you upload them into your storage and effortlessly detect all types of malware including viruses, trojans, spyware, and more.
You deploy File Security Storage using the AWS CloudFormation template. After deploying the File Security Storage scanner stack to the selected region and turning on EventBridge for selected buckets in that region, the scanner stack scans all incoming files. The Scanner stack is located in each region, with one server in each region and bucket. When event notification turned on, the scanner Lambda scans any incoming file in the scanner stack. In the CloudFormation template, you can set parameters to send malicious files to a quarantine bucket and clean files to a promote bucket.
Note
Note
When you add a bucket to your CloudFormation template, it does not immediately appear in the File Security Inventory. The Inventory is updated when Trend Vision One carries out its scheduled asset sync. This occurs every hour for licensed Trend Vision One users and once per day for non-licensed users. To have the bucket added in real-time, you can enable Real-Time Posture Monitoring.
You can either enable File Security Storage when you add a new account to Trend Vision One, or upgrade an existing Trend Vision One account.
Important
Important
Currently File Security Storage does not support Organization accounts.
It is a simple process and takes about 10 minutes to add your account.
  1. You enable File Security Storage, set its parameters in your AWS CloudFormation template, and deploy the template.
  2. In the File Security console, for each region, you select your buckets that you want the scanner to access.
  3. Enable EventBridge for each bucket to return the scan results to the File Security console.