Views:

This topic discusses the extent of integration between Apex Central and supported Deep Discovery Inspector versions.

Integration Feature/Function

5.0

Registration

From the Deep Discovery Inspector management console (through the MCP Agent)

Single sign-on

Supported

License management

None

Command tracking

Supported

Components deployed from Apex Central

All components

Policies managed and deployed from Apex Central

Information shown in User/Endpoint Directory

None

Ad-hoc query

Select any of the following data views while performing an ad-hoc query to view product information and logs:

  • Product Status Information

  • Deep Discovery Information

Dashboard widgets specific to product

Dashboard widgets shared with other managed products

None

Static report templates

Trend Micro Deep Discovery Inspector reports

Custom report templates (predefined)

  • TM-Deep Discovery Inspector Host Severity Summary

  • TM-Deep Discovery Inspector Suspicious Threat Detection Summary

Event notifications

Advanced Threat Activity

  • C&C callback alert

  • C&C callback outbreak alert

  • High risk Virtual Analyzer detections

  • High risk host detections

  • Known targeted attack behavior detections

  • Potential document exploit detections

  • Rootkit or hacking tool detections

  • SHA-1 Deny List detections

  • Worm or file infector propagation detections

  • Correlated incident detections

Data Loss Prevention (DLP) incident management

Not applicable

Suspicious object and IOC file management

  • Sends suspicious objects to Apex Central

  • Synchronizes suspicious objects with Apex Central