To create a target group, perform the following steps:
Login to the AWS console, and navigate to Services → Compute → EC2.
In the left panel, under Load Balancing, click Target Groups.
The Target Groups page is displayed.
In the Target Groups page, select Create target group.
Target Groups.jpg)
The Specify group details page is displayed.
Go to Basic configuration, select Instances from Choose a target type.
Provide the name of the Target group in Target group name field.
Select GENEVE from the Protocol drop-down.
Select the VPC with the instances that you want to include in the target group from the VPC drop-down.
Specify group details.jpg)
Go to Health checks, and select TCP from the Health check protocol drop-down.
Go to Advanced health check settings, choose Override from Health check port, and provide the value as 9001. Based on your requirements, you can configure Healthy threshold, Unhealthy threshold, and other parameters. Later, click Next.
Note
Trellix recommends using the Healthy threshold value between 2-10 and the Unhealthy threshold value between 2-10 for any Sensor. For auto-scaling Sensors, a Healthy threshold value can be between 300-600.
Health checks.jpg)
The Register targets page is displayed.
Select the required instances from the Available instances list. Click Include as pending below. The required Sensors will be displayed in the Target window.
Note
You can specify the instances, or leave the group empty if you prefer to add targets later.
Available instances.jpg)
You can review the list of Sensors in Review targets. After reviewing the list, click Create target group to complete the process.
Review targets.jpg)
Note
For configuring the routing tables, you can refer to VPC Routing Enhancements and GWLB Deployment Patterns in AWS documentation.
Before configuring the routing table, check if the Sensor is in good health. Otherwise, the Sensor will fail to direct traffic.