After adding the Sensor and establishing trust, if the Sensor is not displayed in the resource tree, perform the following steps for troubleshooting:
Capture traffic using Wireshark in the Manager.
Verify if the Manager is receiving UDP response packets from the Sensor.
Configure the firewall to allow UDP traffic if response packets are not coming.
Verify if the Manager system has multiple NIC cards. If yes:
For Windows-based Manager, open
<Manager_Install_Dir>\bin\tms.bat.Note
The default installation path for Windows-based Manager is
%programfiles%\Trellix\IPS Manager\App.For Linux-based Manager (MLOS), open
open tms.shby executing the commandedit tms.sh. For Linux-based Manager (Trellix OS) , contact Trellix support.
Later, modify the following line to assign the relevant IP address that is also used in the Sensor configuration:
Set JAVA_OPTS=%JAVA_OPTS% -Dlumos.fixedManagerSNMPIPaddress=""restart ManagerYou can enable detailed debugging messages by modifying the following file:
For Windows-based Manager,
<Manager_Install_Dir>\config\log4j2.xmlfileFor Linux-based Manager,
log4j2.xmlfile. To open this file, executeedit log4j2.xml
Find out and modify the following lines in the
log4j2.xmlfile:<Logger name="iv.core.DiscoveryService" additivity="false" level="debug"> <appender-ref ref="DEVICE_CONFIG_LOG"/> </Logger>
<Logger name="iv.core.SensorConfiguration" additivity="false" level="debug"> <appender-ref ref="DEVICE_CONFIG_LOG"/> </Logger>
The modified logs will be available in
<Manager_Install_Dir>\logs\device_config.logfile.