The new docs.trellix.com features a modernized UI and AI-powered conversational search. Content is currently available in English, with additional languages launching in early November 2026. We hope you enjoy the updated experience.

Vulnerability Manager installation

Prev Next

Vulnerability Manager and Manager should not be installed on the same system. Foundstone Configuration Management (FCM) Agent service is installed by default during the Manager installation; no other component need to be installed on the Manager system.

Vulnerability Manager Enterprise has the following major components:

  • Vulnerability Manager Enterprise Manager — Represents the browser-based user interface of the system
  • Scan engine — Used to scan hosts for vulnerability assessment
  • Vulnerability Manager database server — Is the data repository for Vulnerability Manager Enterprise containing information about organization settings, scan configurations, workgroups, user account information, and scan results
  • Vulnerability Manager Certificate Manager (FCM) Server — Hosts the Vulnerability Manager Certificate Management tool used for custom certificates

In an actual Vulnerability Manager deployment, you can deploy Vulnerability Manager Enterprise Manager, Vulnerability Manager console, one or more FoundScan engines and Vulnerability Manager database.

Note

For more information on system requirements for different Vulnerability Manager Enterprise deployment scenarios, and setup process for different Vulnerability Manager versions, see McAfee Vulnerability Manager Product Guide.

Configuring the Vulnerability Manager servers to use a DNS server

The server(s) used for Vulnerability Manager deployment should be configured to use Domain Name System (DNS) Server. Vulnerability Manager server must be defined as a record within the DNS zone.

Also make sure to configure the client machines used for on-demand scans, to use the DNS Server.

Without the above configurations, the Vulnerability Manager on-demand scans from Threat Explorer will result in error, due to incorrect name resolution.

Note

The product names "Foundstone", and "Vulnerability Manager" refer to the same product.