Compliance Number: FEI-018

The Trellix VX 12600 appliance is a powerful stand-alone analysis engine that integrates with Trellix sensors to provide a flexible, scalable, and geographically expansive security solution.
For information about integrating the VX 12600 Series appliance with NX Series sensors and CM Series appliances, see the Network Security Deployment Guide for your software release.
Note
For information about using the VX Series appliance as a sensor, see the User Guide for your software release.
The Front View



1. Power button | The main power switch applies or removes primary power from the power supply to the server but maintains standby power. Unplug the appliance before servicing. | |
2. Reset Button | Reboots the system. | |
3. Power LED | Steady on | Power on |
Blinking at 4 Hz | Checking BIOS/BMC integrity | |
Blinking at 4 Hz and "i" LED is blue | BIOS firmware updating | |
Two blinks at 4 Hz, one pause 2 Hz and "i" LED blue | BMC firmware updating | |
Blinking at 1 Hz and "i" LED red | Fault detected | |
4. LAN 1 LED | Indicates network activity on a LAN when flashing; defaults to the first two ports of CPU1 AIOM. |
5. Power Failure LED | Indicates a power supply module has failed. | |
6. HDD Activity LED | Indicates activity on the hard drive when flashing. | |
7. LAN 2 LED | Indicates network activity on a LAN when flashing; defaults to the first two ports of CPU1 AIOM. | |
8. Information LED | Alerts operator to several states: | |
Red, solid | An overheat condition has occurred | |
Red, blinking at 1 Hz | Fan failure, check for an inoperative fan | |
Red, blinking at 0.25 Hz | Power failure, check for a non-operational power supply | |
Red, solid, with Power LED blinking green | Fault detected | |
Blue and red, blinking at 10 Hz | Recovery mode | |
Blue, solid | UID has been activated locally to locate the server in a rack environment | |
Blue, blinking at 1 Hz | UID has been activated using the BMC to locate the server in a rack environment | |
Blue, blinking at 2 Hz | BMC is resetting | |
Blue, blinking at 4 Hz | BMC is setting factory defaults | |
Blue, blinking at 10 Hz with Power LED blinking green | BMC/BIOS firmware is updating |
9. Drive Device LED | Each drive carrier has two LED indicators: an activity indicator and a status indicator. | |
10. Drive Device LED | Each drive carrier has two LED indicators: an activity indicator and a status indicator. |
Drive Carrier LED Indicators
The chassis includes externally accessible SAS/SATA drives.
Each drive carrier has two LED indicators: an activity indicator and a status indicator. For RAID configurations using a controller, the meaning of the status indicator is described in the table below.
LED Type | Color | Blinking Pattern | Meaning of Blinking Pattern |
|---|---|---|---|
Activity LED | Blue | Solid On | Idle SAS/NVMe drive installed. |
Blinking | I/O activity. | ||
Off | Idle SATA drive installed. | ||
Status LED | Red | Solid On | Failure of drive with RSTe support. |
Blinking at 1 Hz | Rebuild drive with RSTe support. | ||
On for five seconds, then off | Power on for drive with RSTe support. |
LED Type | Color | Blinking Pattern | Meaning of Blinking Pattern |
|---|---|---|---|
support. | |||
Blinking at 4 Hz | Identify drive with RSTe support. | ||
Green | Solid Green LED Safe to remove NVMe device. | ||
Amber | Blinking at 1 Hz | Do not remove NVMe device. |
Chassis

Disk Drive Carrier: Each carrier can house a hot-swappable disk drive. A drive slot map displays the disk slot numbers on top of the appliance.
Handle Release: Press this tab to release the handle. Use the handle to pull the disk drive carrier from the chassis.
The Rear View

1) Power Supply 1 | 7) IPMI Port |
2) Power Supply 2 | 8) ether2 (RJ45) Submission/Cluster Communication 2 Port |
3) ether3 (SFP+) Submission/Cluster Communication 3 Port | 9) ether1 (RJ45) Management 1 Port |
4) ether4 (SFP+) Submission/Cluster Communication 4 Port | 10) Serial Console Port |
5) ether5 (SFP+) Unsupported | 11) USB 3.1 Port |
6) ether6 (SFP+) Unsupported | 12) VGA Connector |
Power
Power: Connect your power source to this port to provide power to the appliance. The appliance comes with one redundant power supply unit for use if the primary unit fails.
I/O Ports
Serial Console: Connect to this port to manage the appliance from your terminal.
Video: Connect a monitor to this port to view the appliance's command-line interface.
USB 3.1: These ports are USB 3.1 compliant.
Management Ports
ether1 (RJ45): Connect your LAN to this port to enable remote access to the CLI and Web UI. The RJ45 connector is a 100/ 100/10GBASE-T port.
IPMI: Connect for access to out-of-band management functions, including power control, console redirection, and appliance health status. The connector is a 10/100/1000BASE-T port.
Submission/ Cluster Ports
ether2 through ether4: Use these ports as an optional dedicated interface for communication with sensors or other MVX cluster components. The ether2 connector is a 100/1000/10GBASE-T port. The ether3–ether4 connectors are SFP+ connectors and they support 1G or 10Gbps data rate, use one of the following 10GbaseCu (5m direct attach cable), 1GbaseT (SFP), 1GbaseSX/10GbaseSR (dual rate SFP+), or 1GbaseLX/10Gbase LR (dual rate SFP+). See the chapter "Performing the Initial Configuration" in the MVX Deployment Guide for your software release for more information.
Deployment
This chapter describes how to deploy the VX 12600 appliance in your network.
VX Series Deployment
The VX Series appliance acts as a compute node that analyzes submissions received by NX, EX and FX Series sensors. In order for NX, EX and FX Series sensors and VX Series appliances to communicate, they must belong to the same MVX cluster and be managed by the same CM Series platform. The following figure shows how to connect your VX 12600 to your CM Series platform in a typical network topology.
Note
All VX Series appliances in a cluster must be within the same physical location. They can be remotely located from the managing CM Series platform and the sensors in its Network Security platform. For information about additional deployments and setting up MVX clusters, see the MVX Deployment Guide for your software release.

Prerequisites
Before connecting the VX 12600 appliance to your network, ensure that your CM/EX/FX Series-facing switch provides 100/1000/10GBASE-T Ethernet output.
Before connecting the VX 12600 appliance to your network, ensure that your CM/EX/FX Series-facing switch provides 10/100/1000BASE-T Ethernet output.
Cabling
To connect your VX 12600 appliance to your network:
ether1: Connect one end of an Ethernet cable to the VX 12600 appliance’s ether1 port, and connect the other end to your management network switch. This is the default management, submission, and cluster communication interface.
(For optional dedicated submission interface) ether2: Connect one end of an Ethernet cable to the VX 12600 appliance’s ether2 port, and connect the other end to your cluster-facing switch.
(For optional dedicated cluster interface) ether3 through ether4: Connect one end of an Ethernet cable to the VX 12600 appliance’s ether3 through ether4 ports, and connect the other end to your cluster-facing switch.
For information about changing the default submission and cluster interfaces, see the chapter “ Performing the Initial Configuration” in the MVX Deployment Guide for your software release.
Installation
This chapter provides information about the site requirements of your installation location.
Before You Begin
Follow the steps in this section before you install the appliance.
Before Opening the Box
Review the Packing Slip contained in the plastic slip attached to the top of the box. Ensure the shipment contains the correct appliance.
Ensure the serial number listed on the Packing Slip matches the one specified on the sticker located on one side of the box.
If there appears to be damage to the box, file a damage claim with the carrier who delivered it.
Unpacking the Appliance
Carefully remove the appliance from the box in an area away from heat, electrical noise, and electromagnetic fields.
Ensure your box contains:
The correct appliance model
An accessory kit
Online Documents Portal Referral
A rail kit
Installation Site Guidelines
Follow these guidelines when you select an installation site:
Leave enough clearance in front of the rack for its door to open completely without obstruction.
Avoid environments that produce heat, electrical noise, and electromagnetic fields.
Only install the appliance in a restricted access location such as a service closet or dedicated equipment room.
Make sure the location is properly ventilated.
Make sure there is sufficient space for air flow.
Rack Precautions
Trellix recommends that you mount the appliance in a standard 19-inch rack. The vertical hole spacing on the rack rails must meet standard ANSI/EIA-310-C requirements.
Consider the following before installing your appliance in the rack:
Ensure the leveling jacks on the bottom of the rack are fully extended to the floor with the full weight of the rack resting on them.
In a single-rack installation, stabilizers should be attached to the rack.
In a multiple-rack installation, the racks should be coupled together to increase their stability.
Always make sure the rack is stable before extending a component from the rack.
Only extend one component from the rack at a time—extending two or more simultaneously may cause the rack to become unstable.
Ensure your rack meets the safety requirements of UL 60950-1.
Warning
STABILITY HAZARD: The rack may tip over causing serious personal injury. To prevent injury:
Before extending the rack to the installation position, read the installation instructions.
Do not put any load on the slide-rail mounted equipment when the rails are extended in the installation position.
Do not leave the slide-rail mounted equipment with the rails extended in the installation position.
Server Precautions
Trellix recommends reviewing the electrical and general safety precautions that came with each component you intend to install in the rack.
Review the following before installing the appliance in the rack:
Determine the placement of each component in the rack.
Ensure there is a minimum clearance of six inches behind the chassis to allow for easy cable management.
Install the heaviest component at the bottom of the rack first, then move up.
Allow hot-swappable power supply units, disk drives, and transceivers to cool before handling them.
Use a regulating uninterruptible power supply to protect your components from voltage spikes, power surges, and failure during a power outage.
Keep all of the rack's doors and panels closed when you are not servicing the components.
Rack-Mounting Precautions
Consider the following safety precautions when you install the appliance in the rack:
Make sure the appliance is grounded at all times to prevent damage from electrostatic discharge.
Use an electrostatic wrist guard when handling the appliance.
At least two technicians should be involved to install the appliance safely.
Trellix recommends only individuals with rack-mounting experience should install the appliance.
Install the appliance in an environment compatible with the manufacturer's maximum recommended ambient temperature (TMRA) for each component in your rack.
Power Requirements
The VX 12600 uses a 1000W/1200 W power supply unit with an input rating of 100-127/200 - 240VAC (±10%), 15-12A/8.5-7A at 50-60 Hz.
Ensure your power source has sufficient electrical overload protection. In North America, connect the rack to a power source with over-current protection that complies with UL 489. In Europe, the over-current protection must comply with IEC standards.
Ventilation Requirements
Ventilation and optimal location are essential to the proper operation of the VX Series appliance. Give the unit at least six inches of space around ventilation openings so that adequate ventilation is possible.
The VX Series appliance draws air through the front and expels it out the back. Note the direction of the air intake and exhaust of the other components in the rack to ensure safe ventilation of all components involved.
Cabling Requirements
The VX Series appliance ships with the following cables:
(2) 6 ft AC power cord, SVT, 60oC, 3x18AWG (0.824mm2)
(1) 6 ft null modem DB9 female serial cable
You must provide any additional cables required to connect your system to the network and other devices. Do not exceed the maximum run length of the additional cables you provide.
Rack Installation
This section explains how to install your appliance in a standard 19-inch wide rack with the equipment provided. Because various rack units are available, the assembly procedure may differ slightly from the following instructions. Refer to the installation instructions that came with your rack.
Installing the Inner Rails on the Appliance
Starting with either rail (each works for both sides of the appliance), pull the inner rail from the outer rail until it is fully extended.
Push the arrow-shaped rail-release lever on the inner rail in the direction of the arrow and slide the inner rail out until it is detached from the outer rail.
Align the notches of the inner rail with the tabs on the side of the appliance.
While firmly pressing the inner rail against the appliance, slide it in the direction of the tabs until you hear a click.
Repeat steps 1—4 with the other inner rail on the other side of the appliance.
Installing the Outer Rails on the Rack
Insert the front end of an outer rail (“Front Bracket” is engraved on the front end) into the front rack column at the desired height. A metal tab will slide and lock onto the column automatically.
Extend the rail until it reaches the rear rack column.
Insert the back end into the rack column at the same height chosen in step 1.
Repeat steps 1—3 with the other outer rail on the other side of the rack.
Mounting the Appliance on the Rack
Align the rear of the inner rails installed on the appliance with the front channels of the outer rails installed on the rack.
Fully slide the appliance into the rack. The inner and outer rails will lock together automatically.
(Optional) Further secure the appliance to the rack by using the captive screws installed on the ears of the appliance.
Attaching Cables to the Appliance
Connect the VX Series appliance to one or more network devices using the cables appropriate to the deployment of your choice.
Connect the power cable or cables to the power port or ports on the back of the appliance.
Turning On the Appliance
Power on the appliance by pressing the power button on the ear to the left of the bezel.
Replacements
This chapter provides information about returning or replacing defective parts of your VX appliance.
Return Process
If you believe you have a defective part or system, you must first contact Trellix Technical Support, who will validate the claim. If the part or system is defective, Technical Support will initiate a Return Materials Authorization (RMA) and guide you through the process. For more information, visit https://www.trellix.com/en-us/support.html.
Removing and Replacing a Disk Drive
Perform the following steps to remove and replace a disk drive:
Remove the bezel at the front of the appliance by sliding the release tab to the right and pulling the bezel away from the chassis.
Locate the disk drive carrier that contains the failed disk drive. The carrier should have a blinking amber LED.
Unlock the disk drive handle by sliding the blue tab to the left.
Push the maroon button on the right to release the latch handle.
Pull the handle to slide the disk drive from its slot.
Insert the new disk drive carrier into the available slot and push in until it clicks.
Removing and Replacing a Power Supply Unit
Perform the following steps to remove and replace a power supply unit (PSU):
At the rear of the appliance, remove the power cable from the failed PSU.
While gripping the handle to the left of the power port and pressing the release lever to the right of it, pull out the failed PSU.
Insert the replacement PSU in the open slot and slide it in until it clicks into place.
Attach the power cable to the new power supply.
Removing and Replacing a Cooling Fan
Perform the following steps to remove and replace a failed fan:
Turn off the appliance.
Using a Phillips screwdriver, remove the four screws securing the middle section of the appliance’s top cover.
Remove the middle section of the top cover.
Remove the fan from the appliance by squeezing the plastic release tab and pulling.
Insert the new fan into the empty fan bracket, ensuring it is oriented the same way as the others. You will hear a click when it is secured.
Replace the top cover and secure it with screws.
Appendices
Appendix 1: System Specifications
The table below provides the technical specifications for the Trellix VX 12600
Component | VX 12600 Specifications |
|---|---|
Form Factor | 2U Rack-Mount |
Weight of Appliance | 44 lbs |
Weight of Packaged Appliance | 70 lbs |
Dimensions (W x D x H) | 19in x 26 x 3.5 in (482.6 x 660.4 x 89 mm) |
Enclosure | 2 RU, fits 19-inch Rack |
Management Interfaces | (1) 100/1000/10GBASE-T Port |
Submission Interfaces | (4) 1G/10G (SFP+) Ports |
Memory | 512 GB (16 x 32GB) |
Drive Capacity | (4) 4TB HDD, RAID 10, 3.5", FRU4x 4TB 3.5" SAS3 HDD, RAID10, hot swappable, FRU |
AC Power Supply | Redundant (1+1), FRU, 1000W/1200W with Input 100-127/200-240Vac, 15-12A/8.5-7A, 50-60 Hz IEC60320-C14 inlet |
Maximum Power Consumption | 948 W |
Operating Temperature | 10° to 35° C (50°F - 95°F) |
Component | VX 12600 Specifications |
|---|---|
Operating Humidity | 8% - 90% (non-condensing) |
Operating Altitude | 1,524 m (5,000 ft) |
Non-Operating Temperature | -40°C - 70°C (-40°F - 158°F) |
Non-Operating Humidity | 5% - 95% (non-condensing) |
Non-Operating Altitude | 37,000 feet |
Maximum Thermal Dissipation | 3232 BTU/hr |
Appendix 2: Product Compliance Information
The following table lists the electromagnetic compatibility (EMC), low voltage directive (LVD), safety, and other regulatory standards met by the VX 12600 appliance.
The Compliance number for VX 12600 is FEI-018.
EMC | LVD/Safety | Environmental |
|---|---|---|
FCC Part 15 Class-A, CE (Class-A), CNS 13438, CISPR 32, VCCI-CISPR32, EN 55035, EN 55032, EN 61000, ICES-003, KN 32, KN 35 | CAN/CSA 22.2 No. 62368 | RoHS |
*All current amendments