Trellix configuration with MFA agent
a year ago
Article Number
000073150
Issue

MFA is not prompting Passcode when Trellix is installed on Windows Machine.

Cause

Policy configuration is not applied on Trellix EPO.

Resolution

1- Make sure the setup and configuration guide is followed & ran the installation using the below steps:

  • Navigate to the directory that contains the RSA MFA Agent for Microsoft Windows x64.msi or RSA MFA
    Agent for Microsoft Windows x86.msi package file (or a renamed MFA Agent MSI file). Otherwise, you
    must provide the full pathname to the package file on the command line.
  • Type a case-sensitive command similar to the following, depending on the name of your MSI package:
    msiexec /i “RSA MFA Agent for Microsoft Windows x64.msi" INSTALLMDE=TRUE

 

2- Check Registry Keys in the below paths.

  • HKLM\\SOFTWARE\Trellix Drive Encryption\\IntegratedCredentialProviders\bbfc6cf6-6fb24912-b8e0-c47844d1003d
  • HKLM\\SOFTWARE\McAfee Endpoint Encryption\\IntegratedCredentialProviders\bbfc6cf6-6fb2-4912-b8e0-c47844d1003d 

They should include the following entries as the below screenshot.

3- Third-party credential providers must be enabled as shown below. These two policies must be configured, for agent to work with Trellix McAfee encryption software. 

4- Force update the policy on the affected machines

5- Reboot the Machine & test again the MFA should work successfully.