Go to the table of contents Go to the previous page Go to the next page
Deployment Planning for TRITON Solutions > TRITON Enterprise deployment overview
TRITON Enterprise deployment overview
Deployment and Installation Center | Web, Data, and Email Protection | v8.3.x
TRITON Enterprise includes TRITON AP-WEB, TRITON AP-DATA, and TRITON AP-EMAIL.
*
*
*
*
High-level deployment diagram
The diagram shows an appliance-based deployment:
Remote office and off-site users
You can use the Web Hybrid Module to provide web security for small remote offices. This is accomplished by designating a remote office as a hybrid filtered location. See Initial Configuration for more information.
Either the hybrid service or Forcepoint remote filtering software can provide web filtering for off-site users (e.g., telecommuters or traveling personnel).
*
*
Hybrid services
If your subscription includes the Web Hybrid module and Email Hybrid module:
*
*
TRITON AP-WEB and AP-EMAIL appliances
Forcepoint appliances may be used to deploy core web and email protection functionality.
*
*
*
TRITON AP-DATA appliance
The TRITON AP-DATA appliance can be used in protector or mobile agent mode. The protector monitors and reports data loss and leaks of sensitive information. Using PreciseID technology, the protector can be configured to accurately monitor sensitive information-in-transit on any port.
The mobile agent monitors and blocks data downloaded to mobile devices that perform synchronization operations with the Exchange server. With the mobile agent, you can monitor and block data transmitted in email messages, calendar events, and tasks.
The protector and mobile agent are available as a Linux-based soft or physical V5000 appliance.
Components that may not be installed on Forcepoint appliances
TRITON management server
The TRITON management server is the Windows server on which the TRITON Manager (console) is installed. The TRITON console is the management and reporting interface for Forcepoint web, data, and email protection solutions.
The Data Security Management Server and, typically, Crawler also reside on the TRITON management server machine to provide key TRITON AP-DATA functions, including web and email DLP (data loss prevention) features.
Linking Service also usually resides on the management server.
Web and Email Log Server
A separate Windows machine hosts two instances of Log Server: one for TRITON AP-WEB and one for TRITON AP-DATA. These services receive information about web and email traffic and process it into their respective Log Database.
Optional web protection components
Sync Service and transparent identification agents (DC Agent, Logon Agent, eDirectory Agent, and RADIUS Agent) may not reside on Forcepoint appliances.
Also, you can install additional instances of several web protection components on Windows or Linux servers, if needed.
TRITON AP-DATA agents
The Crawler, analytics engine, and TRITON AP-ENDPOINT DLP are installed on appropriate machines.
See Installing TRITON AP-DATA for details.
TRITON AP-ENDPOINT DLP (User Machine)
TRITON AP-ENDPOINT DLP can be installed on supported Windows, Mac, and Linux machines.
Third-party components
Microsoft SQL Server
Microsoft SQL Server, running on a Windows server in your network, is used to store Forcepoint TRITON logging, reporting, and in some cased, configuration data. Quarantined email messages are also stored here.
When TRITON components are installed, SQL Server must be installed and running, typically on its own machine as shown in the diagram above. SQL Server Express (installed using the TRITON Unified Installer) may be used in small deployments or evaluation environments.
Mail server
Your internal mail server.

Go to the table of contents Go to the previous page Go to the next page
Deployment Planning for TRITON Solutions > TRITON Enterprise deployment overview
Copyright 2016 Forcepoint LLC. All rights reserved.