Athena EPP (Endpoint Protection Platform)

Athena EPP (formerly Sangfor Endpoint Secure) integrates NGAV, EDR, and endpoint management into a single, powerful solution for comprehensive endpoint protection.
{{ $t('productDocDetail.guideClickSwitch') }}
{{ $t('productDocDetail.know') }}
{{ $t('productDocDetail.dontRemind') }}
6.0.4R4
{{sendMatomoQuery("Athena EPP (Endpoint Protection Platform)","Integrated Devices")}}

Integrated Devices

{{ $t('productDocDetail.updateTime') }}: 2026-04-09

This feature enables Athena EPP to be integrated with Athena IAG, Athena NGFW, Athena NDR, Platform-X, and MDR, providing customers with a closed-loop solution from threat discovery to threat fix. To manage integrated devices, go to System > Integrated Devices > Devices, as shown in the following figure.

 

To view the integration configurations of different products, click How to Connect? in the upper right corner of the Devices page.

Features supported by integrated devices

The following table describes the features supported by devices integrated with Athena EPP. (Y indicates yes, and N indicates no.)

Device

Agent Deployment

Endpoint Isolation

Log Reporting

Access Control

Virus Scan

Threat Fix

IOC Forensics

Risk Assessment

Athena NGFW

N

Y

N

Y

Y

Y

Y

N

Athena XDR

N

Y

Y

Y

Y

Y

Y

Y

Athena MDR

N

Y

Y

Y

Y

Y

N

Y

Athena NDR

N

Y

Y

Y

Y

Y

Y

Y

Athena SASE

Y

N

N

N

N

N

N

N

Athena SWG

Y

N

N

N

Y

Y

N

N

aSec

Y

N

Y

N

Y

Y

N

Y

Platform-X

N

N

Y

N

N

Y

N

N

Table 4:Features Supported by Integrated Devices

Device integration configuration

To integrate Athena EPP with any other products, go to System > System > General, enable Access Control for Device Integration, specify the maximum duration for a device to register for integration, and select TLS1.0 and TLS1.1 under SSL/TLS Protocol.

4.7.3.1Traffic Forwarding

Athena EPP uses the traffic forwarding feature to collect the original traffic from a host's NIC and forward it to the STA device for threat analysis. To enable this feature, you must integrate Endpoint Secure with Athena NDR.

To configure a forwarding policy, click Add Policy and configure the following parameters.  

Specify the IP address of the STA device for Dst Address, select VXLAN or GRE for Protocol, set Max Forwarding Rate to a value less than 1 Gbit/s, and select Traffic Filter, where None indicates that the traffic is collected without filtering and 5-Tuple indicates that the 5-tuple attributes are collected.