Enabling or disabling Trellix riskware detection Published on Aug 24, 2026
Print
Copy page Copy as Markdown for LLMs View as Markdown View the page as plain text
Open in ChatGPT Ask ChatGPT about this page Open in Claude Ask Claude about this page Prev Next You can enable riskware detection for Trellix Riskware rules separately from the custom riskware rules that you configure on the Email Security - Server appliance.
On appliances that support riskware detection, Trellix Riskware rules are enabled to alert by default.
You can enable and disable Trellix Riskware rules by using the Email Security - Server appliance Web UI or CLI:
After you have configured the appliance to detect riskware rules, you can view the analysis results on the eAlerts > Riskware page in the Web UI.
Prerequisites Administrator or Operator access to the Email Security - Server appliance.
An established connection to the Internet.
A connection to the DTI Cloud.
Was this article helpful?
Yes No
Related articles
Email Security - Server > Email Security - Server User Guide Release 11.x > Configuration > System configuration > Riskware > Enabling or disabling Trellix riskware detection
Email Security - Server > Email Security - Server User Guide Release 11.x > Configuration > System configuration > Riskware
Email Security - Server > Email Security - Server System Administration Guide Release 11.x > Overview > The Email Security - Server appliance dashboard > Custom dashboards
Email Security - Server > Email Security - Server User Guide Release 11.x > Configuration > Email MTA configuration > Managing bounced emails > Enabling or disabling soft bounce