The new docs.trellix.com offers a modernized UI and AI-powered features like conversational searches. Content is currently available only in English. Other languages will be available in mid-October 2026. We hope you enjoy the new experience.

Add parameters to a correlation rule or component

Prev Next

Use parameters to control how correlation rules behave when they execute. Parameters are optional.

  1. On the Correlation Rule or Correlation Component pages, click Parameters.

  2. Click Add, then enter a name for the parameter.

  3. Select the type of parameter you want this to be, then select or deselect the values.

    Note

    List and Range values can't be used at the same time. A list value cannot include a range (1–6, 8, 10, 13). The correct way to write it is 1, 2, 3, 4, 5, 6, 8, 10, 13.

  4. To select the default value for the parameter, click the Default Value Editor icon GUID-911771E2-BC63-4466-BDB0-4D486C98E7FA-low.png.

  5. If you do not want the parameter to be externally visible, deselect Externally Visible. The parameter is local to the scope of the rule.

  6. Type a description of this parameter, which appears in the Description text box on the Rule Parameter page when the parameter is highlighted.

  7. Click OK, then click Close.