Apply a reaction

Prev Next

Execute reactions from the Search Results table.

Caution

Reactions applied on endpoints cannot be undone. Continue with care.

  1. Select Menu Real-time Search, then run a search expression.

  2. When results appear in the Search Results table, select the rows you want to target.

    Important

    Remember that a single row might reference more than one managed endpoint, expressed in the count column. In that case, the reaction is applied to all endpoints referenced by the row.

  3. Click Actions Custom.

  4. Select a reaction from the drop-down list. If the reaction takes arguments, insert values for each argument.

  5. Click Yes to confirm.

When you execute a reaction with Trellix EDR, the action is logged in the Action History dashboard.