The new docs.trellix.com offers a modernized UI and AI-powered features like conversational searches. Content is currently available only in English. Other languages will be available in mid-October 2026. We hope you enjoy the new experience.

Configure Forensics Bridge module agent policy

Prev Next

To configure the Forensics Bridge module from the Agent policy page, complete the following steps.

  1. Log on to the HX UI with your administrator credentials.

  2. From the Admin menu, select Policies to access the Policies page.

  3. On the Policies page, you can edit the default agent policy or create a custom policy to configure Forensics Bridge module.

    Note

    Make sure that you have enabled each alert type that you want to send to ePO and Trellix EDR.

  4. Click Save.

After the agent policy is customized, you can assign it to an endpoint (host set). For details about configuring endpoints (host sets) and assigning policies, see Configuring host sets and Assigning a policy to a host set.

Note

Based on the Poll for Agent config settings on the Edit Policies page, Endpoint Security Agent (HX) will poll and pull policies from Endpoint Security (HX) Server. The default value set to poll and pull policies is 15 mins.