The new docs.trellix.com offers a modernized UI and AI-powered features like conversational searches. Content is currently available only in English. Other languages will be available in mid-October 2026. We hope you enjoy the new experience.

Configure logon security

Prev Next

Control access to your system by specifying settings for logon attempts, time periods, and inactivity.

  1. From the Trellix ESM dashboard, click menu.png and select System Properties.

  2. Click Login Security.

  3. On the Standard tab, set the options:

    • Specify how many consecutive unsuccessful logons are allowed in a single session. A zero value (0) allows unlimited logon attempts.

      When the number of allowed failed attempts is reached in a specific period, the system locks the targeted account. The system administrator must unlock the account.

      Important

      You cannot lock the master account.

    • Specify the time period to allow for successive failed logon attempts, between zero (0) and 1440 minutes.

      When the number of allowed failed attempts is reached in a specific period, the system locks the targeted account. The account remains locked for the time you set or until the system administrator unlocks the account.

    • Specify the period to lock an account if it auto-locks due to failed logons. Maximum value is 1440 minutes; 0 means you cannot auto-unlock. After that time elapses, the system unlocks the account automatically. This setting does not affect accounts that have been locked manually. Administrators can unlock the account at any time.

      Note

      The system always auto-unlocks the master user logon. If you set this period to zero (0), the system temporarily locks the master user logon for five (5) minutes.

    • Specify the period that must pass without activity before the logon screen appears. A value of zero (0) means there is no limit.

    • Specify how many days of inactivity can pass before the system locks the account, between zero (0) and 365 days. Entering zero disables the feature. The lockout lasts until an administrator unlocks the account.

    • Set the number of active sessions a single user can have open at one time. Maximum is 10; zero (0) disables the restriction.

    • Select whether to populate the user name field with the last successful user logon.

    • Select if you want to set up a list of allowed or blocked IP addresses that can access your system.

  4. Click OK or Apply.