Configuring host sets

Prev Next

Many times a day, agents on your enterprise's host endpoints provide information about their hosts and receive jobs from the Endpoint Security (HX) appliance.

You may not need to run jobs on all hosts, or you may not want to specify individual hosts each time that you need to run a job on more than one host. Many Endpoint Security (HX) functions run on or exclude persistent groups of hosts (host sets).

There are two types of host sets:

  • Static sets: These are stable groups of hosts that you create and edit directly. Static sets change as you add and remove hosts. For more information, read Understanding static sets.

  • Standard sets: These are dynamic groups of hosts defined by filtering criteria that you specify. Standard sets change as eligible hosts are provisioned or deleted and as you change their filtering criteria. For more information, read Understanding standard sets

Use the Host Sets page to do the following:

  • Create and maintain host sets

  • View and sort lists of sets your enterprise has already created

  • View the hosts in a set

  • View details about hosts in a set

  • Apply policies to host sets

  • Download lists of hosts as *.csv files

  • Search host lists for a particular host or hosts.

Note

For information about agent policies, see "Agent policy service" in the "Agent configuration" section of the Endpoint Security Agent (HX) Administration Guide.

Read the following sections to learn how to work with host sets:

Note

The Endpoint Security (HX) Web UI inactivity timeout period is ignored if the Host Sets page is left open in the browser. (HXEP-7801)

When Trellix Endpoint Security (HX) Agents acquire changes from the Endpoint Security (HX), they acquire host set changes before acquiring policy and configuration file changes for those host sets. Host set changes are applied to an agent when a system information (sysinfo) poll occurs. You can configure the rate at which the system poll happens by decreasing the sysinfo poll time, but at the risk of degrading the performance of your agent on your host machines. For more information, see "Configuring Polling" and "Performance Considerations" in the Endpoint Security Agent (HX) Administration Guide.