The new docs.trellix.com offers a modernized UI and AI-powered features like conversational searches. Content is currently available only in English. Other languages will be available in mid-October 2026. We hope you enjoy the new experience.

Create connection isolation groups on a client system

Prev Next

A connection isolation firewall rule group instructs Firewall to process only traffic that matches the defined connection type and group criteria.

Before you begin

Make sure that the interface mode for the Trellix Endpoint Security (ENS) Client is set to Full access or log on to the Trellix Endpoint Security (ENS) Client as administrator.



Task
  1. Open the Trellix Endpoint Security (ENS) Client.

  2. Click Firewall on the main Status page.

    Or, from the Action menu GUID-A3B12F55-7EE9-4519-8FCA-9ACA85C3661F-low.png, select Settings, then click Firewall on the Settings page.

  3. Under RULES, click Add Group.

  4. Under Description, specify options for the group.

  5. Under Location, select Enable location awareness and Enable connection isolation. Then, select the location criteria for matching.

  6. Under Networks, for Connection types, select the type of connection (Wired, Wireless, or Virtual) to apply to the rules in this group.

    Note

    Settings for Transport and Executables aren't available for connection isolation groups.

  7. Click OK.

  8. Create new rules within this group, or move existing rules into it from the firewall rule list.

  9. Click Apply.