The new docs.trellix.com features a modernized UI and AI-powered conversational search. Content is currently available in English, with additional languages launching in mid-October 2026. We hope you enjoy the updated experience.

Define networks to use in rules and groups

Prev Next

You can define network addresses, subnets, or ranges to use in rules and groups, or define networks as trusted.

Task
  1. Select MenuPolicyPolicy Catalog, then select Endpoint Security Firewall from the Products list in the left pane.

  2. From the Category list in the right pane, select Options.

  3. Click the name of an editable policy.

  4. Click Show Advanced.

  5. Under Defined Networks, click Add Defined Network.

  6. Select the type from Address type, then enter a trusted IP address, subnet, or range in the Address field.

  7. Select either Trusted or Not trusted from the drop-down menu.

    • Trusted — Firewall allows all traffic to and from trusted networks.

    • Not trusted — Defines networks for use in rules and groups. You can use networks defined as not trusted for the local or remote network criteria in a rule or group.

      Defining a network as not trusted adds those networks as exceptions to Trellix GTI rules in Firewall and excludes those networks from a Trellix GTI lookup.

  8. Click Save.