You can define network addresses, subnets, or ranges to use in rules and groups, or define networks as trusted.
Select Menu → Policy → Policy Catalog, then select Endpoint Security Firewall from the Products list in the left pane.
From the Category list in the right pane, select Options.
Click the name of an editable policy.
Click Show Advanced.
Under Defined Networks, click Add Defined Network.
Select the type from Address type, then enter a trusted IP address, subnet, or range in the Address field.
Select either Trusted or Not trusted from the drop-down menu.
Trusted — Firewall allows all traffic to and from trusted networks.
Not trusted — Defines networks for use in rules and groups. You can use networks defined as not trusted for the local or remote network criteria in a rule or group.
Defining a network as not trusted adds those networks as exceptions to Trellix GTI rules in Firewall and excludes those networks from a Trellix GTI lookup.
Click Save.