The new docs.trellix.com features a modernized UI and AI-powered conversational search. Content is currently available in English, with additional languages launching in mid-October 2026. We hope you enjoy the updated experience.

Exclude network addresses from a Trellix GTI lookup on a client system

Prev Next

You can exclude certain network addresses from a Trellix GTI lookup to reduce traffic and improve performance.

Before you begin

Make sure that the interface mode for the Trellix Endpoint Security (ENS) Client is set to Full access or log on to the Trellix Endpoint Security (ENS) Client as administrator.



Note

Trellix GTI automatically excludes certain IP addresses from a reputation check. For more information, see KB90837.

Task
  1. Open the Trellix Endpoint Security (ENS) Client.

  2. Click Firewall on the main Status page.

    Or, from the Action menu GUID-A3B12F55-7EE9-4519-8FCA-9ACA85C3661F-low.png, select Settings, then click Firewall on the Settings page.

  3. Click Show Advanced.

  4. Under Defined Networks, click Add.

  5. From the Address type drop-down list, select the address type.

  6. In the Address field, enter the address.

  7. From the Trusted drop-down list, select No.

  8. Click Apply.