Use this command to set the maximum amount of time the appliance will wait for a notification from a Web proxy appliance before sending a detection alert.
The block by proxy feature allows you to receive both Trellix detection results and the actions taken by Web proxy appliances on the network. This delay is required so that the system has time to receive Web proxy alerts and correlate these alerts to the Trellix detection alerts.
By default, the delay is 10 seconds.
Syntax
fenotify preferences bbp max-time-wait <seconds>
Parameters
seconds
The maximum number of seconds for the system to wait for notification from the Web proxy device. Range: 1–99Default: 10
Example
The following example configured the blocked-by-proxy detection feature to wait no more than 15 seconds for a notification from a Web proxy appliance before sending a detection alert:
hostname (config) # fenotify preferences bbp max-time-wait 15
User role
Admin and operator
Command mode
Config
Supported appliances
This command is supported on the following appliances running the specified releases or later:
Central Management System: Release 7.9.2
Endpoint Security (HX): Release 3.5.0
Network Security: Release 7.9.2