The new docs.trellix.com offers a modernized UI and AI-powered features like conversational searches. Content is currently available only in English. Other languages will be available in mid-October 2026. We hope you enjoy the new experience.

Filter dashboard views

Prev Next

Filter your dashboard view so that you can focus on specific details in the view.

Verify that you belong to a group with view management or view data permissions.

  1. Open the dashboard view you want to filter.

  2. Filter the view using these methods:

    • Click the Filter bar and add the relevant field and values.

      Note

      You can only use the AND operator in the Filter bar.

      • Accept the default equals (=) operator in the filter.

      • To change the operator to not equals (!=), click the equals sign (=).

      • To remove a field from the filter, click GUID-89DDBDA2-3625-42CE-8D73-87CF5F43330B-low.png on that field.

    • To build complex filters using both AND and OR operators, click Advanced Search.

    • To specify a time frame for the view, click the clock icon on the filter ribbon then select the time frame. If you want to query archived partitions, use the legacy Flash interface to set a Custom Time.

    • To apply predefined filter sets, click Filter Sets.

    • Select a device from the Physical Display drop-down. The filter icon GUID-DCAED060-8790-4D82-9E36-571627FC807F-low.png appears in the filter ribbon indicating that the view is filtered on the selected device.

  3. Click GUID-A1DCB349-9B72-45B7-B4AA-43D01595B786-low.png.

The view refreshes to display only the records matching the values you entered.