The new docs.trellix.com offers a modernized UI and AI-powered features like conversational searches. Content is currently available only in English. Other languages will be available in mid-October 2026. We hope you enjoy the new experience.

Firewall policy

Prev Next

Define firewall policies and rules and enforce them on a managed Mac to control incoming and outgoing network traffic.

Trellix Endpoint Security (ENS) for Mac uses the Trellix Endpoint Security (ENS) Firewall extension to manage the Mac.

This table lists the policies that you can create under each product category.

Note

Because Firewall uses Trellix Endpoint Security (ENS) Firewall extensions as common extensions, the features specific to Trellix Endpoint Security (ENS) are marked as Windows only.

Use Trellix ENS Firewall policy to create and enforce firewall rules, rule groups, to block access to domains, and to create location-specific rules for your managed Mac systems.

Product

Category

Available options

Endpoint Security Firewall

Options

  • Enable or disable Firewall protection for managed Mac.

  • Enable or disable Adaptive mode on client Mac.

  • Retain existing Adaptive mode client rules when enforce Firewall policy.

  • Define maximum time limit to establish TCP, UDP, and ICMP connections.

  • Define networks.

Rules

  • Create firewall rules.

  • Create rule groups.

  • Add rules from catalog.

  • Add group from catalog.

  • Configure location awareness settings.

For the list of features supported for Microsoft Windows and Macintosh operating system, see Trellix KnowledgeBase article KB84410.