hx server detection aging condition generated enable

Prev Next

Enables and disables the aging period for Endpoint Security (HX) conditions generated by indicators from other Trellix products (such as Network Security and Email Security — Server appliances) or imported via a script.

Old conditions are of limited value to your organization and reduce the performance of your system and analysts. By default, the Endpoint Security (HX) software automatically dissociates conditions from integration-generated indicators based on their age. This command allows you to enable or disable this functionality.

Note

Conditions are not removed from the database. They are only dissociated from their associated integration-generated indicators.

Custom conditions are not affected by condition aging settings.

Syntax

[no] hx server detection aging condition generated enable

Parameters

no

Disables the aging period for Endpoint Security (HX) conditions generated by indicators from other Trellix products or imported via a script.

Example

The following example enables condition aging:

hostname (config) # hx server detection aging condition generated enable

User role

Admin

Command mode

Config

Supported appliances

This command is supported on the following appliances running the specified releases or later:

  • Endpoint Security (HX): Release 3.2