Enables and disables the aging period for Endpoint Security (HX) conditions generated by indicators from other Trellix products (such as Network Security and Email Security — Server appliances) or imported via a script.
Old conditions are of limited value to your organization and reduce the performance of your system and analysts. By default, the Endpoint Security (HX) software automatically dissociates conditions from integration-generated indicators based on their age. This command allows you to enable or disable this functionality.
Note
Conditions are not removed from the database. They are only dissociated from their associated integration-generated indicators.
Custom conditions are not affected by condition aging settings.
Syntax
[no] hx server detection aging condition generated enable
Parameters
no
Disables the aging period for Endpoint Security (HX) conditions generated by indicators from other Trellix products or imported via a script.
Example
The following example enables condition aging:
hostname (config) # hx server detection aging condition generated enable
User role
Admin
Command mode
Config
Supported appliances
This command is supported on the following appliances running the specified releases or later:
Endpoint Security (HX): Release 3.2