The new docs.trellix.com offers a modernized UI and AI-powered features like conversational searches. Content is currently available only in English. Other languages will be available in mid-October 2026. We hope you enjoy the new experience.

Module status tab

Prev Next
Ingestion

This section provides statistics for the module’s message ingestion processing displayed over various time intervals. The following statistics are available:

  • Events:The number of events (messages) received from endpoints. These values provide visibility into the volume of messages being processed by the server.

  • Filtered:The number of events that dropped based on filter settings (see Host Filtering tab below). It is recommended to use filtering so a value of 0 suggests the module’s current configuration may not be sustainable over time.

  • Parsing Errors: The number of events that were unable to be parsed from endpoints.

    Note

    Parsing errors should not occur under normal operations.

  • Commit Errors: The number of events that were not able to be saved to the database.

    Note

    Commit errors should not occur under normal operations.

  • Avg Topic Lag: The number of events awaiting processing on the message bus. A sustained lag indicates the module is having difficulty ingesting messages fast enough. It suggests policy or configuration changes may be warranted to reduce data volume.

Scheduled jobs

Provides a lists of the module’s background jobs including state, duration, last run time, and next run time. Jobs are used to update database metrics, ingest messages from the bus, purge messages, and refresh module configuration. These settings should not be relevant unless performing advanced troubleshooting.

DB stats

Provides statistics for the Logon Tracker database including size on disk and the row count of important tables. Depending on the load of the appliance, you can experience slowdown in the module UI when the database “Total Rows” size exceeds 10 million rows.

Message bus

A simple validation that the Logon Tracker service can communicate with the HX message bus and see the topics listed.

Monitoring frequency (secs)

How often to run a status check on the database. As the database size increases, this query can become time consuming at which point the interval should be increased.