The new docs.trellix.com offers a modernized UI and AI-powered features like conversational searches. Content is currently available only in English. Other languages will be available in mid-October 2026. We hope you enjoy the new experience.

Move a Trellix SIEM VM to another host

Prev Next

Move a Trellix SIEM virtual machine (VM) to a different host.

Observe these cautions for the process:

  • Do not copy the Trellix SIEM VM. It must be moved.

  • Do not move a running Trellix SIEM VM. Applies to vMotion in VMware and Live Migration in Azure.

  • If your hypervisor has a feature that dynamically moves running VMs, the Trellix SIEM VM must be excluded from this feature. (An example is VMware Distributed Resource Scheduler (DRS).)

  1. Prepare your Trellix SIEM VM for migration. If the IP addresses or routes need updating, update these settings now. See "Managing network interfaces" in the Product Guide for more information.

  2. Shut down your Trellix SIEM VM.

  3. Move the Trellix SIEM VM from one host to the other, adjusting the appropriate hypervisor configuration files as needed.

  4. Start the Trellix SIEM VM and monitor it to make sure it starts successfully. If it does not start successfully, record any errors and revert the changes. Use the console view (Ctrl+Alt+F12) to check and record. If errors were encountered, contact Technical Support and open a service request for assistance.