The new docs.trellix.com offers a modernized UI and AI-powered features like conversational searches. Content is currently available only in English. Other languages will be available in mid-October 2026. We hope you enjoy the new experience.

Restore data

Prev Next

If you encounter a data loss, you can restore event, flow, and log data from a previous data backup. You can also restore packet and string table data.

  • The system can only restore backups of files that match system-generated names.

  • You cannot restore data from a backup of a previous Trellix ESM version. Backups are only compatible with the current version of Trellix ESM.

  1. From the Trellix ESM dashboard, click menu.png and select System Properties.

  2. Select Database Restore Backup.

  3. Specify a date range (start and end date) for the data you want to restore.

  4. Identify the remote location where the backup file resides (such as, IP address, remote mount point, path, and logon credentials).

  5. Test the connection to ensure that the system can access the remote backup location.

  6. Click OK.

    Note

    You cannot back up (automatic or manual) or restore data if another backup or restore is already in progress.