The new docs.trellix.com offers a modernized UI and AI-powered features like conversational searches. Content is currently available only in English. Other languages will be available in mid-October 2026. We hope you enjoy the new experience.

Retrieve VA data

Prev Next

You can retrieve scheduled or immediate vulnerability assessment (VA) data from a data source. eEye REM data retrieval cannot be immediate; it must be scheduled.

  1. From the Trellix ESM dashboard, click and select More Settings .

  2. On the system navigation tree, select the Receiver, then click the Properties icon Settings.png.

  3. Click Vulnerability Assessment.

  4. Select the VA source, then select one of these options:

    • To retrieve immediately, click Retrieve. The job runs in the background and you are informed if the retrieval is successful.

    • To schedule retrieval, click Edit. Select the frequency then choose to write the changes to the device.

  5. Click OK.

  6. If you cannot retrieve VA data, check the following:

    This resource...

    Causes...

    Nessus, OpenVAS, and Rapid7 Metasploit Pro

    • Empty directory.

    • Error in the settings.

    • Data in the directory was already retrieved, so the data isn't current.

    Qualys, FusionVM, and Rapid7 Nexpose

    Data in the directory was already retrieved, so the data isn't current.

    Nessus

    If you wrote over an existing Nessus file when you uploaded a new Nessus file to your FTP site, the date of the file remains the same; so, when you perform a VA retrieval, no data is returned because it's perceived as old data. To avoid this situation, either delete the old Nessus file off the FTP site before uploading the new one, or use a different name for the file you upload.

  7. To view the data, click the Asset Manager icon GUID-F79AB8B1-DFF7-4AD1-843A-EFD44AAEDEA9-low.png, then select the Vulnerability Assessment tab.