Run a query on a schedule

Prev Next

A server task is used to run a query regularly. Queries can have sub-actions that allow you to perform various tasks, such as emailing the query results or working with tags.

For details about product features, usage, and best practices, click ? or Help.

  1. Open the Server Task Builder.

    1. From the Queries and Reports page, select a query.

    2. Select ActionsSchedule.

  2. On the Description page, name and describe the task, specify the schedule status, then click Next.

  3. On the Actions page and from the Actions drop-down menu, select Run Query.

  4. In the Query field, browse to the query that you want to run.

  5. Select the language for displaying the results.

  6. From the Sub-Actions list, select an action to take based on the results. Available sub-actions depend on the permissions of the user, and the products managed by your Trellix ePO -On-premePO server."

    Note

    You are not limited to selecting one action for the query results. Click the + button to add actions to take on the query results. Be careful to place the actions in the order you want them to be taken on the query results.

  7. Click Next.

  8. Schedule the task, then click Next.

  9. Verify the configuration of the task, then click Save.

The task is added to the list on the Server Tasks page. If the task is enabled (which it is by default), it runs at the next scheduled time. If the task is disabled, it only runs when you click Run next to the task on the Server Tasks page.