smartvision enable

Prev Next

Enables Trellix SmartVision features on a Network Security appliance. SmartVision detects post-exploitation attacker activity in traffic between hosts in the internal or private network and servers.

On SmartVision Edition appliances, which are Network Security appliances with SmartVision Edition appliance licenses, SmartVision features are enabled by default. On SmartVision-capable Network Security sensors and integrated appliances, you must enable SmartVision explicitly. SmartVision appliances are described in the Network Security SmartVision Feature Guide.

Note

You can also run this command remotely from the command line of an integrated TrellixCentral Management System appliance using the central management appliance proxying mechanism.

To view the configuration settings and runtime status for SmartVision and data exfiltration detection, use the following commands:

Syntax

[no] smartvision enable

Parameters

no

Use the no form of this command to disable detection of post-exploitation attacker activities.

Examples

The following command enables SmartVision.

hostname (config) # smartvision enable

Enabling SmartVision.

The following command disables SmartVision.

hostname (config) # no smartvision enable

Disabling SmartVision.

User role

Admin

Command mode

Config

Supported appliances

This command is supported on the following appliances running the specified releases or later:

  • Network Security: Release 8.0