Understanding static sets

Prev Next

Static sets are groups of hosts that you create and edit by directly adding and removing hosts using their IP addresses or hostnames.

Note

You can add hosts to a static set only if the hosts are already provisioned.

Membership in a static set is stable. Membership changes only if you edit the set to add or remove hosts.

Static sets allow you to define and control small groups of hosts for which you can’t easily build a dynamic (standard) host set. In addition, even if the hostname or IP address of a host changes, the host endpoint stays part of the host set.

This stability requires that you actively maintain these sets.

  • If you re-image a host endpoint and install a new agent on it, make sure to change the previous agent ID to the new agent ID in any static sets of which that host was a member. Otherwise, the re-imaged host may not be included in or excluded from operations properly.

  • If you create or edit a static set, Trellix recommends that you download a *.csv file of its set membership. You can use these *.csv files as references to make sure these sets continue to contain the correct hosts over time. You can also reference these *.csv files if you have to recreate any static sets that are lost.

    Caution

    Endpoint Security (HX) does not provide a Save As or Copy function. If you save a host set with a new name, the host set is simply renamed.