Configure IP reporting mode

Prev Next

For environments using dual-stack (IPv4 and IPv6) networking, you can define which IP version the agent reports and communicates to the ePO. This applies to both ePO - On-prem and ePO - SaaS environments.

  1. Select MenuPolicyPolicy Catalog.

  2. Select Trellix Agent from the Product list and General from the Category list.

  3. Click the name of the policy you want to edit.

  4. In the General tab, locate the IP reporting mode field.

  5. Select one of these options:

    • Default: The agent reports the IP address of the fastest successful connection.

    • IPv4: The agent reports the IPv4 address.

    • IPv6: The agent reports the IPv6 address.

  6. Click Save.

  7. Trigger a Collect and Send Properties action on the endpoint so the agent updates the ePO server with the new IP configuration.

Note

If you select a specific IP version, your ePO server must also support that IP version for communication to work. Internal functions like P2P or Super Agent may still utilize either IPv4 or IPv6 regardless of this reporting setting.