The new docs.trellix.com features a modernized UI and AI-powered conversational search. Content is currently available in English, with additional languages launching in early November 2026. We hope you enjoy the updated experience.

Create connection isolation groups

Prev Next

A connection isolation firewall rule group instructs Firewall to process only traffic that matches the defined connection type and group criteria.

Task
  1. Select Menu → Policy → Policy Catalog, then select Endpoint Security Firewall from the Products list in the left pane.

  2. From the Category list in the right pane, select Rules.

  3. Click the name of an editable policy.

  4. On the Rules policy page, click Add Group or Add Group from Catalog.

  5. Under Description, specify options for the group.

  6. Under Location, select Enable location awareness and Enable connection isolation. Then, select the location criteria for matching.

  7. Under Networks, for Connection types, select the type of connection (Wired, Wireless, or Virtual) to apply to the rules in this group.

    Note

    Settings for Transport and Executables aren't available for connection isolation groups.

  8. Click Save.

  9. Create new rules within this group, or move existing rules into it from the firewall rule list or the Firewall Catalog.

  10. Click Save.