The new docs.trellix.com features a modernized UI and AI-powered conversational search. Content is currently available in English, with additional languages launching in early November 2026. We hope you enjoy the updated experience.

Event notifications

Prev Next

You can configure alert notifications for the Endpoint Security (HX) server. Notifications appear in the Endpoint Security (HX) database and Web UI. This section describes how to configure event (alert) notifications.

The following table describes the types of alert notifications available for the Endpoint Security (HX) server.

Alert Type

Description

exploit-blocked

Includes exploits that have been blocked by Exploit Guard.

exploit-detected

Includes exploits that have only been detected by Exploit Guard. This does not include exploits that have also been blocked.

indicator-executed

Includes only indicators that have executed.

indicator-presence

Includes indicators that are present in the environment, including those that have executed.

malware-object

Includes malware objects that have been detected by Signature and Heuristic Detection or MalwareGuard.

Note

This section describes how to configure event (alert) notifications. See Configuring system email settings  for information about system email notifications.