The new docs.trellix.com features a modernized UI and AI-powered conversational search. Content is currently available in English, with additional languages launching in early November 2026. We hope you enjoy the updated experience.

6. Deploy a Sensor in inline Active Fail-Open mode

Prev Next

Prerequisites:

  • The Sensor must be set up and have established trust with a Manager server.

  • The Sensor has a free port pair which can be deployed in inline Active Fail-Open mode.

  • It is assumed that you have inserted necessary transceiver modules into the Sensor if you have completed cabling the Sensor and Active Fail-Open module.

When you set up a Sensor for the first time, its ports are disabled by default. The Sensor ports must be manually configured for inline Active Fail-Open operation.

Steps:

  1. In the Manager, go to Devices → <Admin_Domain_Name> → Devices → <Device_Name> → Setup → Physical Ports.

  2. Double-click port one of the configurable ports, say 1/1 (Gx/1).

    A configuration panel appears on the right side of the window.

  3. Click the State drop-down and select Enabled.

    This will impact the port 2/2 (Gx/2) as well. So, ports 2/1-2/2 (Gx/1-Gx/2) are enabled.

  4. Click the Certification drop-down and select an option depending on your requirement.

    Note

    Based on the I/O module and port selected, you may be required to select the Auto Negotiate checkbox and set the speed under Maximum Negotiable Speed (Duplex). For certain ports, the speed is automatically selected and you will not be able to edit it.

  5. Select FEC checkbox if you want to enable Forward Error Connection.

    Note

    FEC should only be enabled when needed, and the device to which this port is connected must have FEC enabled too.

  6. Under Mode, select Inline Active Fail-Open – Active from the drop-down list.

  7. Under Placement, select Inside Network or Outside Network from the drop-down list, depending on how you want to configure your ports.

    GUID-EFEB2BFD-DD8C-4785-BD94-CCE645B3D5F6-low.png
  8. Click Save.

    Note

    An Alert! pop-up displays stating the changes made on port x/1 impacts x/2 as well. Click OK.

The Sensor and Active Fail-Open module are set up. When traffic passes through the ports, the port link status changes to Up and turns green.