The new docs.trellix.com features a modernized UI and AI-powered conversational search. Content is currently available in English, with additional languages launching in early November 2026. We hope you enjoy the updated experience.

6. Deploy a Sensor in inline fail-open mode

Prev Next

Before you begin

A Sensor which

  • Is set up and has established trust with a Manager
  • Has a free port pair that can be deployed in inline fail-open configuration
  • SFPs or XFPs, depending on the Sensor model and fail-open switch model

Note

The steps below assume you are using an M-Series Sensor when selecting ports.

Configuration of a port pair for inline fail-open active operation


To configure a fail-open switch you must configure the port pair to operate as an inline fail-open port.

Task

  1. After cabling the Sensor and the fail-open switch, log on to your Manager.
  2. Go to Devices → <Admin Domain Name> → Devices → <Device_Name> → Setup → Physical Ports.
  3. Double-click port 1A.
    A configuration window appears on the right side of the page.
  4. Click the State drop-down and select Enabled.
    This enables port 1A-1B.
  5. Select the Auto Negotiate checkbox and make sure the Speed (Duplex) is set to 1 Gbps (Full).
  6. Click the Mode drop-down and select Inline Fail Open.
    This means port pair 1A-1B is now configured for inline fail-open.
  7. Click the Placement drop-down and select Inside Network or Outside Network, depending on how you want to configure your ports.
    Placement refers to the area of the network which that individual port is connected.
  8. Click the Response Port drop-down and select the right port that you want to assign.
    For an inline fail-open or fail-closed setup, you can configure the same port to be the response port.
  9. Click Save.

Results

If traffic is passing through the ports, you will notice the port link status changes to Up and goes green.