The new docs.trellix.com features a modernized UI and AI-powered conversational search. Content is currently available in English, with additional languages launching in early November 2026. We hope you enjoy the updated experience.

Adding or deleting a TCP port for SSL interception using the CLI

Prev Next

Use the commands in this section to add a TCP port or to delete a TCP port for SSL interception. You can specify a maximum of 8 TCP ports for SSL interception.

To add a TCP port:
  1. Go to CLI configuration mode.

    hostname > enable
    hostname # configure terminal
  2. Specify the TCP port to intercept HTTPS traffic.

    hostname (config) # policymgr ssl-intercept config tcp port <port_number>

    where <port_number> is the TCP port number.

  3. Repeat the previous step for each port you want to add.

  4. Save your changes.

    hostname (config) # write memory
To delete a TCP port:
  1. Go to CLI configuration mode.

    hostname > enable
    hostname # configure terminal
  2. Specify the TCP port to delete.

    hostname (config) # no policymgr ssl-intercept config tcp port <port_number>

    where <port_number> is the TCP port number.

  3. Repeat the previous step for each port you want to delete.

  4. Save your changes.

    hostname (config) # write memory