The new docs.trellix.com features a modernized UI and AI-powered conversational search. Content is currently available in English, with additional languages launching in early November 2026. We hope you enjoy the updated experience.

Adding or deleting SSL decryption mirroring using the Web UI

Prev Next

Use the Add Port Mirroring window to add mirroring of SSL decrypted traffic or to delete mirroring of SSL decrypted traffic from the monitoring interface pair on the Network Security appliance.

To add mirroring of SSL decrypted traffic on an interface:
  1. In the Web UI, choose Settings > Port Mirroring.

  2. Click Add. The Add Port Mirroring window opens.

    NX_decryptMirrorEnableSSL_scap.png
  3. In the Monitor Interface drop-down list, choose the interface pair that is configured on the appliance for inline deployment.

  4. To add mirroring of SSL decrypted traffic on an interface pair, select the SSL Decryption Mirroring checkbox.

  5. (Optional) In the TCP Port field, enter a new destination TCP port number for the SSL decrypted packet before it is mirrored.

  6. (Optional) In the VLAN field, enter the VLAN identification number so that the VLAN ID is inserted into the decrypted mirrored packet. The range is from 1 to 4094.

  7. In the Mirror Port drop-down list, choose the port that will forward the mirrored traffic.

  8. Click Add.

    The mirroring port is added to the monitoring interface pair. The following message appears:

    NX_decryptMirrorAddNonSSLSuccess_scap.png

    An error is displayed if you did not select the mirror port for the monitoring interface pair.

To delete mirroring of SSL decrypted traffic from an interface:

  1. In the Web UI, choose Settings > Port Mirroring.

  2. In the table, select the checkbox next to the monitoring interface pair you want to delete.

  3. Click the action ( ) icon in the Action column.

  4. Click Delete. A confirmation dialog box appears.

  5. Click Yes to confirm that you want to delete mirroring from the monitoring interface.

    The monitoring interface pair is deleted from the port mirroring configuration for mirroring of SSL decrypted traffic.