Sensor allows very granular policy application and enforcement; multiple IPS and DoS policies can be enforced on a single port or port pair. For example, suppose you are a super user at the root admin domain level, and you deploy a single Sensor. You edit the details of your root domain and decide to keep the Default Prevention policy that is applied by default upon Manager installation. When you add the Sensor, the Default Prevention policy is inherited from the root domain and applies to the Sensor and all of the Sensor's interfaces by default. If you want to apply a different IPS policy, you can easily re-assign policies applied to the Sensors and their interfaces/subinterfaces within the current admin domain or child admin domains.
You can quickly find and reassign policies applied to multiple Sensors and their resources (interfaces/ subinterfaces) without having to search extensively in Trellix IPS. You can filter your search results by policies (for example, IPS policy), or Sensors. From the search results, you can select the resources and re-assign policies, as required.