The new docs.trellix.com features a modernized UI and AI-powered conversational search. Content is currently available in English, with additional languages launching in early November 2026. We hope you enjoy the updated experience.

Bradford Network Sentry configuration

Prev Next

Follow these steps on the Network Sentry so that the appliance can push syslog events to Trellix Helix:

  1. Navigate to System>Settings>Log Receivers.

  2. Add a Log Receiver and select or set the following information:

    1. Type: CEF

    2. IP Address of the Comm Broker

  3. Navigate to Logs>Event Management.

  4. For each event type that is to be logged with Trellix Helix, set the Event Log to either:

    • “Log External

    • Log Internal & External

Note

Some events are generated frequently and may not be necessary for day-to-day operations. Review the list of events to determine which ones will provide the most useful feedback, and then enable them. You may also choose to enable an event for a short period of time only, such as to find a particular host when it connects to the network.