The new docs.trellix.com features a modernized UI and AI-powered conversational search. Content is currently available in English, with additional languages launching in early November 2026. We hope you enjoy the updated experience.

Configure Auto-Acknowledgement based on alert severity

Prev Next

You can set auto-acknowledgement for all alerts or non-RfSB alerts based on their severity levels. This acknowledges the alerts automatically as and when the alerts are generated. Auto-Acknowledgement for alerts is disabled by default. You can view the acknowledged alerts in the Attack Log page. The auto-acknowledgement feature is available only at the root admin domain. You cannot set any auto-acknowledgement rules for alerts from the child domains.

Auto-Acknowledge alerts
Auto-Acknowledge alerts


  1. Navigate to Policy → Intrusion Prevention → Exceptions → Auto-Acknowledgement.

  2. Select the Enable Automatic Alert Acknowledgement? checkbox.

    The Properties page is displayed.

  3. From the Auto-Acknowledge Alert Severity, select the severity level for the attacks.

  4. Select the type of alerts to be auto-acknowledged from the Applicable to drop-down list.

    You can either set the auto-acknowledgement to non-RfSB alerts only or all the alerts generated which will include the RfSB alerts also.

  5. Click Save to save your settings.