The new docs.trellix.com features a modernized UI and AI-powered conversational search. Content is currently available in English, with additional languages launching in early November 2026. We hope you enjoy the updated experience.

Customize DoS policy for a VLAN

Prev Next

Suppose instead that Port G0/1's traffic type is VLAN, and that you have added VLAN IDs 1-6 to your interface. In this situation, you can:

  • Create multiple DoS policies for each VLAN ID in the network. In this instance, you can create unique DoS policies for VLAN 2, VLAN 4, and VLAN 5. All other traffic in the interface is protected against DoS by the inherited DoS policy settings; the inherited settings can be customized.

  • Create a subinterface. You combine VLANS 2, 4, and 5, and call the subinterface VLAN-245.

  • Create a DoS instance for an individual VLAN ID and the entire subinterface for all other traffic, for example, just VLAN 2 and the entire VLAN-245. You can later create DoS instances for VLANs 4 and 5.