The new docs.trellix.com features a modernized UI and AI-powered conversational search. Content is currently available in English, with additional languages launching in early November 2026. We hope you enjoy the updated experience.

Deleting all rules from a network policy for SSL interception using the CLI

Prev Next

Use the commands in this section to delete all the rules from a network policy that are based on the destination IPv4 or IPv6 address, source IPv4 or IPv6 address, or mask.

To delete all the rules from a network policy:
  1. Go to CLI configuration mode.

    hostname > enable
    hostname # configure terminal
  2. Delete all the rules from a network policy.

    hostname (config) # no policymgr ssl-intercept network all
  3. Verify the status of the network policy rules configuration for SSL interception.

    hostname (config) # show policymgr ssl-intercept network
    
    Total CIDR Rule Supported: 512
    Total CIDR Rule Configured: 0
    
    INTF    IP                     ACTION 

    The "Total CIDR Rule Configured" line displays the value of 0 if all the rules are deleted from a network policy.

  4. Save your changes.

    hostname (config) # write memory