The new docs.trellix.com features a modernized UI and AI-powered conversational search. Content is currently available in English, with additional languages launching in early November 2026. We hope you enjoy the updated experience.

Deleting ports from a whitelist using the CLI

Prev Next

Use the CLI commands in this procedure to remove a port from a whitelist on the Network Security appliance. You remove each port separately.

Important

After you remove a port from a whitelist, use the policymgr refresh-policy command in the CLI configuration mode to refresh the policy configuration.

Prerequisites

  • Administrator or Operator access to the Network Security appliance

  • You have added one or more ports to a port whitelist on the Network Security appliance. For details about how to add a port to a port whitelist, Adding ports to a whitelist using the CLI.

To delete a port from a whitelist:
  1. Go to CLI configuration mode.

    hostname > enable hostname # configure terminal

  2. Specify the port number to remove from a whitelist.

    hostname (config) # no policymgr whitelist port <port_number>

  3. Repeat the previous step for each port you want to remove.

  4. Save your changes.

    hostname (config) # write memory

  5. Refresh the policy configuration.

    hostname (config) # policymgr refresh-policy
  6. Verify the configuration for a port whitelist.

    hostname (config) # show policymgr whitelist port

Example

This example shows how to remove three ports from a whitelist.

hostname (config) # no policymgr whitelist port 443

hostname (config) # policymgr refresh-policy

hostname (config) # no policymgr whitelist port 8080

hostname (config) # policymgr refresh-policy

hostname (config) # no policymgr whitelist port 9000

hostname (config) # policymgr refresh-policy

hostname (config) # show policymgr whitelist port

Port Based whitelist enabled: yes

Port Whitelist Entries: 0 / 256

Subnetf port whitelist detail: