The new docs.trellix.com features a modernized UI and AI-powered conversational search. Content is currently available in English, with additional languages launching in early November 2026. We hope you enjoy the updated experience.

Deploy pending changes to a device

Prev Next

When you make any configuration changes or policy changes on the Manager, or a new/updated signature set is available from Trellix, you must apply these updates to the devices (such as Sensors and NTBA Appliances) in your deployment for the changes to take effect.

Note the following:

  • Configuration changes such as port configuration, non-standard ports, and interface traffic types are updated regardless of the changes made to the Sensor, interface/ subinterface.
  • NTBA configuration updates refer to the changes done in the several tabs of the Devices node.
  • Policy changes are updated on the Sensor or NTBA Appliance in case of a newly applied policy, or change made to the current enforced policy.
  • Signature updates contain new and/or modified signatures that can be applied to the latest attacks.
  • When policy and rule updates are applied to the devices, the current traffic analysis is not impacted until the last phase of configuration updates (i.e the Manager status update is at 95%).

Refer the following steps to deploy the configuration changes to all devices in the admin domain or at a device level.

Task

  1. Go to Devices → <Admin Domain Name> → Global → Device Manager.
    The Device Manager page is displayed.
    Device Manager


  2. Click Sensors tab. Select the required Sensor from the list.
  3. Select Sync.
    The Sync: <Device Name> window is displayed.
  4. Select the required configurations and click Sync.

    Note

    The Manager provides an option to concurrently deploy pending changes for multiple Sensors. When you select multiple Sensors for deployment, the Bulk Sync window is displayed and enables all check-boxes by default. Select the options you wish to deploy and click Sync.

    Sync: <Device Name> window


    A Deployment Details dialog box is displayed. Click .

    Deployment Details


    You can also deploy the changes to a specific device from Devices <Admin Domain Name> Devices <Device Name> Deploy Pending Changes. Select the required configurations and click Deploy.
    Device-level deploy pending changes


    The following status can be viewed from Sync section of Status column:

    Status Description
    Synchronized Indicates that no pending changes are required.
    Sync in progress Indicates when the deployment is in progress.
    Sync required Indicates if any pending changes are required.
    --- Indicates that there is no trust established between the Sensor and the Manager.
  5. Click Export Sync File under Other Actions to view and export the deployment changes file to indirect mode Sensors. The changes can then be deployed to the Sensors manually using the CLI command window.
  6. Click to refresh the page and the status of the deployment.