The new docs.trellix.com features a modernized UI and AI-powered conversational search. Content is currently available in English, with additional languages launching in early November 2026. We hope you enjoy the updated experience.

Editing a rule for a network policy for SSL interception using the Web UI

Prev Next

Follow these steps to edit the rules on a network policy for SSL interception using the Network Security appliance Web UI. You can change the port pair and the action.

Note

You cannot modify the IPv4 or IPv6 address and mask length for the network policy rule. To change the IP address and mask, you must delete the rule and create a new one.

You can edit rules for a network policy only using the Web UI.

To edit a rule for a network policy:
  1. In the Web UI, choose Settings > SSL Intercept.

  2. Click CIDR Policy Rules Configuration (optional).

  3. In the table, locate the network policy rule you want to edit.

    NX_CIDR2.png
  4. Click the edit icon in the last column.

  5. Click Edit. The Edit Rule window opens.

    NX_CIDR4.png
  6. In the Port Pair drop-down list, change the network port pair.

  7. In the Action drop-down list, change the action.

    • Decrypt

    • Pass Through

  8. Click Save.

    The following message appears:

    NX_SSLIntercept_PolicyRulesUpdateSuccess_scap.png