The new docs.trellix.com features a modernized UI and AI-powered conversational search. Content is currently available in English, with additional languages launching in early November 2026. We hope you enjoy the updated experience.

Enabling or disabling the appliance to drop all the events using the Web UI

Prev Next

Follow these steps to enable or disable the Network Security appliance to drop all the events. No events will be sent to Helix or to the Splunk Enterprise server for further analysis.

To enable the appliance to drop all the events:
  1. In the Web UI, choose Settings > Evidence Collector.

  2. Click Event Filters.

  3. In the Drop All Events area, click the Drop All Events toggle button to stop sending the events to Helix or to the Splunk Enterprise server.

    NX_TAPSender_EventFilterDropON_scap.png

    The following message appears:

    NX_TAPSenderConfigSuccess_scap.png
To disable the appliance from dropping all the events:
  1. In the Web UI, choose Settings > Evidence Collector.

  2. Click Event Filters.

  3. In the Drop All Events area, click the Drop All Events toggle button to start sending the events to Helix or to the Splunk Enterprise server.

    NX_TAPSender_EventFilterDropOFF_scap.png

    The following message appears:

    NX_TAPSenderConfigSuccess_scap.png