The new docs.trellix.com features a modernized UI and AI-powered conversational search. Content is currently available in English, with additional languages launching in early November 2026. We hope you enjoy the updated experience.

How Trellix IPS - MVX integration works

Prev Next

When you integrate Trellix IPS with MVX, the Sensor initiates a communication channel with the VX appliance. This channel is open unless the Sensor is down, the VX appliance is down, or you disable the integration. By default, this communication channel is over HTTPS protocol and the VX appliance listens on port 443 which cannot be changed.

The Manager accesses the RESTful APIs of MVX for its communication. When a connection is required, the Manager establishes an HTTPS connection.

When you integrate Trellix IPS with MVX and the authentication is successful, MVX serves as an additional malware engine for all the supported file types in the Advanced Malware Policies. You can select this engine along with any of the other malware engines.