The new docs.trellix.com features a modernized UI and AI-powered conversational search. Content is currently available in English, with additional languages launching in early November 2026. We hope you enjoy the updated experience.

ips reconnaissance enable

Prev Next

Enables IPS detection of reconnaissance activity on an IPS-enabled appliance.

You can enable the IPS-enabled engine to detect reconnaissance activity. To display the status of IPS alerts for reconnaissance activity, use the show ips reconnaissance CLI command in enable mode. For more information, see the Network Security IPS Feature Guide.

Note

You can also run this command remotely from the command line of an integrated Central Management System appliance using the central management appliance proxying mechanism.

Syntax

[no] ips reconnaissance enable

Parameters

<term>

no

</term>
Use the no form of this command to disable the feature.

Default

IPS detection of reconnaissance activity are disabled by default.

Examples

ips reconnaissance enable
hostname (config) # ips reconnaissance enable
no ips reconnaissance enable
hostname (config) # no ips reconnaissance enable

User role

Admin

Command mode

Config

Supported appliances

This command is supported on the following appliances running the specified releases or later:

  • Network Security: Release 7.5.0