The new docs.trellix.com features a modernized UI and AI-powered conversational search. Content is currently available in English, with additional languages launching in early November 2026. We hope you enjoy the updated experience.

Managing devices access using TACACS+

Prev Next

The TACACS+ tab enables you to use TACACS+ (Terminal Access Controller Access Control System) to control user access to the device console. With TACACS+, user accounts can be centrally stored and authenticated. TACACS+ is an access-control protocol that allows a device to authenticate all login attempts through a central authentication server. By using TACACS+, the task of administering passwords on each device can be simplified by doing the user authentication on a central server.

Using the Manager, you can configure TACACS+ server at the Admin Domain level and allow devices to inherit this configuration. You can disable this TACACS+ authentication for individual devices using the Remote Access option of the device in question.

Note

Trellix recommends that either TACACS+ users or local users on the Sensor should be configured. If both are required, ensure that users with the same name are not present in the Sensor and the TACACS+ server.