The new docs.trellix.com features a modernized UI and AI-powered conversational search. Content is currently available in English, with additional languages launching in early November 2026. We hope you enjoy the updated experience.

Modify an existing standard vSwitch for a monitoring port

Prev Next

If you plan to connect a monitoring port to an existing vSwitch, you might have to modify some of the configuration. For example, in scenario 2, you need to modify virtual switch 1 to connect it to monitoring port 1.

Task

  1. Log on to the ESX as the root user in VMware vSphere Web Client.


  2. On the vSphere Home tab, select Hosts and Clusters.


    Note

    If the page takes loger time to load, click the page-refresh icon at the top.

  3. Select the required ESX server and select Manage → Networking → Virtual switches.


  4. Select the required vSwitch and click on its Edit settings icon.


  5. Select Security, make sure the fields are set to the values mentioned below, and click OK.
    • Promiscuous mode — Reject
    • MAC Address Changes — Reject
    • Forged Transmits — Accept


  6. Modify the port group that you are using for the VMs in this switch.
    For example, in scenario 2, this is the port group that you use for the 10.10.10.15 client.

    Note

    This step might be relevant only for scenario 2.

    1. Move the mouse over the required port group and click on it.
      The switch port group is now selected.

    2. Click on the Edit settings icon for the switch port group.


    3. Click Properties and modify the Network label, if required.
      For example, change it to Client Port.
    4. In the VLAN ID (Optional) field, you can specify the required VLAN. For the scenarios in this section, select None (0).


    5. Click Security, make sure the fields are set with the following values, and click OK.
      • Promiscuous mode — Reject
      • MAC Address Changes — Reject
      • Forged Transmits — Accept


  7. Create a port group to connect the monitoring port of a Sensor.
    1. Select the corresponding vSwitch and click on the Add host networking icon.


    2. In the Select connection type step, select Virtual Machine Port Group for a Standard Switch and then click Next.


    3. In the Select target device step, select Select an existing standard switch and make sure the vSwitch that you created is selected. Then click Next.


    4. In the Network Label field, enter the required name
      For example, enter VIPS Client Port.
    5. Make sure VLAN ID is set to All (4095), click Next and then Finish.


    6. Move the mouse over the switch port group and click on it.
      The switch port group is now selected.

    7. Click on the Edit settings icon for the switch port group.


    8. On the Security tab, select Override next to Promiscuous mode and then select Accept from the drop-down. Click OK when done.
      This is mandatory for the port group that you will use for any Sensor monitoring port.