The new docs.trellix.com features a modernized UI and AI-powered conversational search. Content is currently available in English, with additional languages launching in early November 2026. We hope you enjoy the updated experience.

Modify an existing standard vSwitch for a monitoring port

Prev Next

If you plan to connect a monitoring port to an existing vSwitch, you might have to modify some of the configuration. For example, in scenario 2, you need to modify virtual switch 1 to connect it to monitoring port 1.

Steps:

  1. Log on to the ESX as the root user in VMware vSphere Web Client.

    GUID-ED003931-0EA0-43A9-889D-8C1D10FE78FE-low.png
  2. Select the required ESX server and select Configure → Networking → Virtual switches.

    GUID-EFF4167D-2437-4338-AD0F-88BB19DB084F-low.png
  3. Select the required vSwitch and click on the EDIT tab.

  4. Go to Security section, make sure the fields are set to the values mentioned below, and click OK.

    • Promiscuous mode — Accept

    • MAC Address Changes — Accept

    • Forged Transmits — Accept

      Note

      Select the Override check-box to be able to change the state of an option.

    GUID-9175872A-2A35-4997-AC20-C4DBF8941836-low.png
  5. Modify the port group that you are using for the VMs in this switch.

    For example, in scenario 2, this is the port group that you use for the 10.10.10.15 client.

    Note

    This step might be relevant only for scenario 2.

    1. Scroll down to the required switch and click the ellipsis icon next to the switch port group that you created and click Edit Settings.

      GUID-AEF5C9E8-4C87-44FA-A8D9-F3F354ECB66F-low.png
    2. In the Properties section, modify the Network label if required.

    3. In the VLAN ID (Optional) field, you can specify the required VLAN. For the scenarios in this section, select All (4095).

      GUID-77B9E410-E682-48F3-87E5-DA0284B4AFDF-low.png
    4. Go to Security section make changes in the fields as per your requirement, and click OK. In this scenario, the following settings have been implemented:

      • Promiscuous mode — Accept

      • MAC address changes — Accept

      • Forged transmits — Accept

      Note

      Select the Override check-box to be able to change the state of an option.

      GUID-1B3781EF-D814-4AA5-B25B-7287AE437605-low.png
  6. Create a port group to connect the monitoring port of a Sensor.

    1. Scroll to the corresponding vSwitch, expand the node, and click the ADD NETWORKING tab.

    2. In the Select connection type section, select Virtual Machine Port Group for a Standard Switch and click NEXT.

      GUID-A4513C6A-2FDD-4B4C-974C-16ACCEC84857-low.png
    3. In the Select target device section, select Select an existing standard switch and make sure the vSwitch that you created is selected. Then, click NEXT.

      GUID-915A769D-9E5F-4373-A7C4-BD45939817E5-low.png
    4. In the Network Label field, enter the required name

      For example, enter VIPS Client Port.

    5. Make sure VLAN ID is set to All (4095), click NEXT and then FINISH.

      GUID-F1986330-8373-4537-96F0-DE8968EB4B92-low.png
    6. Scroll down to the switch where the switch port group has been created, click the ellipsis icon next to it and click Edit Settings.

      In this example, it is VIPS Client Port.

      GUID-BF0528EE-5757-44DE-BAB0-9620AAC41764-low.png
    7. In the Security section, make sure the fields are set with the following values, and click OK.

      • Promiscuous mode — Accept

      • MAC Address Changes — Accept

      • Forged Transmits — Accept

      Note

      Select the Override check-box to be able to change the state of an option.

      This setting is mandatory for the port group that you will use for any Sensor monitoring port.

      GUID-FE3179AA-6EDD-4649-8213-66E3A6CD9B37-low.png