The new docs.trellix.com features a modernized UI and AI-powered conversational search. Content is currently available in English, with additional languages launching in early November 2026. We hope you enjoy the updated experience.

Schedule automatic archival

Prev Next

The Automated Archival action enables you to set a schedule by which alerts and packet logs are automatically archived.

The scheduled archival process archives alerts and packet logs daily, weekly, or monthly depending on the frequency you select.

If you choose Weekly and select a day of the week from the drop-down list, the archival begins from the previous week for the selected day. For example, if you choose Weekly and choose Sunday as the day of the week, logs from the previous Sunday through Saturday are archived.

If you choose Monthly, the archive frequency is the 1st of every month and the logs for the month are archived.

If you choose Daily, the logs from the hour 00:00:00 through 23.59.59 from 2 days back are archived. For example, if you set the Scheduler to Daily on 3-Sep, then the logs from 1-Sep are archived.

Note

When scheduling archival, set a time when no other scheduled functions (backups, database tuning) are running. The time should be a minimum of an hour after/before other scheduled actions.

Steps:

  1. Select Manager → <Admin Domain Name> → Maintenance → Data Archiving → IPS → Automated Archival.

    The Automated Archival page is displayed.

    Automated Archival page
    Automated Archival page


  2. Select Yes against Enable Automatic Downloading to turn on the scheduling process.

  3. Select values for any of the following against Frequency:

    • Daily

    • Weekly — Select the day of the week.

    • Monthly

    • Start Time — Hours: Minutes (24 hour clock)

  4. Click Save. Every time the process runs, finished archival is saved to <Manager_Install_Dir>\alertarchival

    Note

    The default Manager installation directory is %programfiles%\Trellix\IPS Manager\App.

  5. Optional:

    • Click GUID-DE8F9231-1BB5-42A7-B78B-1FDD431543A8-low.png to reset the settings to those last applied. This is helpful when you started to make changes but forgot what the last settings were.

    • You can also check the present settings for all scheduled processes (including backups, database maintenance, and file maintenance actions) in Scheduler Details. To access Scheduler Details go to Manager → <Admin Domain Name> → Maintenance → Scheduler Details.