The new docs.trellix.com features a modernized UI and AI-powered conversational search. Content is currently available in English, with additional languages launching in early November 2026. We hope you enjoy the updated experience.

Sensors

Prev Next

Top-right menu

The following options are available on the top-right corner of the Sensors tab:

Options

Description

Include Child Domains

Displays the Sensors configured in the child domain.

Clear All Filters

Click Clear All Filters to undo all filters applied.

Filter and sort options

The Device Manager page can be customized by different options like filtering and sorting which helps to drill-down the necessary details based on your requirement.

  • Filter: All the columns in the Device Manager page can be filtered based on specific fields to view a consolidated list of details.

  • Sort: All the columns in the Device Manager page can be sorted in the ascending or descending order.

Grid view

The following columns are available in the grid view of the Sensors tab:

Option

Definition

Name

Displays the name of the device.

Note

For vIPS Clusters, it displays the name of the member Sensors.

Connection Status

Displays the status between the Sensor and the Manager.

  • GUID-C395F07B-D0CD-480A-BCC2-FB886010F5DD-low.pngFully Connected: Indicates that all channels are up. The Sensor is able to communicate with the Manager.

  • GUID-D70B49BB-3DC3-44A9-98BE-B347D2898838-low.pngPartially Connected: Indicates that one or more channels are down.

  • GUID-652E4406-645C-490C-B40F-525982F3CEA9-low.pngDisconnected: Indicates that the command channel is down. This occurs when the Sensor fails to communicate with the Manager.

  • GUID-AAE3417B-5443-4F12-AF7B-B355E94658FC-low.pngTrust Pending: Indicates that the Sensor is defined on the Manager but not on the Sensor.

Channel Status

Displays the name of the following channels and its status whether "Up" GUID-C395F07B-D0CD-480A-BCC2-FB886010F5DD-low.png or "Down" GUID-89BC390A-3C39-40F9-BCC2-CF115261968D-low.png:

  • Command

  • Alert

  • Packet

If the trust is not established between the Manager and Sensor, the Channel Status is displayed as ---.

Protections

Displays if the versions for the following protection parameters are latest not:

  • Signature Set

  • Callback Detectors

  • GAM (Gateway Anti-Malware engine)

  • Anti-Malware engine

The icons displayed for the parameters are as follows:

  • GUID-C395F07B-D0CD-480A-BCC2-FB886010F5DD-low.png: Displayed when the parameter has the latest version available.

  • GUID-D70B49BB-3DC3-44A9-98BE-B347D2898838-low.png: Displayed when the version available in the Manager differs with the version available in the Sensor.

  • GUID-AAE3417B-5443-4F12-AF7B-B355E94658FC-low.png: Displayed when there is no latest version available on the Manager.

  • GUID-652E4406-645C-490C-B40F-525982F3CEA9-low.png: Displayed when the latest version cannot be determined. This is displayed only for GAM and Anti-Malware.

Device Details

Type

Displays if the device is an IPS Sensor or an NTBA Appliance.

Model

Displays the Sensor model.

Serial Number

Displays the Sensor serial number.

Software

Displays the software version running on the Sensor.

Hardware

Displays the current hardware version running on the Sensor.

Reboot Status

Displays if the Sensor requires a reboot. This is required to deploy configuration changes to the Sensor without any failure.

  • GUID-D70B49BB-3DC3-44A9-98BE-B347D2898838-low.png Reboot Required: Indicates that the Sensor requires a reboot. The reason for the reboot is also provided for better understanding. For example, GUID-D70B49BB-3DC3-44A9-98BE-B347D2898838-low.png Reboot Required (Sensor software change).

  • GUID-C395F07B-D0CD-480A-BCC2-FB886010F5DD-low.png No Reboot Required: Indicates that the Sensor does not require a reboot.

Note

This is not applicable to NTBA appliances. It is displayed as ---.

Upgrade Status

Displays if the latest software version is installing on the Sensor or downloading the latest software version to the Manager before installing it on the Sensor.

  • GUID-C395F07B-D0CD-480A-BCC2-FB886010F5DD-low.png Successful : When the Sensor upgrade is successful.

  • GUID-D70B49BB-3DC3-44A9-98BE-B347D2898838-low.png In-progress: When the Sensor is upgrading to the latest Sensor software version.

  • GUID-89BC390A-3C39-40F9-BCC2-CF115261968D-low.png Failed : When the Sensor upgrade fails.

  • ---: When no upgrade is performed.

vIPS Cluster

Name

Displays the name of the vIPS Cluster. For non-vIPS Clusters, "---" is displayed.

Note

This column is applicable only to Sensors that are members of a vIPS Cluster.

Capacity

Displays the total capacity of license required for all the Sensors in the cluster.

License

Displays the license status of the cluster.

Note

License assignment is disabled at the member Sensor level within the cluster.

The license status can be one of the following options:

  • GUID-89BC390A-3C39-40F9-BCC2-CF115261968D-low.png Required: The reason can be one of the following:

    • The license has not been assigned.

    • The license is assigned, but its capacity is less than the cluster's configured capacity.

    Note

    If a combination of expired and insufficient licenses exists, the insufficient license takes a higher priority.

  • GUID-C395F07B-D0CD-480A-BCC2-FB886010F5DD-low.png Present: The sufficient license is present and valid.

  • GUID-7B2E01C8-BD1B-4E8F-8F61-6FC4E27E8413-low.jpg Expired: The license is assigned, but one or more license is expired.

  • GUID-D70B49BB-3DC3-44A9-98BE-B347D2898838-low.png Grace Period: The assigned license(s) have expired and are now running on a grace period.

    Note

    A grace period of 30 days is provided to subscription based system licenses after they expire.

vIPS Probe

Displays the vIPS Probe version running on the member Sensor. For non-vIPS Probe, "---" is displayed.

Note

This column is applicable only to Sensors that are members of a vIPS Cluster.

Cloud Cluster Id

Displays the Cluster ID for the vIPS Clusters. For non-vIPS Clusters, "---" is displayed.

Note

This column is applicable only to Sensors that are members of a vIPS Cluster.

Last Upgrade

Displays the date, time, and year of the last software upgrade.

System

Running Capacity: Displays the throughput of the Sensor.

Note

The information is displayed only for NS9600, NS9500, NS7600, NS7500, NS3600, and NS3500 Sensors.

License: Displays one of the following:

  • GUID-89BC390A-3C39-40F9-BCC2-CF115261968D-low.png Required: The reason can be one of the following:

    • License has not been assigned to the device.

    • The license is assigned, but its capacity is less than the device's configured capacity.

  • GUID-C395F07B-D0CD-480A-BCC2-FB886010F5DD-low.png Present: The license is present and valid.

  • GUID-7B2E01C8-BD1B-4E8F-8F61-6FC4E27E8413-low.jpg Expired: The license is assigned, but has expired.

  • GUID-D70B49BB-3DC3-44A9-98BE-B347D2898838-low.png Grace Period: The license has expired and is running on grace period.

    Note

    A grace period of 30 days is provided to subscription-based System licenses after they expire.

Click on the tooltip icon to assign or change the license. For more information, see Assign a license to a Sensor.

Stack

Name: Displays the name of the stack of NS9600 and NS9500 Sensors.

Capacity: Displays the throughput for the stack.

License: Displays one of the following:

  • GUID-89BC390A-3C39-40F9-BCC2-CF115261968D-low.png Required: The reason can be one of the following:

    • License has not been assigned to the stack.

    • The license is assigned, but its capacity is less than the stack's configured capacity.

  • GUID-C395F07B-D0CD-480A-BCC2-FB886010F5DD-low.png Present: The license is present and valid.

  • GUID-7B2E01C8-BD1B-4E8F-8F61-6FC4E27E8413-low.jpg Expired: The license is assigned, but has expired.

  • GUID-D70B49BB-3DC3-44A9-98BE-B347D2898838-low.png Grace Period: The license has expired and running on grace period.

    Note

    A grace period of 30 days is provided to subscription based system licenses after they expire.

Click on the tooltip icon to assign or change the license. For more information, see Assign a license to a Sensor.

HA Pair

If the device is a part of a HA pair, it displays the name of the HA pair the device belongs to.

Management IP Address

Displays the IP address of the management interface in the device and the subnet mask IP address.

Default Gateway

Displays the IP address of the default gateway configured on the Sensor.

FIPS Mode

Displays if FIPS mode is enabled or disabled.

Note

This is not applicable to NTBA appliances. It is displayed as ---.

Last Reboot

Displays the date and time of the previous reboot of the Sensor.

Owner Domain

Displays the admin domain name or the child admin domain name to which the device belongs.

Comment

Displays the location and contact information.

System Health

Overall Health

Displays the overall health of the system.

  • GUID-C395F07B-D0CD-480A-BCC2-FB886010F5DD-low.pngNormal: All the health indicators are normal.

  • GUID-89BC390A-3C39-40F9-BCC2-CF115261968D-low.pngAbnormal: One or more health indicators are abnormal.

  • ---: Disconnected or trust pending.

Internal Health

Displays the Sensor health.

  • GUID-C395F07B-D0CD-480A-BCC2-FB886010F5DD-low.png Normal: All the health indicators are normal.

  • GUID-89BC390A-3C39-40F9-BCC2-CF115261968D-low.png Abnormal: One or more health indicators are abnormal.

  • ---: Disconnected or trust pending.

Physical Ports

Displays if the ports are operating normally or abnormally.

  • GUID-C395F07B-D0CD-480A-BCC2-FB886010F5DD-low.png Normal: Physical ports are operating normally.

  • GUID-89BC390A-3C39-40F9-BCC2-CF115261968D-low.png Abnormal: One or more ports are down or the failover kit is in bypass mode.

  • ---: Disconnected or trust pending.

Click the link to navigate to the Physical Ports page of the device.

Inspection

Displays if the device is in layer 2 bypass mode.

  • GUID-C395F07B-D0CD-480A-BCC2-FB886010F5DD-low.png Normal – Traffic inspection is enabled

  • GUID-89BC390A-3C39-40F9-BCC2-CF115261968D-low.png Abnormal – Traffic inspection is disabled. This means that the device is in layer 2 bypass mode.

Click the link to navigate to the Layer 2 Bypass page of the device.

Performance

Displays if there are any performance related faults for the device.

  • GUID-C395F07B-D0CD-480A-BCC2-FB886010F5DD-low.png Normal – Indicates that the device has no unacknowledged performance faults

    Click the link to navigate to the Performance Charts page.

  • GUID-89BC390A-3C39-40F9-BCC2-CF115261968D-low.png Abnormal – Indicates that the device has one or more unacknowledged faults

Note

This is not applicable to NTBA appliances and vIPS Clusters. It is displayed as ---.

Hardware

Displays if the hardware has any temperature or power related issues.

  • GUID-C395F07B-D0CD-480A-BCC2-FB886010F5DD-low.png Normal – Indicates that the device has no unacknowledged faults

  • GUID-89BC390A-3C39-40F9-BCC2-CF115261968D-low.png Abnormal – Indicates that the device has one or more unacknowledged faults

Power Supplies

Displays the power supply status. The following are the status of the power supply:

  • GUID-C395F07B-D0CD-480A-BCC2-FB886010F5DD-low.png Operational - Indicates that the power supply is detected and operational.

  • GUID-89BC390A-3C39-40F9-BCC2-CF115261968D-low.png Non Operational - Indicates that the power supply is detected but not operational.

  • GUID-652E4406-645C-490C-B40F-525982F3CEA9-low.png Absent - Indicates that the power supply is absent.

  • GUID-7B2E01C8-BD1B-4E8F-8F61-6FC4E27E8413-low.jpg Error - Indicates Error when the system fails to fetch the real power status.

  • --- - Indicates that the trust is not yet established or power supply status is not applicable for it.

For NS-series Sensors, two units of power modules and power supply status are displayed:

  • A: Displays the Primary power module and power supply status

  • B: Displays the Secondary power module and power supply status

Note

Only for NS9300 Sensor, four units of power modules and power supply status are displayed:

  • For Primary, A and B displays the two units of power module and power supply status.

  • For Secondary, A and B displays the two units of power module and power supply status.

Note

For all untrusted devices and NTBA, it is displayed as ---.

Note

The NS3x00 Sensors do not support Secondary power supply module thus, the status of only Primary power supply module is displayed.

Faults

Total

Displays the number of unacknowledged faults generated for the device.

Click the link to navigate to the Faults window.

Critical

Displays the number of critical faults generated for the device.

Error

Displays the number of error faults generated for the device.

Warning

Displays the number of warning faults generated for the device.

Info

Displays the number of info faults generated for the device.

Sync

Status

Displays the synchronization state of the Sensor.

  • GUID-C395F07B-D0CD-480A-BCC2-FB886010F5DD-low.png Synchronized: Indicates that no pending changes are required.

  • GUID-D70B49BB-3DC3-44A9-98BE-B347D2898838-low.png Sync required: Indicates if any pending changes are required.

  • Sync in progress: Indicates when the deployment is in progress.

  • ---: Indicates that there is no trust established between the Sensor and the Manager.

Pending Changes

Displays the configuration changes updated to the device including signature set or callback detectors.

Last Sync

Displays the date and time of the last configuration change.

Deployment Mode

Displays if the configuration update was online or offline. This is displayed as Direct for online update and Indirect for offline update.

You can also view the device details in the Details panel to the right of the page by double-clicking anywhere on the selected device.

Device Details

Device Details



Bottom-left menu

The following options are available on the bottom-left corner of the Sensors tab:

Options

Description

Sync

Deploys configuration changes for a single device or multiple devices at the same time.

For more information, see Deploy pending changes to a device.

Other Actions

GUID-A7A75A7D-56E7-4308-9586-78FBE8BF92A0-low.jpg

You can perform the following actions:

  • Reboot: Perform either partial or a full reboot of the Sensor.

  • Shut Down: Shuts down the Sensor.

  • Reset CLI Password: Resets the CLI password for the Sensor.

  • Upgrade Device Software: Upgrades or downgrades the Sensor software version.

    For more information, see Update the latest software images on all devices.

  • Export Sync File: Exports the sync files to the local machine.

    Note

    You can export the sync file only when the Sync Node is set to Indirect.

<Number> devices showing

Displays the total number of devices connected to the Manager.

Faults

A Faults window is displayed on selecting the GUID-351017CB-78E2-49E7-9BE8-BF71A932633E-low.png tooltip icon for a particular fault on the Device Manager page. On selecting Clear All Filters, the Faults window displays all the faults generated for the selected Sensor.

Faults window

Faults window



This window is similar to the Faults tab in the Logs page. Except, this window displays just the faults for the selected device based on the severity. All the actions that can be performed in the Faults tab in the Logs page can also be performed through this window.

For more information, see the Faults section.

Click GUID-16F4A5CB-64F8-49D7-9C0D-A9BB21DAA8A6-low.png or GUID-79B4B39B-D65E-4558-BCEC-F984D6628F57-low.png to go back to the Device Manager grid view.