The new docs.trellix.com features a modernized UI and AI-powered conversational search. Content is currently available in English, with additional languages launching in early November 2026. We hope you enjoy the updated experience.

Using lists in searches

Prev Next

Lists let you conduct searches for multiple items at one time, for example, shared indicators or executive machine IPs. If you have many fields that you would like to include in search queries, you can create a list and use the list name in the search query. The list name serves as a variable in the TQL syntax, for example, fieldname:$listname. For more information on the TQL syntax, see the TQL Reference Guide.

To view, create, and manage lists, from the main menu select Configure > Lists. Or, from the Search page, select Manage Lists from the options menu at the top right of the page.