The new docs.trellix.com offers a modernized UI and AI-powered features like conversational searches. Content is currently available only in English. Other languages will be available in mid-October 2026. We hope you enjoy the new experience.

Configure the Firewall allowed and blocked traffic logging for standalone systems

Prev Next

Follow these steps to enable Firewall allowed or blocked traffic logging in standalone systems.

  1. Log on to the system as a user with administrator rights.

  2. Change the directory to the Firewall bin directory:

    /opt/McAfee/ens/fw/bin/

  3. Run the command:

    • To enable logging allowed traffic for both adaptive and regular mode:

    ./mfefwcli --log-allowed-traffic enable

    • To enable logging blocked traffic for both adaptive and regular mode:

    ./mfefwcli --log-blocked-traffic enable

  4. To view log settings, run the command:

    ./mfefwcli --showlogsettings