The new docs.trellix.com offers a modernized UI and AI-powered features like conversational searches. Content is currently available only in English. Other languages will be available in mid-October 2026. We hope you enjoy the new experience.

Configuring debug logging

Prev Next

Administrators can enable or disable debug logging for the installed modules.

When you enable debug logging for a module, events are logged for all components of the module.

For example, if you enable debug logging for Threat Prevention, events are logged for on-access scanning and on-demand scanning.

You can find the product logs in device log and also at /var/log/McAfeeSecurity.log.

Note

Run the log stream --level debug | grep -i com.trellix.CMF | grep -v sendDataOnRing | grep -v EGRESS | grep -v INGRESS | grep -v \(NetworkExtension\) command to view the Firewall debug logs.