In the Remediation Sessions grid, select the session that you want to delete.
Click the Delete icon. The deletion is logged in the following location: /var/log/supervisor/host-remediation-server_1.0.0_<id>.log
Use the following CLI Endpoint Security command to view the log.
show log matching "/supervisord: hostremediation- server_"Note
The log location is protected, you need an Endpoint Power Edition License or a Managed Defense license to access the log.

Note
You can use the Endpoint Security Event Streamer module to stream all Windows PowerShell logs to Trellix Helix or a Security Information and Event Management (SIEM) system. For more information, see the FireEye Market.