The iDump command dumps global variables defined in the rule to the log file if debug logging is enabled.
Note
Exploit Prevention is not supported in the ARM architecture.
Syntax
iDump filter
If filter is not specified, this command dumps all variables.
Parameter
Parameter | Description |
|---|---|
| String that represents the names of the global variables to dump. The |
For more Expert Rules examples, visit the Trellix Github repository.