The new docs.trellix.com offers a modernized UI and AI-powered features like conversational searches. Content is currently available only in English. Other languages will be available in mid-October 2026. We hope you enjoy the new experience.

Set up Trellix ESM logging

Prev Next

Configure the default logging pool to send internal event data to the ELM.

  1. On the system navigation tree, select System Properties, then click ESM Management.

  2. On the Configuration tab, click Logging.

  3. Select the default logging options and storage pool to store internal event data, then click OK.

    • If you have more than one ELM, select the ELM you want to store the data on. The Trellix ESM device logs on to the ELM you select.

    • Select the IP address of the ELM that you want Trellix ESM to communicate with. They system notifies you when theTrellix ESM establishes communication with the ELM.

    Note

    If storage pools have not been configured on the ELM, a system message instructs you to add storage pools.