The new docs.trellix.com offers a modernized UI and AI-powered features like conversational searches. Content is currently available only in English. Other languages will be available in mid-October 2026. We hope you enjoy the new experience.

Supported Exploit Prevention commands

Prev Next

You can view all Exploit Prevention policies and their configuration details.

Command

Description

Comments

--version

Prints the Exploit prevention content version.

To view Exploit prevention content version, run:

./mfetpcli --version

Content version carries major version and build number. Build number is 5 digit number

--getallepsignatures

Prints signature ID, signature name, CVE details, block status , report status, and type of signature.

If signature is associated with any CVE, then the CVE ID will be printed in the output.

--getepstatus

Prints the status of exploit prevention.

To view the status of Exploit prevention, run:

./mfetpcli --getepstatus

--setepstatus

Allows user to enable or disable exploit prevention feature.

To enable or disable Exploit prevention, run:

./mfetpcli --setepstatus enable/disable

To view the status of Exploit prevention, run:

./mfetpcli --getepstatus

Note

Exploit Prevention is not supported on unmanaged system. So, you cannot enable exploit prevention from CLI in unmanaged mode.

--getepexclusions

Allows user to add exclusion files.

To check the list of exclusions, run:

/mfetpcli --getepexclusions