You can view the Trellix Agent product log of a managed system from the ePO - On-prem console remotely.
Make sure that Trellix Agent can communicate with ePO - On-prem.
Navigate → → .
Under the Trellix Agent General policy category, navigate to the Logging tab.
Review the new policy setting: In Product logging, adjust the value if necessary for collecting large point product log.
You can download the collected Trellix Agent and integrated Trellix product logs in a single zipped file once the collection is complete.
Select → → , then select the system for which you want to collect the product log.
From the Actions drop-down list, select Agent, then select Single System Troubleshooting to view the product log.
Click Collect.
In the Products dialog that appears, select the checkbox corresponding to Agent and any other integrated Trellix point product(s) whose logs you wish to collect.
Note
This feature is available only if both the extension and client are updated to version 5.8.5. Only integrated Trellix products will appear in the list for log collection.
Click (to confirm selection and initiate data retrieval).
Once the collection is complete, click .
Note
The download option is available only after the product log collection is complete. SST does not require the Enable Remote Logging option to be configured for this log collection process.
The collected logs will be included in a single ZIP file named
<Machine_Name>_productlogs.zip.