The new docs.trellix.com features a modernized UI and AI-powered conversational search. Content is currently available in English, with additional languages launching in early November 2026. We hope you enjoy the updated experience.

Configure the Firewall allowed and blocked traffic logging for standalone systems

Prev Next

Follow these steps to enable Firewall allowed or blocked traffic logging in standalone systems.

  1. Log on to the system as a user with administrator rights.

  2. Change the directory to the Firewall bin directory:

    /opt/McAfee/ens/fw/bin/

  3. Run the command:

    • To enable logging allowed traffic for both adaptive and regular mode:

    ./mfefwcli --log-allowed-traffic enable

    • To enable logging blocked traffic for both adaptive and regular mode:

    ./mfefwcli --log-blocked-traffic enable

  4. To view log settings, run the command:

    ./mfefwcli --showlogsettings