The new docs.trellix.com features a modernized UI and AI-powered conversational search. Content is currently available in English, with additional languages launching in early November 2026. We hope you enjoy the updated experience.

Configuring debug logging

Prev Next

Administrators can enable or disable debug logging for the installed modules.

When you enable debug logging for a module, events are logged for all components of the module.

For example, if you enable debug logging for Threat Prevention, events are logged for on-access scanning and on-demand scanning.

You can find the product logs in device log and also at /var/log/McAfeeSecurity.log.

Note

Run the log stream --level debug | grep -i com.trellix.CMF | grep -v sendDataOnRing | grep -v EGRESS | grep -v INGRESS | grep -v \(NetworkExtension\) command to view the Firewall debug logs.