The new docs.trellix.com features a modernized UI and AI-powered conversational search. Content is currently available in English, with additional languages launching in early November 2026. We hope you enjoy the updated experience.

diagnostic Audit

Prev Next

Runs a canned diagnostic script. The full version runs about 15 audits, depending on the operating system of the endpoint. These audits may include system, agent info, process API, log, file acquisitions, registry raw, ARP, DNS, route, raw file listing, and config audits. The simplified version consists of only two audits: log and config. The diagnostic script varies slightly by operating system platform.

This audit cannot be imported into a data acquisition script. See Audits That Cannot Be Imported on page 1.

Supported Platforms

Windows, macOS, and Linux

Input Parameters

The following input parameters are available for this audit.

format

Details

Values

Description

Platform

All

Windows, macOS, and Linux environments

Format

String

Valid values are a string of text.

Required?

no

This parameter is not required.

Repeatable?

no

This parameter can be specified only once per audit request. It cannot be repeated.

Valid Values

"standard" "simple"

Valid values are "standard" to acquire full diagnostics for FireEye Customer Support or "simple" to acquire a simplified version of diagnostics. The default is "standard".