The new docs.trellix.com features a modernized UI and AI-powered conversational search. Content is currently available in English, with additional languages launching in early November 2026. We hope you enjoy the updated experience.

Installer logs

Prev Next

Installer log files list details about the ePO - On-prem installation process.

These logs provide information about:

  • Actions taken by specific components

  • Administrator services used by the server

  • Success and failure of critical processes

File name

Log type

Location

Description

AH5100-Install-MSI.log

Agent Handler installation

C:\ProgramData\McAfee\ePolicy Orchestrator

This file logs all Agent Handler installation details including:

  • Installer actions

  • Installation failures

AH5100-ahetupdll.log

Temporary

%temp% (on the Agent Handler server)

Logs Agent Handler back‑end events.

core-install.log

Temporary

%temp%\TrellixLogs\ePO5100-Troubleshoot\MFS

Generated when the installer calls the MFS ANT installer. Provides information about:

  • Creation of server database tables

  • Installation of server components

Note

This file is deleted if the installation succeeds.

epo-install.log

Installation

C:\ProgramData\McAfee\ePolicy Orchestrator

Created when the installer calls the ANT installer.

EPO5100-Checkin-Failure.log

Installation

C:\ProgramData\McAfee\ePolicy Orchestrator

Generated when installer fails to check in any of these package types:

  • Extensions

  • Plug-ins

  • Deployment packages

  • Agent packages

EPO5100-CommonSetup.log

Installation

C:\ProgramData\McAfee\ePolicy Orchestrator

Contains installer details such as:

  • Custom Action logging

  • SQL, DTS (Microsoft Data Transformation Services), and service-related calls

  • Registering and unregistering DLLs

  • Files and folders selected for deletion at restart

EPO5100-Install-MSI.log

Installation

C:\ProgramData\McAfee\ePolicy Orchestrator

The primary installation log. Contains installation details such as installer actions and installation failures.

<ExtensionFileName>.cmd

Temporary

%temp%\TrellixLogs\ePO5100-troubleshoot\OutputFiles

Created by the installer. Contains the command (sent to Remote‑Client) to check in extensions.

Note

If the installation succeeds, these files are deleted.

MFS5100-CommonSetup.log

Installation

C:\ProgramData\McAfee\ePolicy Orchestrator

Contains core functionality installer details.