The new docs.trellix.com features a modernized UI and AI-powered conversational search. Content is currently available in English, with additional languages launching in early November 2026. We hope you enjoy the updated experience.

Other Access Protection commands

Prev Next

You can view all Access Protection rules and their configuration details.

Commands to manage Access Protection rules

Commands

Description

--getallaprules

Prints all the Access Protection rules (irrespective of whether the rules are enabled or disabled). Information displayed includes rule index, rule name, actions, and origin (Trellix-defined or User-defined).

To view all Access protection rules, run:./mfetpcli --getallaprules

--getapruleconfig [ruleindex]

Prints the details of the Access Protection rule identified by ruleindex. Information displayed includes actions, processes/users to which the rule applies, subrule and their associated targets.

To print the Access Protection rules, run:

./mfetpcli --getapruleconfig [ruleindex]

--deleteaprule [ruleindex]

To delete the Access Protection rule identified by ruleindex.

Rule name cannot be used when deleting rules.

Note

Trellix-defined rules cannot be deleted.

To delete an Access Protection rule, run: ./mfetpcli --deleteaprule [ruleindex]