The new docs.trellix.com features a modernized UI and AI-powered conversational search. Content is currently available in English, with additional languages launching in early November 2026. We hope you enjoy the updated experience.

Supported Exploit Prevention commands

Prev Next

You can view all Exploit Prevention policies and their configuration details.

Command

Description

Comments

--version

Prints the Exploit prevention content version.

To view Exploit prevention content version, run:

./mfetpcli --version

Content version carries major version and build number. Build number is 5 digit number

--getallepsignatures

Prints signature ID, signature name, CVE details, block status , report status, and type of signature.

If signature is associated with any CVE, then the CVE ID will be printed in the output.

--getepstatus

Prints the status of exploit prevention.

To view the status of Exploit prevention, run:

./mfetpcli --getepstatus

--setepstatus

Allows user to enable or disable exploit prevention feature.

To enable or disable Exploit prevention, run:

./mfetpcli --setepstatus enable/disable

To view the status of Exploit prevention, run:

./mfetpcli --getepstatus

Note

Exploit Prevention is not supported on unmanaged system. So, you cannot enable exploit prevention from CLI in unmanaged mode.

--getepexclusions

Allows user to add exclusion files.

To check the list of exclusions, run:

/mfetpcli --getepexclusions