The new docs.trellix.com features a modernized UI and AI-powered conversational search. Content is currently available in English, with additional languages launching in early November 2026. We hope you enjoy the updated experience.

Enabling or disabling ICAP blocking mode using the CLI

Prev Next

To enable or disable ICAP blocking mode on a appliance using the CLI, use the [no] icap-service block-mode enable command.

Prerequisites

To enable ICAP blocking mode:
  1. Go to CLI configuration mode.

    hostname > enable
    hostname # configure terminal
  2. Enable ICAP blocking mode on the appliance.

    hostname (config) # icap-service block-mode enable
  3. Verify the status of ICAP blocking mode.

    hostname (config) # show icap-service config
    ICAP Configuration:
      ICAP enabled               :  yes
      Interface                  :  ether1
      Request Mod Enabled        :  yes
      Response Mod Enabled       :  yes
      Block-mode Enabled         :  yes
      Response-page Enabled      :  yes
        .
        .
        .

    The "Block-mode Enabled" line displays "yes" if blocking mode is enabled for the ICAP service.

  4. Save your changes.

    hostname (config) # write memory
To disable ICAP blocking mode:
  1. Go to CLI configuration mode.

    hostname > enable
    hostname # configure terminal
  2. Disable ICAP blocking mode on the appliance.

    hostname (config) # no icap-service block-mode enable
  3. Verify the status of ICAP blocking mode.

    hostname (config) # show icap-service config
    ICAP Configuration:
      ICAP enabled               :  yes
      Interface                  :  ether1
      Request Mod Enabled        :  yes
      Response Mod Enabled       :  yes
      Block-mode Enabled         :  no
      Response-page Enabled      :  yes
        .
        .
        .

    The "Block-mode Enabled" line displays "no" if blocking mode is disabled for the ICAP service.

  4. Save your changes.

    hostname (config) # write memory