The new docs.trellix.com features a modernized UI and AI-powered conversational search. Content is currently available in English, with additional languages launching in early November 2026. We hope you enjoy the updated experience.

Enabling or disabling ICAP service using the CLI

Prev Next

To enable or disable the ICAP service on a supported Network Security appliance using the CLI, use the commands in this section.

Prerequisites

  • Administrator access to the Network Security appliance.

To enable the ICAP service:
  1. Go to CLI configuration mode.

    hostname > enable
    hostname # configure terminal
  2. Enable the ICAP service.

    hostname (config) # icap-service enable
  3. Verify the status of the ICAP service.

    hostname (config) # show icap-service config
    ICAP Configuration:
      ICAP enabled             :  yes
        .
        .
        .

    The "ICAP enabled" line displays "yes" if the Network Security appliance can act as an ICAP server to perform detection on ICAP-encapsulated data.

  4. Save your changes.

    hostname (config) # write memory
  5. Make sure the third-party device is configured so that the device can act as an ICAP client. For details, see ICAP client configuration prerequisites.

To disable the ICAP service:
  1. Go to CLI configuration mode.

    hostname > enable
    hostname # configure terminal
  2. Disable the ICAP service.

    hostname (config) # no icap-service enable
  3. Verify the status of the ICAP service.

    hostname (config) # show icap-service config
    ICAP Configuration:
      ICAP enabled             :  no
        .
        .
        .

    The "ICAP enabled" line displays "no" if the Network Security appliance cannot as an ICAP server to perform detection on ICAP-encapsulated data.

  4. Save your changes.

    hostname (config) # write memory