The new docs.trellix.com features a modernized UI and AI-powered conversational search. Content is currently available in English, with additional languages launching in early November 2026. We hope you enjoy the updated experience.

Enabling or disabling the Python-based tool

Prev Next

Use the CLI commands to enable or disable the Python-based static analysis tool on the Network Security appliance. This tool allows the Network Security appliance to perform static analysis on submitted malware samples based on defined YARA rules and based on other file type analysis techniques. After you have configured the Network Security appliance to perform YARA analysis using the CLI, you can view the analysis of the results on the > page in the Web UI.

Note

You can enable or disable the Python-based tool only using the CLI. This tool is enabled by default.

You cannot enable the Python-based tool using the sensor CLI.

Because the Intelligent Virtual Execution - Server compute node performs static analysis on submitted malware samples, the output fields for each static analysis tool are not displayed for the show static-analysis config command on the sensor.

Prerequisites

  • Administrator or Operator access to the Network Security appliance