The new docs.trellix.com features a modernized UI and AI-powered conversational search. Content is currently available in English, with additional languages launching in early November 2026. We hope you enjoy the updated experience.

Export

Prev Next

You can export the files in instances where further analysis of the attack is required. Alert details and packet capture of an alert can be exported.

Alert details

The alert details are exported as a .csv file. You can also include to export the packet capture for that alert.

Export alert details
Export alert details


Packet capture

You can export only the packet capture for the selected alert. This helps analyze the specific attack details. You can export the packet capture only if you have the permission enabled by your system administrator for your user.

Note

The Packet Capture Unavailable message is displayed when there is no packet capture available for an alert.

To export alert details or packet capture for an alert:

  1. Go to Analysis → <Admin Domain Name> → Attack Log.

  2. Double-click on the alert for which you want to export the details.

    The <Attack Name> panel opens on the right hand side.

  3. Under the Summary tab, click Export on top, and select either Alert Details or Packet Capture.