The new docs.trellix.com features a modernized UI and AI-powered conversational search. Content is currently available in English, with additional languages launching in early November 2026. We hope you enjoy the updated experience.

Get Packet Capture of an Alert

Prev Next

This URL returns packet capture file data associated with the alert.

Resource URL

GET /domain/<domainId>/threatanalysis/packetlog?alertId=<alertId>&device=<deviceName>

Request Parameters

URL Parameters:

Field Name Description Data Type Mandatory
domainId Domain id Number Yes

Query Parameters:

Field Name Description Data Type Mandatory
alertId Alert id Number Yes
device Name of the device required in case multiple devices are managed by a single Manager. String No

Response Parameters

Returns packet capture file data associated with the alert.

Example

Request

GET https://<NSM_IP>/sdkapi/domain/0/threatanalysis/packetlog?alertId=103&device=NS-9200

Payload

NA

Response

<packet capture file data>

Error Information

Following error code is returned by this URL:

No HTTP Error Code SDK API errorId SDK API errorMessage
1 500 1001 Internal error