The new docs.trellix.com features a modernized UI and AI-powered conversational search. Content is currently available in English, with additional languages launching in early November 2026. We hope you enjoy the updated experience.

Packet Capture in the Network Security Appliance

Prev Next

The Network Security appliance Web UI offers an option to capture packets for analysis of network traffic. Find the Packet Capture page in the Troubleshooting menu.

When you start a packet capture, enter the parameter rules and capture options to define how the capture runs. You can wait for a capture to be completed or stop it when required. After a packet capture is completed, you can download its details in the PCAP file format.

You can use the defined parameters and options of a completed capture and restart another one with a different name. You can delete completed capture instances from the packet capture list.

Refer to the steps below for help with creating, stopping, downloading, restarting and deleting packet captures.

Task

Steps

Starting a Packet Capture

See Starting a Packet Capture.

Stopping a Packet Capture

See Stopping a Packet Capture.

Restarting a Packet Capture

See Restarting a Packet Capture.

Deleting a Packet Capture

See Deleting packet capture.

Downloading Packet Capture Information

See Downloading Packet Capture information.