The new docs.trellix.com features a modernized UI and AI-powered conversational search. Content is currently available in English, with additional languages launching in early November 2026. We hope you enjoy the updated experience.

show savedalertinfo

Prev Next

In the event that connectivity between the Sensor and the Manager is interrupted, the Sensor saves alert data internally. This data is sent to the Manager when connectivity is re-established and the internal information is deleted. This command shows the number of alerts and packet logs that have been saved within the Sensor.

Information displayed by the show savedalertinfo command includes the following:

  • Whether a file of saved alerts exists (if the connectivity between Sensor and Manager is currently established, no file will exist)

  • Number of saved alerts and their size

  • Whether a file of saved packet logs exists

  • Number of saved packet logs and their size

This command has no parameters.

Syntax:

show savedalertinfo

Sample Output:

intruShell@john> show savedalertinfo

Saved Alert Status : Alerts = 456, Size = 81168

Saved Packet Status : No Saved File

Applicable to:

NS-series Sensors