This table lists the commands with the supported arguments and their description. In the Argument column, the supported arguments for the commands are listed in alphabetical order.
Command | Argument | Description |
|---|---|---|
|
| Always authorizes by file name. This is a deprecated technique. For more information, contact Trellix Support. |
| Bypasses from process context file operations attribute. | |
| Always unauthorizes by file name. This is a deprecated technique. For more information, contact Trellix Support. | |
|
| Authorizes a binary using the checksum value. |
| Bans a binary using the checksum value. | |
| Includes a rule-id associated to the updater-related actions. | |
| Authorizes a binary and also provides updater rights when used with the | |
|
| Indicates to specify an ID while switching to the Update mode. This ID can be used for tracking purposes in a change management for ticketing system. |
| Indicates to use a descriptive text for the workflow ID. | |
|
| Fixes any inconsistencies that are encountered. |
|
| Appends the configuration values. |
| NA | NA |
| NA | NA |
| NA | NA |
|
| Adds sinks to the specified event. |
| Removes sinks from the specified event. | |
|
| Lists all features (including the hidden features). For more information, contact Trellix Support. |
| NA | NA |
| NA | NA |
| NA | NA |
|
| Lists details of files in the allow list. |
| NA | NA |
| NA | NA |
|
| Includes the specified pattern to match file names for content change tracking. The pattern can contain the This argument is useful on ePO - On-prem-managed configuration. The content change tracking for files can be viewed only at ePO - On-prem. |
| Excludes the specified pattern to match file names for content change tracking. The pattern can contain the This argument is useful on ePO - On-prem-managed configuration. The content change tracking for files can be viewed only at ePO - On-prem. | |
| Includes the directory non-recursively for content change tracking. This argument is useful on ePO - On-prem-managed configuration. The content change tracking for files can be viewed only at ePO - On-prem. | |
| Includes the file for content change tracking. This argument can be specified with the | |
| Excludes the specified component for monitoring changes. | |
| Flushes all monitoring or content change tracking rules. | |
| Includes the specified component for monitoring changes. | |
| (Optional) Specifies the file encoding. The supported encoding types are Auto-Detect, UTF-8, UTF-16, and ASCII, If the | |
| Removes all monitoring rules. | |
|
| Removes the password for using Application Control. |
|
| Excludes specific components from a read-protected directory, or volume. |
| Flushes all components from read protection. | |
| Includes files, directories, or volumes for read protection. | |
| Lists the read-protected components. | |
| Removes read protection applied to files, directories, or volumes. | |
|
| Forcefully closes the ePO - On-prem command and recover the local CLI. |
|
| Removes files present under the specified path component and subdirectories from the allow list. |
|
| Suppresses all output except for errors. |
| Displays all processed components. | |
| NA | NA |
|
| Excludes one or more specified paths to the directories or volumes from a list of trusted directories or volumes. |
| Removes all directories and volumes from the trusted rule. | |
| Adds one or more specified paths to the directories or volumes as trusted directories or volumes. | |
| Lists all trusted directories and volumes. | |
| Removes the specified directories or volumes from the trusted rule. | |
| - | Displays all processed components. |
|
| Excludes the child processes of a binary file to be added as an updater from inheriting the updater rights. |
| Disables event logging for a file to be added as an updater. | |
| Adds a file as an updater only when it is started by specified parent process. | |
| Performs these operations:
| |
| NA | NA |
|
| Excludes specific components from a write-protected directory or volume. |
| Flushes all components from write protection. | |
| Write-protects files, directories, or volumes. | |
| Lists the write-protected components. | |
| Removes write protection applied to files, directories, or volumes. |