The new docs.trellix.com offers a modernized UI and AI-powered features like conversational searches. Content is currently available only in English. Other languages will be available in mid-October 2026. We hope you enjoy the new experience.

Deploy the client software from Trellix ePO - On-prem

Prev Next

Use Trellix ePO - On-prem to deploy the client software to systems in your network that are managed.

To make sure that On-Access Scan is disabled, configure the Trellix Endpoint Security (ENS) Threat Prevention On-Access Scan policy with the Enable On-Access Scan option is unselected.

Task

  1. Log on to the Trellix ePO - On-prem server as an administrator.

  2. Select Menu | Systems | System Tree, then select a group or systems.

  3. On the Assigned Client Tasks tab, click Actions, then click New Client Task Assignment.

  4. Complete these options, then click Create New Task:

    1. For product, select Trellix Agent.

    2. For task type, select Product Deployment.

  5. On the Client Task Catalog page:

    1. Type a name for the task.

    2. Select Mac as the target platform.

    3. In Products and components, select the product, select Install as the action, then click Save.

      Tip

      You can add more products by using GUID-5C1CD8BE-B6B7-4972-83D9-46937486746D-low.png.

      • To deploy the software from Trellix ePO - On-prem with the On-Access Scan option disabled, you can use the Trellix Agent command-line option to pass the OAS-off parameter in the deployment task. The command-line option is available in the Client Task Catalog page under the Products and Components section. By default, the software is installed with the On-Access Scan option enabled.

      • To deploy the software from Trellix ePO - On-prem with Firewall disabled, you can use the Trellix Agent product deployment command line option to pass the FW-off parameter in the deployment task.

        To deploy Threat Prevention or Adaptive Threat Protection in async mode, pass the command line argument as async in the product deployment task.

      • To deploy Threat Prevention or Adaptive Threat Protection in sync mode, pass the command line argument as sync in the product deployment task.

      • To move Threat Prevention or Adaptive Threat Protection from sync to async mode or vice versa, you can also run the Trellix ePO - On-prem Deployment Kit (EEDK) package. For more information see Trellix Knowledge Base article KB91337.

      • During upgrade if you don't include the argument, Threat Prevention and Adaptive Threat Protection is upgraded from Kext to sync mode and Kextless to async mode.

  6. On the Client Task Assignment Builder page:

    1. Select the task, then click Next.

    2. Schedule the task to run immediately, click Next to view a summary of the task, then click Save.

  7. In the System Tree, select the systems or groups where you assigned the task, then click Wake Up Agents.

  8. Select Force complete policy and task update, then click OK.