When Application Control is running in Enabled mode, the only programs that are allowed to run are trusted and authorized. Malicious or unauthorized programs are not allowed to run.
Before you begin
Use the SC: Pull Inventory client task to fetch the inventory details from the endpoints before placing them in Enabled mode. This ensures that the inventory is loaded and updated in Trellix ePO - On-prem database and prevent any mismatch.
Task
- On the Trellix ePO - On-prem console, select Menu → Systems → System Tree.
-
Select a group or an endpoint:
- Group — Go to System Tree and click the Assigned Client Tasks tab.
- Specific endpoint — On the Systems tab, select the endpoint you want to work with and click Actions → Agent → Modify Tasks on a Single System.
-
Click
Actions → New Client Task Assignment to open the
Client Task Assignment Builder page.
- For Product, select Solidcore 8.x.x.
- For Task Type, select SC: Enable.
- For Task Name, click Create New Task to open the Client Task Catalog page.
- Enter the task name and add any descriptive information.
- Select the platform and sub-platform, then select Application Control, Change Control, or both.
-
Deselect
Reboot endpoint, then click
Save.
When using Solidcore client version 6.1.0 or later, restarting the system is not needed to enable the software.
- Click Next to open the Schedule page.
- Specify scheduling details, then click Next.
- Review and verify the task details, then click Save.
- (Optional) Wake up the agent to send your client task to the endpoint immediately.