A trusted user is an authorized user with privileges to make changes to the allowed list. A trusted user can override protection and perform update operations on protected endpoints. For example, you can add administrators as trusted users to allow them to install or update any software. You must add the user details and the domain details.
You must have the required permissions to perform this task. If you don't, contact the Trellix ePO On-premises administrator.
Make sure that the Active Directory environment is configured as a registered server in the ePO Server Configuration → Registered Servers menu.
On the Users tab, click AD Import to open the Import from Active Directory dialog box.
Select the appropriate server under Active Directory Server.
(Optional) If the selected Active Directory server is a Global Catalog server, then enable the Global Catalog Search option to find users in the catalog only.
(Optional) Select the Exact Match Search option if you only want exact search results.
In the Search For: field, select whether to search for Active Directory Users or Groups.
To search for Active Directory Users: Specify whether to search for users based on the UPN/Common Name (User Principal Name) or SAM account name. Your search determines the authorized user. If you use the UPN or common name, the user is trusted with the UPN; if you use the SAM account name, the user is trusted with the SAM account name. Enter the user name in the User Name field, then click Find. Select the appropriate user name and click OK.
To search for Active Directory Groups: Specify the group name to search in Active Directory, then click Find. Select the appropriate group and click OK. When the policy is saved, the Solidcore: LDAP Server Groups Sync ePO server task (a hidden "Internal task") will run to import users from the group into the policy. This server task runs when an Active Directory group is added to the policy, or every 24 hours to import new users. You can view the task results in the ePO Server Task Log menu.
Note
To add Active Directory Groups as Trusted Users in a policy, the Group must be added via an Application Control Rule Group. The Group cannot be added to a policy under the My Rules section. If Active Directory Groups are added to the My Rules section of a policy, the users in these groups will not be imported to the policy nor applied to the Application Control clients. Using Application Control Rule Groups makes sure that all changes to a user group automatically cascade across all rule groups and associated policies.
Click OK to save the policy changes.