The new docs.trellix.com offers a modernized UI and AI-powered features like conversational searches. Content is currently available only in English. Other languages will be available in mid-October 2026. We hope you enjoy the new experience.

Prevent Access Protection from blocking trusted programs on a client system

Prev Next

If a trusted program is blocked, you can exclude the process by creating a policy-based or rule-based exclusion.

Access Protection exclusions don't apply to the Windows Services subrule type.

Task
  1. Open the Trellix Endpoint Security (ENS) Client.

  2. Click Threat Prevention on the main Status page.

    Or, from the Action menu GUID-A3B12F55-7EE9-4519-8FCA-9ACA85C3661F-low.png, select Settings, then click Threat Prevention on the Settings page.

  3. Click Show Advanced.

  4. Click Exploit Prevention.

    Note

    Exploit Prevention is not supported in the ARM architecture.

  5. Perform one of the following:

    To...

    Do this...

    Exclude items from all rules.

    1. In the Exclusions section, click Add to add items to exclude from all rules.

    2. On the Add Executable page, configure the executable properties.

    3. Click Save, then click Apply to save the settings.

    Specify processes for inclusion or exclusion in a user-defined rule.

    1. Edit an existing user-defined rule or add a rule.

    2. On the Add Rule or Edit Rule page, in the Executables section, click Add to add an executable to exclude or include.

    3. On the Add Executable page, configure the executable properties, including whether to include or exclude the executable.

    4. Click Save twice, then click Apply to save the settings.