The new docs.trellix.com offers a modernized UI and AI-powered features like conversational searches. Content is currently available only in English. Other languages will be available in mid-October 2026. We hope you enjoy the new experience.

Prevent Dynamic Application Containment from containing trusted programs on a client system

Prev Next

If a trusted program is contained, you can allow it to run normally by creating a Dynamic Application Containment exclusion.

Before you begin

Make sure that the interface mode for the Trellix Endpoint Security (ENS) Client is set to Full access or log on to the Trellix Endpoint Security (ENS) Client as administrator.



Trellix ENS treats all file and folder exclusions as case insensitive — all case variations of the specified locations are excluded. For example, if you exclude C:\Temp\ABC, Trellix ENS also excludes C:\temp\abc and C:\TEMP\Abc.

Task
  1. Open the Trellix Endpoint Security (ENS) Client.

  2. Click Adaptive Threat Protection on the main Status page.

    Or, from the Action menu GUID-A3B12F55-7EE9-4519-8FCA-9ACA85C3661F-low.png, select Settings, then click Adaptive Threat Protection on the Settings page.

  3. Click Show Advanced.

  4. Click Dynamic Application Containment.

  5. In the Exclusions section, click Add to add processes to exclude from all rules.

  6. On the Add Executable page, configure the executable properties.

  7. Click Save, then click Apply to save the settings.