If a trusted program is contained, you can allow it to run normally by creating a Dynamic Application Containment exclusion.
Exclusions created using the Trellix Endpoint Security (ENS) Client apply to the client system only. These exclusions aren't sent to Trellix ePO - On-prem and don't appear in the Exclusions section in the Dynamic Application Containment settings.
Create global exclusions in the Dynamic Application Containment settings in Trellix ePO - On-prem.
Endpoint Security treats all file and folder exclusions as case insensitive — all case variations of the specified locations are excluded. For example, if you exclude C:\Temp\ABC, Endpoint Security also excludes C:\temp\abc and C:\TEMP\Abc.
Identify trusted applications to exclude: View the list of contained applications sent from managed systems to Trellix ePO - On-prem.
Select Menu → Policy → Policy Catalog, then select Endpoint Security Adaptive Threat Protection from the Products list in the left pane.
From the Category list in the right pane, select Dynamic Application Containment.
Click the Edit link for an editable policy.
Click Show Advanced.
In the Exclusions section, click Add to add processes to exclude from all rules.
On the Exclusion page, configure the executable properties.
Click Save twice to save the policy settings.