The xAgent Default Policy defines the global xAgent configuration settings that apply to all host endpoints in your environment. This policy maps to the agent configuration file and defines default settings for all policy categories, including the server address list. The xAgent default policy also defines exclusion policies that globally exclude files and folders, MD5 hashes, and processes from specific xAgent processes.
The xAgent default policy has the lowest policy priority level, meaning all other policies assigned to your host endpoints take precedence over it.
All agents provisioned with an Endpoint Security (HX) server version 4.5 or later automatically receive the default policy when added to your network. You can modify the default settings within each policy category, enable or disable a specific xAgent policy, or exclude specific agent behaviors from the xAgent default policy. If you modify the default policy, all changes will immediately take affect on all of host endpoints in your enterprise.
Note
Endpoint Security (HX) version 4.5 or later does not support agent configuration file changes or xAgent policy and setting changes through the CLI.
The xAgent default policy settings are applied to all xAgent s deployed in your environment, including MIR or Windows xAgent s version 11.
You cannot disable or delete the xAgent default policy or change the policy name, description, or priority level. Use the Endpoint Security (HX) Web UI or the API to view and modify the agent default policy.
During an initial software install
Endpoint Security (HX) server 4.5 uses Trellix default values to define the agent configuration settings for each agent policy category and deploys the policy to all agents when you initially install the xAgent software on your host endpoints. You can modify the settings in the default policy and enable or disable agent behaviors on your host endpoints. See Agent Configuration File Reference for more information about the Trellix default values assigned to each xAgent setting.
After a software upgrade
When you upgrade your Endpoint Security (HX) server to version 4.5, the server migrates and maps your existing global configuration settings to the xAgent Default Policy and applies the policy to all host endpoints in your environment. This includes any existing global default settings defined for each policy category and any existing global exclusion policies defined for a specific agent process. See Policy Migration for more information.