The new docs.trellix.com features a modernized UI and AI-powered conversational search. Content is currently available in English, with additional languages launching in early November 2026. We hope you enjoy the updated experience.

Disable Self-Protection feature in Trellix Drive Encryption

Prev Next

By default, the Self-Protection option is enabled to ensure the security of the system and prevent unauthorized modifications to Drive Encryption files and the Registry. The Self-Protection feature leverages the Trellix SysCore component, which includes several kernel drivers. We recommended that Self-Protection be tested in isolation before being deployed to production, especially if non-Trellix security software is present on the endpoint.

To disable the Self-Protection on ePO - On-prem, perform the following steps:

  1. On ePO - On-prem console, click Menu → Policy Catalog.

  2. Select Edit from the product settings.

  3. On the General tab, select the Disable Self-protection checkbox in the Self-Protection option.

  4. Click Save.

Note

Reinstallation of the Self-Protection requires manual steps.