By default, the Self-Protection option is enabled to ensure the security of the system and prevent unauthorized modifications to Drive Encryption files and the Registry. The Self-Protection feature leverages the Trellix SysCore component, which includes several kernel drivers. We recommended that Self-Protection be tested in isolation before being deployed to production, especially if non-Trellix security software is present on the endpoint.
To disable the Self-Protection on ePO - On-prem, perform the following steps:
On ePO - On-prem console, click → .
Select Edit from the product settings.
On the General tab, select the Disable Self-protection checkbox in the Self-Protection option.
Click Save.
Note
Reinstallation of the Self-Protection requires manual steps.