The new docs.trellix.com features a modernized UI and AI-powered conversational search. Content is currently available in English, with additional languages launching in early November 2026. We hope you enjoy the updated experience.

Enforce Drive Encryption policies on a system group

Prev Next

Enable or disable policy enforcement for a product on a System Tree group. Policy enforcement is enabled by default, and is inherited in the System Tree.

Task
  1. Click Menu → Systems → System Tree → Assigned Policies tab, then select a group in the System Tree.

  2. Select Drive Encryption from the Product drop-down list, then click Enforcing next to Enforcement Status. The Enforcement page appears.

  3. To change the enforcement status, you must first select Break inheritance and assign the policy and settings below.

  4. Next to Enforcement status, select Enforcing or Not enforcing accordingly.

  5. Select whether to lock policy inheritance so that groups and systems that inherit this policy can't break enforcement, then click Save.