You can exclude local drives and network drives from encryption by adding a registry value on the client. Setting this registry value makes the Trellix FRP driver not attach to local and network drives, but only to removable media drives and CD/DVD drives.
On the client system, create a DWORD value in
HKLM\System\CCS\Service\MfeEEFFcalledExemptNonRemovableand set its value to1.Restart the system to save the changes.
It fails to encrypt the file on the local drive, but encrypts the same file on a removable drive.
Note
This registry value must be manually set on each client system. It can also be remotely distributed with a systems management tool. When enabled, it is not possible to read (decrypt) any existing encrypted files on local drives or network shares.