The new docs.trellix.com features a modernized UI and AI-powered conversational search. Content is currently available in English, with additional languages launching in early November 2026. We hope you enjoy the updated experience.

Remove Drive Encryption Trellix Drive Encryption - SaaS with token authentication

Prev Next

Use this task to remove Drive Encryption Trellix Drive Encryption - SaaSwith token authentication.

Make sure that you have:

  • The DETech (Standalone) boot disk

  • The daily authorization code

    Note

    Users can download the COD tool from the Trellix website.

Use this task when:

  • Windows becomes corrupt

  • You cannot access the data of an encrypted system

  • Encryption or decryption fails

Note

Standalone DETech can't be used to remove Drive Encryption Trellix Drive Encryption - SaaS from UEFI systems activated with Opal drives. DEOpalTech for WinPE4 should be used instead.

  1. Make a sector level backup before performing this operation.

  2. Make sure that the system’s main power supply is plugged in. Do not attempt to perform this task on battery power only.

  3. Restart the unrecoverable system using the DETech (Standalone) boot disk. This loads the Trellix DETech interface.

  4. Enter the daily authorization code, then confirm the authorization status.

  5. You might need to select the Select Boot Disk option to specify which drive DETech tries to boot from. This depends on the implementation of the BIOS.

  6. Authenticate with Token, the confirm the authentication status changes to Authenticated.

  7. Click Remove DE under Actions.

  8. Click Remove. This removes the encryption and boot sector from the client system, however, this does not remove Drive Encryption Trellix Drive Encryption - SaaS client files. It might take a few hours to perform the decryption and complete the operation depending on the system performance and the storage capacity of the drive or partition.

    This removes the encryption and boot sector from the client system, however, this does not remove Drive Encryption Trellix Drive Encryption - SaaS client files. It might take a few hours to perform the decryption and complete the operation depending on the system performance and the storage capacity of the drive or partition.

Removing Drive Encryption Trellix Drive Encryption - SaaS through DETech does not uninstall the DEAgent or Drive EncryptionTrellix Drive Encryption - SaaScomponents from the operating system. When you restart the system, the OS loads and these components synchronize with the ePO - On-prem ePO - SaaS server and apply the current policy. If you wish to prevent Drive Encryption Trellix Drive Encryption - SaaS from activating and encrypting, disconnect the system from the network or change its policy in ePO - On-prem ePO - SaaS before restarting the system. When configuring the Drive Encryption Trellix Drive Encryption - SaaS policy, uncheck the Enable Policy option in the General tab. Ensure that you do this only for the selected system and not for all systems in the System Tree.

For instructions on configuring policies, refer to Trellix Drive Encryption Trellix Drive Encryption - SaaS Product Guide.