The new docs.trellix.com features a modernized UI and AI-powered conversational search. Content is currently available in English, with additional languages launching in early November 2026. We hope you enjoy the updated experience.

Access Protection global exclusions

Prev Next

Processes in the global exclusions list are excluded from rules.

Exclusions are useful when you want to exclude system-specific files or processes to run as configured.

Command

Description

--setapexclusions [name1:processfile1, name2: processfile2,…]

Excludes the specified processes, identified by a name and file, for all Access Protection rules. processfile can either be the file name or path. Wildcards [*, ?, and **] and comma-separated values are allowed.

Note

Adding a [*] in this setting ensures that all processes are excluded.

--getapexclusions

Prints the processes that are excluded for all rules.