The new docs.trellix.com features a modernized UI and AI-powered conversational search. Content is currently available in English, with additional languages launching in early November 2026. We hope you enjoy the updated experience.

Configuring the Deny List policy

Prev Next

The Deny List policy is configured using the Module Policy page.

  1. Log in to the Endpoint Security Web UI as an administrator.

  2. From the Admin menu, select Policies.

  3. Locate to the policy that you want to edit.

  4. In the Actions column, click the gear icon, and click Edit Policy.

  5. Navigate to the Deny List section and move the Enable Deny List toggle to On.

  6. Optionally, add file paths or process for overall exclusion.

    • Process Exclusion: Excludes the configured processes. Currently, wildcards are not supported.

    • Files/Folder Exclusion: Excludes configured files and folders. Wildcards are also supported.

      Note

      For more information on module exclusion guidelines refer to, Deny List Exclusion GuidelinesDeny List Exclusion Guidelines

  7. Configure Max File Size and file extensions for hash based scans.

    Note

    Deny List will only consider file which is 0 to configured file size.

  8. Click Save to save the module settings.

image5.png