The new docs.trellix.com features a modernized UI and AI-powered conversational search. Content is currently available in English, with additional languages launching in early November 2026. We hope you enjoy the updated experience.

How the software works in an unmanaged environment

Prev Next

Application Control creates a allow list of all authorized executable files and blocks the execution of any program that isn't allowed. Change Control monitors and prevents changes to the file system and it write-protects and read-protects critical files from unauthorized tampering.

The allow list details authorized files and determines trusted or known files. In Enabled mode, only files that are present in the allow list are permitted to run. All files in the allow list are protected and can't be changed or deleted.

Application Control stores the allow list for each drive or volume at the following location:

  • <volume>/.solidcore/scinv