The new docs.trellix.com features a modernized UI and AI-powered conversational search. Content is currently available in English, with additional languages launching in early November 2026. We hope you enjoy the updated experience.

How the software works in an unmanaged environment

Prev Next

Application Control creates a whitelist of all authorized executable files and blocks the execution of any program that isn't whitelisted. Change Control monitors and prevents changes to the file system and it write-protects and read-protects critical files from unauthorized tampering.

The whitelist details authorized files and determines trusted or known files. In Enabled mode, only files that are present in the whitelist are allowed to run. All files in the whitelist are protected and can't be changed or deleted.

Application Control stores the whitelist for each drive or volume at the following location:

  • <volume>/.solidcore/scinv