The new docs.trellix.com features a modernized UI and AI-powered conversational search. Content is currently available in English, with additional languages launching in early November 2026. We hope you enjoy the updated experience.

Remove Active Response extensions

Prev Next

After you migrate from Active Response to Trellix EDR, you must remove Active Response extensions from ePO - On-prem.

  1. Log on to ePO - On-prem as administrator.

  2. Remove the following tags from your systems: MARSERVER and MARAGG.

  3. Select Menu → Software → Extensions.

  4. In the Extensions pane, select Active Response to display all related extensions.

  5. Click Remove to uninstall the extensions in the specific order (the components are interdependent).

    1. Active Response Workspace extension

    2. Active Response UI extension

    3. Active Response license extension

    4. Active Response server extension

    Important

    Make sure that you do not uninstall the Active Response client extension as it is required to monitor the devices that are not migrated to Trellix EDR.