# Whitelisting Elastic Agent

**URL:** <https://discuss.elastic.co/t/whitelisting-elastic-agent/338367>\
**Category:** Elastic Security\
**Created:** [July 14, 2023, 4:22am UTC](https://discuss.elastic.co/t/whitelisting-elastic-agent/338367 "2023-07-14T04:22:36Z")\
**Posts on this page:** 4\
**Page:** 1

<div class="post-metadata">

**Author:** ![SomeRobot](https://avatars.discourse-cdn.com/v4/letter/s/4491bb/32.png) [@SomeRobot](https://discuss.elastic.co/u/SomeRobot)\
**Post date:** [July 14, 2023, 4:22am UTC](https://discuss.elastic.co/t/whitelisting-elastic-agent/338367/1 "2023-07-14T04:22:37Z")

</div>

We have one or two systems that are running an additional AV software due to reasons beyond our teams control. That being said, we want to deploy the Elastic Agent on the system and will be enabling Defend. What paths do we need to whitelist on the 3rd party AV software to ensure it does not interfere with the Elastic Agent? I am aware we could probably just whitelist the entire 'C:\Program Files\Elastic\*' directory, but that doesn't seem like best practice. Does anyone have the specific paths that need to be whitelisted? I haven't been able to find a good reference.  
Thanks!

---

<div class="post-metadata">

**Author:** ![ferullo](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/ferullo/32/74240_2.png) [@ferullo](https://discuss.elastic.co/u/ferullo)\
**Post date:** [July 14, 2023, 1:28pm UTC](https://discuss.elastic.co/t/whitelisting-elastic-agent/338367/2 "2023-07-14T13:28:51Z")

</div>

It's not documented on [elastic.co](http://elastic.co) yet, but [this](https://github.com/elastic/security-docs/issues/3535) GitHub issue has the information you're looking for.

---

<div class="post-metadata">

**Author:** ![SomeRobot](https://avatars.discourse-cdn.com/v4/letter/s/4491bb/32.png) [@SomeRobot](https://discuss.elastic.co/u/SomeRobot)\
**Post date:** [July 16, 2023, 10:27pm UTC](https://discuss.elastic.co/t/whitelisting-elastic-agent/338367/3 "2023-07-16T22:27:54Z")

</div>

Thank you

---

<div class="post-metadata">

**Author:** ![system](https://us1.discourse-cdn.com/elastic/original/3X/1/a/1ac57faf039f6b580b3f104ef42a2a89e41014de.png) [@system](https://discuss.elastic.co/u/system)\
**Post date:** [August 13, 2023, 10:28pm UTC](https://discuss.elastic.co/t/whitelisting-elastic-agent/338367/4 "2023-08-13T22:28:50Z")

</div>

This topic was automatically closed 28 days after the last reply. New replies are no longer allowed.
