Approve a containment request

Prev Next

To contain a host endpoint, you must approve its containment request.

If you request containment of a host endpoint using the API, approval is not required.

Prerequisites
To approve a containment request:
  1. Select Manage Hosts in the Endpoint Security (HX) Web UI.

  2. Select the checkbox to the left of a host endpoint for which containment is requested, but not approved.

  3. Select Contain from the Actions menu.

  4. Click Go.

You can also approve containment from the host alert details and host details sections of the Hosts page.

To approve a containment request for a host endpoint from the host alert details or host details sections:
  1. Select Manage Hosts in the Endpoint Security (HX) Web UI.

  2. Request host details by clicking on the Expand icon (ExpandIcon.png) associated with a host.

  3. At the top of the details page, click Contain.

After the containment request is approved, the host endpoint's containment status changes to Containment approved. A containment approved icon (containment-approved.png) appears beside the hostname on every page where the host is listed.

When containment succeeds for the host, its containment status changes to Contained. A contained icon Contained.png appears beside the hostname on every page where the host is listed. The Contained Hosts area of the Dashboard shows an additional host in the number of hosts that are contained.

If containment fails for the host, its containment status changes to Containment failed. The containment failed icon appears beside the hostname on every page where the host is listed. The Contained Hosts area of the Dashboard shows an additional host in the number of hosts for which containment has failed.