Disabling exploit Prevention

Prev Next

To disable exploit prevention for the xAgent default policy:

  1. Log in to the Web UI as an administrator.

  2. From the Admin menu, select Policies to access the Policies page.

  3. In the Policies table, click the  link to go to the Edit Policies page.

  4. Select the Exploit Guard Protection tab.

  5. Verify that the Exploit Guard switch is ON to ensure exploit detection is still enabled.

    Policy_ExGP_Switch_ON.png

  6. Clear both of the following options.

    • Prevent known suspicious behaviors

    • Terminate the exploited process

    Exploit prevention does not occur if these options are not selected.

  7. Click Save.

To disable exploit prevention for a custom policy:

Note

When you disable a setting in a custom policy, the setting is disabled for all host sets assigned to the policy. If you want select host sets to keep the original setting, you must create a new custom policy with the setting enabled and assign it to the selected host sets. See Creating a Custom Policy for more information about using the Web UI to create a custom policy.

  1. Log in to the Web UI as an administrator.

  2. From the Admin menu, select Policies to access the Policies page.

  3. In the Policies table, click the link for the custom policy you want to modify.

  4. Select the Exploit Guard Protection tab.

  5. Verify that the Exploit Guard switch is ON to ensure exploit detection is still enabled.

    Policy_ExGP_Switch_ON.png

  6. Clear both of the following options.

    • Prevent known suspicious behaviors

    • Terminate the exploited process

    Exploit prevention does not occur if these options are not selected.

  7. Click Save.