Disabling exploit termination

Prev Next

To disable the option to terminate exploited processes for all host endpoints:

  1. Log in to the Web UI as an administrator.

  2. From the Admin menu, select Policies to access the Policies page.

  3. In the Policies table, click the  link to access the Edit Policy page.

  4. Select the Exploit Guard tab.

  5. Clear Terminate the exploited process. When this option is no longer selected, exploited processes are not terminated when they are detected.

  6. Click Save.

To disable the option to terminate exploited processes for selected host sets:

Note

When you disable a setting in a custom policy, the setting is disabled for all host sets assigned to the policy. If you want select host sets to keep the original setting, you must create a new custom policy with the setting enabled and assign it to the selected host sets. See Creating a Custom Policy for more information about using the Web UI to create a custom policy.

  1. Log in to the Web UI as an administrator.

  2. From the Admin menu, select Policies to access the Policies page.

  3. Select the Exploit Guard tab.

  4. Clear Terminate the exploited process. When this option is no longer selected, exploited processes are not terminated when they are detected.

  5. Click Save.