You can enable and disable MalwareGuard for all of your host sets using the xAgent default policy or specific host sets in your environment using a custom policy.
Endpoint Security (HX) xAgent can run the MalwareGuard Engine independently of the Malware Protection Engine. When MalwareGuard only is turned on, any action on the Endpoint gets Malware scanning without depending on Anti-Virus protection. If both the MalwareGuard Engine and Malware Protection Engine are turned on, the Malware Protection Engine runs first.
This section covers how to use the Web UI to enable and disable MalwareGuard. See the Endpoint Security (HX) REST API Guide for information on using the API to manage your malware protection policies.
Enabling MalwareGuard for all host endpoints
Note
MalwareGuard is supported in Trellix Endpoint Security (HX) xAgent version 27 or later only.
By default, MalwareGuard is disabled for all host endpoints.
Log in to the Web UI as an administrator.
From the Admin menu, select Policies to access the Policies page.
In the Policies table, click the Agent Default Policy link to access the Edit Policy page.
Select the Malware Protection tab.
In the Malware Detection section, toggle that the MalwareGuard Detection ON/OFF switch to ON.
.png)
Click Save.
Enabling MalwareGuard for Selected Host Sets
To enable MalwareGuard for selected host sets:
Note
See Creating a Custom Policy for more information about using the Web UI to create a custom policy.
Log in to the Web UI as an administrator.
From the Admin menu, select Policies to access the Policies page.
In the Policies table, click the link for the custom policy you want to modify
Select the Malware Protection tab.
In the Malware Detection section, toggle that the MalwareGuard Detection ON/OFF switch to ON.
.png)
Click Save.
Now you can assign host sets to the custom policy and set the policy priority level. See Assigning Host Sets to Agent Policies and Configuring Policy Priority Using the Web UI for more information.
Disabling MalwareGuard for All Host Endpoints
Log in to the Web UI as an administrator.
From the Admin menu, select Policies to access the Policies page.
In the Policies table, click the Agent Default Policy link to go to the Edit Policy page.
Select the Malware Protection tab.
In the Malware Detection section, toggle the MalwareGuard ON/OFF switch to OFF.
.png)
Click Save.
Disabling MalwareGuard for Selected Host Sets
To disable MalwareGuard for selected host sets.
Note
When you disable a setting in a custom policy, the setting is disabled for all host sets assigned to the policy. If you want select host sets to keep the original setting, you must create a new custom policy with the setting enabled and assign it to the selected host sets. See Creating a Custom Policy for more information about using the Web UI to create a custom policy.
Log in to the Web UI as an administrator.
From the Admin menu, select Policies to access the Policies page.
In the Policies table, click the link for the custom policy you want to modify.
Select the Malware Protection tab.
In the Malware Detection section, toggle the MalwareGuard ON/OFF switch to OFF.
.png)
Click Save.