To enable the option to block exploits for all host endpoints in the xAgent default policy:
Log in to the Web UI as an administrator.
From the Admin menu, select Policies to access the Policies page.
In the Policies table, click the link to access the Edit Policies page.
Select the Exploit Guard Protection tab.
In the Exploit Guard Options section, select Prevent known suspicious behaviors. When this option is selected, exploits are blocked when they are detected.
.png)
Click Save.
To enable the option to block exploits for selected host sets in a custom policy:
Note
See Creating a Custom Policy for more information about using the Web UI to create a custom policy.
Log in to the Web UI as an administrator.
From the Admin menu, select Policies to access the Policies page.
In the Policies table, click the link for the custom policy you want to modify.
Select the Exploit Guard Protection tab.
In the Exploit Guard Options section, select Prevent known suspicious behaviors. When this option is selected, exploits are blocked when they are detected.
.png)
Click Save.
Now you can assign host sets to the custom policy and set the policy priority level. See Assigning Host Sets to Agent Policies and Configuring Policy Priority Using the Web UI for more information.