Enabling exploit prevention notifications

Prev Next

To enable the option to notify users about exploit prevention actions for all host endpoints:

  1. Log in to the Web UI as an administrator.

  2. From the Admin menu, select Policies to access the Policies page.

  3. In the Policies table, click the  link to access the Edit Policy page.

  4. Select the Exploit Guard tab.

  5. Select Notify the user on the host when an exploit has been blocked. When this option is selected, users are notified when an exploit is blocked.

    Important

    Enabling exploit prevention may result in data loss when an exploit is blocked in an active process and exploit prevention terminates the process that started the infection.

  6. Click Save.

To enable the option to notify users about exploit prevention actions for selected host sets:

Note

See Creating a Custom Policy for more information about using the Web UI to create a custom policy.

  1. Log in to the Web UI as an administrator.

  2. From the Admin menu, select Policies to access the Policies page.

  3. In the Policies table, click the link for the custom policy you want to modify.

  4. Select the Exploit Guard tab.

  5. Select Notify the user on the host when an exploit has been blocked. When this option is selected, users are notified when an exploit is blocked.

    Important

    Enabling exploit prevention may result in data loss when an exploit is blocked in an active process and exploit prevention terminates the process that started the infection.

  6. Click Save.

Now you can assign host sets to the custom policy and set the policy priority level. See Assigning Host Sets to Agent Policies and Configuring Policy Priority Using the Web UI for more information.