To enable the option to notify users about exploit prevention actions for all host endpoints:
Log in to the Web UI as an administrator.
From the Admin menu, select Policies to access the Policies page.
In the Policies table, click the link to access the Edit Policy page.
Select the Exploit Guard tab.
Select Notify the user on the host when an exploit has been blocked. When this option is selected, users are notified when an exploit is blocked.
Important
Enabling exploit prevention may result in data loss when an exploit is blocked in an active process and exploit prevention terminates the process that started the infection.
Click Save.
To enable the option to notify users about exploit prevention actions for selected host sets:
Note
See Creating a Custom Policy for more information about using the Web UI to create a custom policy.
Log in to the Web UI as an administrator.
From the Admin menu, select Policies to access the Policies page.
In the Policies table, click the link for the custom policy you want to modify.
Select the Exploit Guard tab.
Select Notify the user on the host when an exploit has been blocked. When this option is selected, users are notified when an exploit is blocked.
Important
Enabling exploit prevention may result in data loss when an exploit is blocked in an active process and exploit prevention terminates the process that started the infection.
Click Save.
Now you can assign host sets to the custom policy and set the policy priority level. See Assigning Host Sets to Agent Policies and Configuring Policy Priority Using the Web UI for more information.