Endpoint workflow

Prev Next

The Solidcore client supports reputation-based execution on endpoints.

When the user executes a file, Application Control contacts the reputation source to fetch reputation information. The endpoint communicates with the Trellix GTI server to fetch reputation for the executable file or all certificates associated with it.

Note

To verify if fetching reputation from Trellix GTI server is enabled for an endpoint, review the value for the Reputation (GTI) property for the endpoint. To navigate to the property, click the row corresponding to the endpoint on the Systems page and click the Solidcore row in the Products tab.

Allow or block file execution based on reputation according to the defined reputation settings.

Application Control also uses defined rules and policies to determine file execution status.

Endpoint_workflow.png