You can use the Web UI or the API to enable on-demand malware scans for all of your host endpoints or for select host sets in your environment. Ensure that malware detection (Signature and Heuristic Detections) is turn on before you enable or create on-demand scans. See Enabling and Disabling Malware Detection for more information.
This section covers how to use the Web UI to enable and disable on-demand malware scans. See the Endpoint Security (HX) REST API Guide for information on using the API to enable and disable on-demand malware scans.
Enabling On-Demand Malware Scans
To enable on-demand scans for all host endpoints:
Log in to the Web UI as an administrator.
From the Admin menu, select Policies to access the Policies page.
In the Policies table, click the Agent Default Policy link to access the Edit Policy page.
Select the Malware Scans tab.
In the Malware Scans section, toggle the Scheduled Scans ON/OFF switch to ON.
Important
You must turn the Malware Detection switch ON before you can turn the Scheduled Scans switch ON. See Enabling and Disabling Malware Detection and MalwareGuard for more information.
Click the Save.
To enable on-demand scans for selected host sets:
Note
Creating a Custom Policy for more information about using the Web UI to create a custom policy.
Log in to the Web UI as an administrator.
From the Admin menu, select Policies to access the Policies page.
In the Policies table, click the link for the custom policy you want to modify.
Select the Malware Scans tab.
In the Malware Scans section, toggle the Scheduled Scans ON/OFF switch to ON.
Important
You must turn the Malware Detection switch ON before you can turn the Scheduled Scans switch ON. See Enabling and Disabling Malware Detection and MalwareGuard for more information.
Click the Save.
Now you can assign host sets to the custom policy and set the policy priority level. See Assigning Host Sets to Agent Policies and Configuring Policy Priority Using the Web UI for more information.
Disabling On-Demand Malware Scans
To disable on-demand scans for all host endpoints:
Log in to the Web UI as an administrator.
From the Admin menu, select Policies to access the Policies page.
In the Policies table, click the Agent Default Policy link to access the Edit Policy page.
Select the Malware Scans tab.
In the Malware Scans section, toggle the Scheduled Scans ON/OFF switch to OFF.
Click the Save.
To disable on-demand scans for selected host sets:
Note
When you disable a setting in a custom policy, the setting is disabled for all host sets assigned to the policy. If you want to select host sets to keep the original setting, you must create a new custom policy with the setting enabled and assign it to the selected host sets. See Creating a Custom Policy for more information about using the Web UI to create a custom policy.
Log in to the Web UI as an administrator.
From the Admin menu, select Policies to access the Policies page.
In the Policies table, click the link for the custom policy you want to modify.
Select the Malware Scans tab.
In the Malware Scans section, toggle the Scheduled Scans ON/OFF switch to OFF.
Click the Save.
Enabling or Disabling Scan on Install
To reduce disk I/O, CPU, and network bandwidth issues in non-persistent VDI environments caused by on-demand scans at every login, the Malware Scans policy configuration page in the Endpoint Security Web UI now includes a Scan on Install toggle that you can use to disable on-demand scans of your downloaded Anti-virus content at every login.
To enable or disable scan on install:
Log in to the Web UI as an administrator.
From the Admin menu, select the Policies page.
Select the Malware Scans tab.
Click the ON/OFF switch next to Scan on Install. Set this switch to ON to enable scan on install. Set this switch to OFF to disable scan on install.
Click the Save.