Permanently disable SAU

Prev Next

When you perform a clean installation and enable Application Control, you can permanently disable Script as Updater (SAU) and Memory-protection (MP) features.

Important

This initial feature configuration is available only in a clean install. If you upgrade from a previous version, the SAU feature is enabled. If after the upgrade you want to disable SAU, you must introduce the change with a policy.

  1. On the ePO - SaaS console, select MenuSystemsSystem Tree.

  2. Select a group or an endpoint and go to ActionsAgentRun Client Task Now.

    1. Under Product, Select Solidcore 9.x.x.

    2. Under Task Type, select SC: Enable.

    3. Under Task Name, click Create New Task.

  3. On the Run Client Task Now page:

    1. Choose the Platform and Sub Platform.

    2. Under Enable, select Application Control.

  4. For Initial Feature configuration, you can select:

    1. MP disabled

    2. SAU disabled

  5. Select an option for activation:

    1. Limited Feature Activation

    2. Full Feature Activation

  6. (Optional) Select Start Observe Mode to place the endpoints in Observe mode.

  7. (Optional) Select Pull Inventory to manage the inventory with ePO - SaaS.

  8. Click Run Task Now.

Important

Disabling SAU and MP features in the Initial Feature configuration is permanent. You can’t enable them again after installation. Any change of MP or SAU status through a policy is ignored by the endpoint.