Define custom rules for executable files associated with the selected request, and apply rules to selected endpoints.
By default, the recommended rule tab is highlighted. If needed, you can add rules from other tabs. This page is displayed when you select a request and click the Create Custom Policy action on the Policy Discovery page.
Option definitions
Options | Definition |
|---|
Select Action | Specify the action to take for the selected request. The permissions assigned to you determine the options that are available. All options are available only to users who are assigned the Solidcore admin permission set. Approve Request — Adds rules to allow the file associated with the selected request to run on specified endpoints in the enterprise. Ban Request — Adds rules to ban the file associated with the selected request from running on specified endpoints in the enterprise. Allow by Certificate — Adds rules to include the certificate associated with the selected request. If the file associated with the selected request is an installer or executable file that has tried to run other executable files, the certificate is assigned updater privileges. Bypass Memory Protection — Adds rules to bypass applied memory protection for the file associated with the selected request. This option is available only for observations and is unavailable for approval requests. Clear and define rules — Removes all prepopulated rules and allows you to add custom rules for the file associated with the selected request. When you select this option, the Request Details pane is displayed. Use the information listed in the pane to define rules. Allow Trusted Path — Adds rules to allow files placed on a network path to run with updater privileges on specified endpoints in the enterprise. When you select this option, the Request Details pane is displayed that includes the More Suggestions option. You can click More Suggestions to find information about the suggested alternate paths and the corresponding pending request count.
|
Show Request Details/Hide Request Details | Shows or hides the request details. The details include file name, certificate, activity, application name, and checksum. |
Select Rule Group | Specifies the rule group for adding the created rules. |
Add rule group to existing policy | Specifies the policy for adding the created or updated rule group. |
Save | Saves the changes made. |
Cancel | Exits without saving the changes, and returns to the Policy Discovery page. |