Removing monitored application list exclusions

Prev Next

To remove an application (process) from the Exploit Guard exclusions list for all host endpoints:

  1. Log in to the Web UI as an administrator.

  2. From the Admin menu, select Policies to access the Policies page.

  3. In the Policies table, click the Agent Default Policy link to access the Edit Policy page.

  4. Select the Exploit Guard Protection tab.

  5. In the Policy Exclusions section, select the executable file of the application (process) you want to remove from the list below the Exclude monitored applications from Exploit Guard option.

  6. Click the X icon next to the process you want to remove from the list.

  7. Repeat Steps 5 and 6 until you have removed all of the monitored applications you want to delete from the list.

  8. Click Save.

To remove an application (process) from the Exploit Guard exclusions list for selected host sets:

Note

When you disable a setting in a custom policy, the setting is disabled for all host sets assigned to the policy. If you want select host sets to keep the original setting, you must create a new custom policy with the setting enabled and assign it to the selected host sets. See Creating a Custom Policy for more information about using the Web UI to create a custom policy.

  1. Log in to the Web UI as an administrator.

  2. From the Admin menu, select Policies to access the Policies page.

  3. In the Policies table, click the link for the custom policy you want to modify.

  4. Select the Exploit Guard Protection tab.

  5. In the Policy Exclusions section, select the process you want to remove from the list below the Exclude monitored applications from Exploit Guard option.

  6. Click the X icon next to the process you want to remove from the list.

  7. Repeat Steps 5 and 6 until you have removed all of the monitored applications you want to delete from the list.

  8. Click Save.