Reviewing a Real-Time Indicator Detection Exclusion Policy

Prev Next

You can use the Web UI to review the file, folder, and process exclusions for real-time indicator detection that are defined for all of your host endpoints or for select host endpoints.

This section covers how to review your real-time indicator detection exclusion policy settings using the Web UI. See the Endpoint Security (HX) xAgent API Guide for more information on reviewing real-time indicator detection exclusion policies using the API.

To review the file, folder, and process exclusions for all host endpoints:

  1. Log in to the Web UI as an administrator.

  2. From the Admin menu, select Policies to access the Policies page.

  3. From the Policies table, select the Agent Default Policy and click the policy link to access the Edit Policy page.

  4. Select the Real-Time Indicator Detection tab.

    Policy_RTID_Tab.png
  5. From the Exclude Files and Folders section, review the file and folder exclusions.

  6. From the Exclude Processes from Real-Time Indicator Detection section, review the process exclusions.

To review the file, folder, and process exclusions for selected host sets:

  1. Log in to the Web UI as an administrator.

  2. From the Admin menu, select Policies to access the Policies page.

  3. From the Policies table, select the custom policy you want to review and click the policy link to access the Edit Policy page.

  4. Select the Real-Time Indicator Detection tab.

    Policy_RTID_Settings.png
  5. From the Exclude Files and Folders section, review the file and folder exclusions.

  6. From the Exclude Processes from Real-Time Indicator Detection section, review the process exclusions.