Threat Prevention and Threat Intelligence Exchange now works in sync and async mode.
Threat Prevention is installed in async mode by default. After installing Threat Prevention, you can switch the modes using commands from the terminal.
Running in async mode can result in faster response from applications and provide a better user experience of products. When you run Threat Prevention in async mode, the in-line file access and block file execution run in the deferred mode.
In the in-line access, the software scans the file before opening it and takes appropriate action according to the configuration if it is infected. In deferred mode, the software allows opening files with the scan happening in parallel in the background. The file is allowed only if it is a clean fine. Otherwise, the software takes appropriate scan action according to the configuration.
Differences in functionality with sync and async mode
Here is the difference on how the Threat Prevention and Threat Intelligence Exchange features work when sync mode is enabled and disabled.
Feature | Option | Sync mode | Async mode |
|---|---|---|---|
On-Access Scan | Scan on Read | ![]() | ![]() |
Scan on Write | ![]() | ![]() | |
Quarantine | ![]() | ![]() | |
Delete | ![]() | ![]() | |
In-line access/execution block | ![]() | Available in deferred mode | |
Scan Action - Deny | ![]() | ![]() | |
Exclusions | ![]() | ![]() | |
On-demand scan | Quick Scan | ![]() | ![]() |
Full Scan | ![]() | ![]() | |
Custom Scan | ![]() | ![]() | |
Exclusions | ![]() | ![]() | |
Adaptive Threat Protection | In-line access/execution block | ![]() | Available in deferred mode |
.png)
.png)