Configuring analysis settings

Prev Next

You can configure the following system settings for file analysis.

  • Maximum File Size—This is the maximum file size to be analyzed. The default size is 5 MB; the maximum is 10000 MB.

  • Analysis Timeout—The MVX engine will stop dynamic analysis of a single file after this amount of time elapses, and classify the file as "unknown." The default is 240 seconds (4 minutes).

  • Scan Delay—This is the interval at which theFile Protect appliance checks file shares for newly added or modified files, in minutes. The default is 3 minutes; the minimum is .02 minutes (1 second).

    Important

    Trellix strongly recommends that you configure a scan delay that is at least one minute to accommodate network latency issues with file system operations. Otherwise, a continuous scan could check files that are in the process of being modified.

  • WINS Server IP Address—If you are using Distributed File System (DFS) shares, you need to configure the IP address of the Windows Internet Name Service (WINS) server used to resolve link targets using NetBIOS. You can configure the IP address using the CLI as described in Configuring file analysis settings using the CLI or on the Settings>Network page of the File Protect Web UI.

  • Share Timeout—A share can be inaccessible for this amount of time before a running scan is aborted. The default is 300 seconds (5 minutes).

Prerequisites

  • Operator or Administrator access