Reference Guide
Manage Policies
214
Enable Approve
Scripts in Folders
(and Subfolders)
Not Selected
Selected
Not Selected
Allows scripts stored in specific folders to be automatically approved to run.
This policy must be selected to use the Script Control Approve Scripts in
Folders (and Subfolders policy).
This policy does not apply to Mac clients.
Approve Scripts in
Folders (and
Subfolders)
String
String
Folders specified in this policy are excluded from actions performed based on
the Script Control policy. This exclusion extends to subfolders of folders that
are specified with this policy.
A folder must be specified using its relative path. A path may not include the
drive letter. Example: \Cases\ScriptsAllowed
A specified path may represent any of the following:
- local drive path
- mapped network drive path
- universal naming convention (UNC) path
This policy does not apply to Mac clients.
Quarantine String
String
The value of this policy includes a collection of hashes for portable executable
that need to be automatically quarantined within the Endpoint Group or on
the specific Endpoint. This policy will force quarantine files based on a SHA256
hash of the specific portable executable.
Waive String
String
The value of this policy includes a collection of hashes for portable executable
that need to be allowed to run within the Endpoint Group or on the specific
Endpoint. This policy will force allow files based on a SHA256 hash of the
specific portable executable.
Global Allow String
String
This policy defines a change to the local math model to prevent problematic
portable executable to properly run on the machine. This is used in situations
where normal exclusions may not properly apply to the files that are needing
to be waived. The value of this policy will consist of an XML blob that can be
provided by support if it is required.
The value of this policy must include the entire contents of the policy.xml file.
Copy and paste the contents of policy.xml into the policy editor as shown in
this example.
Global Quarantine
List
String
String
The value of this policy includes a collection of hashes for portable executable
that need to be automatically quarantined within the enterprise. This policy
will force quarantine files based on a SHA256 hash of the specific portable
executable.
Global Safe List String
String
The value of this policy includes a collection of hashes for portable executable
that need to be allowed to run within the enterprise. This policy will force
allow files based on a SHA256 hash of the specific portable executable.
Agent Settings
Suppress Popup
Notifications
Not Selected
Selected
Not Selected
If Selected, popup notifications for Advanced Threat Prevention events do not
display on the client computer.










