Reference Guide

Security Management Server Virtual v10.2.10 AdminHelp
189
Advanced Threat Prevention
This technology is powered by Cylance and protects your operating system by detecting and preventing malware pre-
execution. Advanced Threat Prevention uses artificial intelligence and predictive mathematical models to quickly and
accurately identify what is safe and what is a threat.
Advanced Threat
Prevention
Off
On
Off
To
ggle ON to enable Advanced Threat Prevention. If this
policy is toggled to OFF
, Advanced Threat Prevention is
disabled, and policies are set to defaul
ts for activated
devices. This results in Execution Control blocking
threats, but Auto Quarantine, Memory
Protection, and
Script Control will be disabled.
File Actions
Unsafe
Executable Auto
Quarantine With
Executable
Control Enabled
Selected
Selected
No
t Selected
If selected, Unsafe executable files are automatically quarantined or
blocked to prevent their
execution.
Note: If you Auto Quarantine, it is highly recommended
that before
deployment, you test Auto Quarantine only on
devices using a test policy
to observe the behavior and
ensure that no business
-critical applications are blocked
at execution.
Unsafe
Executable Auto
Upload Enabled
Selected
Selected
Not Selected
If selected,
any detected Unsafe file is automatically
uploaded for a deeper analysis
and additional details
about the file.
Abnormal
Executable Auto
Quarantine With
Executable
Control Enabled
Selected
Selected
Not Selected
If selected, Abnormal executable files are a
utomatically quarantined
or blocked to prevent their execution
.
Note: If
you Auto Quarantine, it is highly recommended
that before deployment, you test Auto Quarantine only on
de
vices using a test policy to observe the behavior and
ensure that no business
-critical applications are blocked
at execution.
Abnormal
Executable Auto
Upload Enabled
Selected
Selected
Not Selected
If selected, any detected Abnormal file is automatically
u
ploaded for a deeper analysis and additional details
about the file.
Allow Execution
of Files in
Exclude Folders
Not Selected
Selected
Not Selected
I
f selected, executable files are allowed to run, even if
they are in folders excluded in the Exclude Speci
fic
Folders policy.
Auto Delete Not Selected
Selected
Not Selected
If selecte
d, after the time period specified in the Days
un
til Deleted policy, files that are quarantined on an
endpoint are automatically deleted.
Days until
Deleted
14
14-365 days
Numbe
r of days until files that are quarantined on an
endpoint are automatically de
leted.
Memory Actions