Reference Guide

Security Management Server v10.2.10 AdminHelp
191
Advanced Threat Prevention
This technology is powered by Cylance and protects your operating system by detecting and preventing malware pre-
execution. Advanced Threat Prevention uses artificial intelligence and predictive mathematical models to quickly and
accurately identify what is safe and what is a threat.
Advanced Threat
Prevention
Off
On
Off
To
ggle ON to enable Advanced Threat Prevention. If this
policy is toggled to OFF, Advanced Threat Prevention is
disabled, and
policies are set to defaults for activated
devices.
This results in Execution Control blocking
threats, but Auto Quarantine, Memory
Protection, and
Script Control will be disa
bled.
File Actions
Unsafe
Executable Auto
Quarantine With
Executable
Control Enabled
Selected
Selected
Not Selected
If selected, Un
safe executable files are automatically quarantined or
blocked to prevent their execu
tion.
Note
: If you Auto Quarantine, it is highly recommended
that before deployment, you test Auto Quarantine only on
devices using a test policy to observe
the behavior and
ensure that no business
-critical applications are blocked
at execu
tion.
Unsafe
Executable Auto
Upload Enabled
Selected
Selected
Not Selected
If selected, any detected Unsafe file is automatically
upl
oaded for a deeper analysis and additional details
ab
out the file.
Abnormal
Executable Auto
Quarantine With
Executable
Control Enabled
Selected
Selected
Not Selected
If selected, Abnormal executable files are automatically quarantined
or blocked to preven
t their execution.
Note: If you Auto Q
uarantine, it is highly recommended
that before deployment, you test Auto Quarantine only on
devices using a t
est policy to observe the behavior and
ensure that no business
-critical applications are blocked
at execu
tion.
Abnormal
Executable Auto
Upload Enabled
Selected
Selected
Not Selected
If selected, any detected Abnormal file is automatically
uploaded for a d
eeper analysis and additional details
about the file.
Allow Execution
of Files in
Exclude Folders
Not Selected
Selected
Not Selected
If selected, executable fil
es are allowed to run, even if
they are in folders excluded in the Exclude Specific
Folders po
licy.
Auto Delete Not Selected
Selected
Not Selected
If selected, after the time period specified in the Day
s
un
til Deleted policy, files that are quarantined on an
endpoint are automatically del
eted.
Days until
Deleted
14
14-365 days
Number of days until
files that are quarantined on an
endpoint are automatically deleted.
Memory Actions