Reference Guide
Security Management Server Virtual v10.2.11 AdminHelp
Advanced Threat Prevention
This technology is powered by Cylance and protects your operating system by detecting and preventing malware pre-
execution. Advanced Threat Prevention uses artificial intelligence and predictive mathematical models to quickly and
accurately identify what is safe and what is a threat.
Advanced Threat
Prevention
Off
On
Off
Toggle ON to enable Advanced Threat Prevention. If this
pol
icy is toggled to OFF, Advanced Threat Prevention is
disabled, and policies are set to defaults for activated
devices. This results in Execution Control blocking
threats, but Auto Quarantine, Memory Protection, and
Script Control will be disabled.
File Actions
Unsafe
Executable Auto
Quarantine With
Executable
Control Enabled
Selected
Selected
Not Selected
If selected, Unsafe executable files are automatically quarantined or
blocked to prevent their execution.
Note: If you Auto Quarantine, it is highly rec
ommended
that before deployment, you test Auto Quarantine only on
devices using a test policy to observe the behavior and
ensure that no business
-critical applications are blocked
at execution.
Unsafe
Executable Auto
Upload Enabled
Selected
Selected
Not S
elected
If selected, any detected Unsafe file is automatically
uploaded for a deeper analysis and additional details
about the file.
Abnormal
Executable Auto
Quarantine With
Executable
Control Enabled
Selected
Selected
Not Selected
If selected, Abnormal e
xecutable files are automatically quarantined
or blocked to prevent their execution.
Note: If you Auto Quarantine, it is highly recommended
that before deployment, you test Auto Quarantine only on
devices using a test policy to observe the behavior and
ens
ure that no business-critical applications are blocked
at execution.
Abnormal
Executable Auto
Upload Enabled
Selected
Selected
Not Selected
If selected, any detected Abnormal file is automatically
uploaded for a deeper analysis and additional details
abou
t the file.
Allow Execution
of Files in
Exclude Folders
Not Selected
Selected
Not Selected
If selected, executable files are allowed to run, even if
they are in folders excluded in the Exclude Specific
Folders policy.
Auto Delete Not Selected
Selected
No
t Selected
If selected, after the time period specified in the Days
until Deleted policy, files that are quarantined on an
endpoint are automatically deleted.
Days until
Deleted
14
14-365 days
Number of days until files that are quarantined on an
endpoint
are automatically deleted.
Memory Actions
189