Reference Guide
Manage Policies
218
Access Protection
Selected
Selected
Not Selected
Access Protection prevents other computers from making a
connection and creating or altering autorun (autorun.inf) files
from CDs. The rule prevents spyware and adware distributed
on CDs from being executed and will automatically block and
report the issue.
Script Scan
Protection
Selected
Selected
Not Selected
This policy enables scanning JavaScript and VBScript scripts to
prevent unwanted scripts from executing.
Note: If Script Scan Protection is disabled when Internet
Explorer is launched, and then is enabled, it doesn't detect
malicious scripts in that instance of Internet Explorer.
Source Sites for
Update
Hyperlink
To modify the source sites your clients access for Malware
Protection signature updates, click the Source Sites for
Updates link. To modify the priority level or availability of an
external source site, click either NAIHttp or NAIFtp, edit the
necessary fields, and click OK.
To designate an internal signature update server, see
Designate a Threat Protection Signature Update Server
.
Designating a signature update server within your network
allows client computers to obtain signature updates without
accessing the Internet.
See basic settings
Policy Default Setting Description
Web Protection
This technology protects computers by leveraging a web-based content ranking system to determine if a site
that a user is browsing is considered safe or not. This technology also grants the administrator the ability to
define what happens when an unsafe site is navigated to (allow, block, warn).
Web Protection
Off
On
Off
Toggle to ON to enable Web Protection. If toggled to OFF, no
Web Protection policies will be applied.
Enforcement -
Action to Apply to
Sites Not Verified
Allow
Block
Allow
Warn
Specifies the default action to apply to sites that have not
been verified.
Block: Prevents users from accessing the site and displays a
message that the site is blocked.
Allow: Permits users to access the site.
Warn: Displays a warning to notify users of potential dangers
associated with the site. Users must dismiss the warning
before continuing.
Enforcement -
Enable File
Scanning for File
Downloads
Selected
Selected
Not Selected
A Selected value scans all files (including .zip files) before
downloading. This option prevents users from accessing a
downloaded file until Threat Protection marks the file as
clean.
Downloaded files are sent to Threat Protection for scanning.
Threat Protection performs a Reputation Service lookup on
the file. If a downloaded file is detected as a threat, Threat
Protection takes action on the file and alerts the user.
NOTE: This policy does not apply when Web Protection is
installed as an optional feature with Advanced Threat