Як додати файл у виключення Symantec Endpoint Protection?
Як файл, додаток, файл extension, або application needs to be excluded from being scanned by one or more features of Symantec Endpoint Protection (SEP) client.
Такі виключення можуть бути встановлені для керування SEP клієнтів, використовуючи Centralized Exceptions policies в Symantec Endpoint Protection Manager (SEPM) console.
Resolution
Exceptions policies contain exceptions for following typs scans for Windows-based operating systems:
- Application Control
- Security Risks (Auto-Protect and/or Scheduled and on-demand)
- SONAR
Створюйте exceptions for antivirus and antispyware scans
Наведені вказівки нижче, щоб зробити тип винятку, що вимагається.
- In SEPM, click Policies.
- Under Policies click Exceptions.
- Under Tasks click Add an Exceptions policy . Це буде створити і відкритий новий Centralized Exceptions Policy.
- In the left pane, click Exceptions policy and select Edit the policy under Tasks.
- In the policy, select Exceptions.
- Click the Add button to open a drop-down menu. Move the cursor over Windows Exceptions to open a second drop-down menu.
- Виберіть відповідний варіант для Exception you want to create
Note: 14.3 UA5 SEPM була підтримана підтримкою для wildcards asterisk (*) and question mark (?) anywhere in file path for Windows clients using 14.3 RU5 and newer. Ще один, щоб увійти в будь-який файл на ім'я, ви можете використовувати wildcards до виключених груп файлів і складників від зображення. Prior to 14.3 RU5 client, Wildcard variables such as * and ? are not supported for Known Risks, File, or Folder виключення. The? wildcard is supported for Extension виключення. The Folder exceptions screen will accept * and ? but they will be treated as literal characters no wildcard variables.
Для File і Folder-based exclusions, Full Path до файлу повинні бути specified, unless a "Prefix Variable" is selected. Якщо "Prefix Variable" є вибраним, шлях конкретний повинен бути порівняно до selected "Prefix Variable"
References
For more information please see Exceptions Policy
Technical Information
Glossary of File/Folder Prefix Variables
| NAME OF PREFIX |
Description |
| PROGRAM_FILES_COMMON |
Докладно для компонентів, що є shared across applications. Typical path is C:\Program Files\Common Files |
| SYSTEM |
Windows System folder. Типовий шлях є C:\Windows\System32 або C:\WINNT\System32 |
| COMMON_PROGRAMS |
File system folder that contains the folders for common program groups that appear on the Start menu for all users. Typical path is C:\Documents and Settings\All Users\Start Menu\Programs |
| COMMON_DOCUMENTS |
File system folder that contains documents that common to all users. Typical path is C:\Documents and Settings\All Users\Documents |
| PROGRAM_FILES |
The Program Files folder. Typical path is C:\Program Files |
| COMMON_DESKTOPDIRECTORY |
Систему файлу системи складають, що містять файли і складники, які відображаються на робочому столі для всіх користувачів. Typical path is C:\Documents and Settings\All Users\Desktop |
| WINDOWS |
У Windows folder або SYSROOT. Це відповідає %windir% or %SYSTEMROOT% environmental variables. Типова cestа є C:\Windows або C:\WINNT |
| COMMON_APPDATA |
Система файлової системи містить application data for all users. Типова cestа є C:\Documents and Settings\All Users\Application Data |
| COMMON_STARTUP |
File system folder that contains all the programs that appear in the Startup folder for all users. Typical path is C:\Documents and Settings\All Users\Start Menu\Programs\Startup |
| USER_PROFILE |
File system folders that correspond to all the users. |
| SYSTEM_DRIVE |
SYSTEM_DRIVE variable indicates the location where the Windows operating system is installed |
Як додати файл у виключення Symantec Endpoint Protection?
За допомогою файлу, проміжку, файлу розширення або application потрібні, щоб бути вилученим від будь-якого сканованого за одним або більше ознаками Symantec Endpoint Protection (SEP) клієнта.
Такі виключення можуть бути встановлені для керування SEP клієнтів, використовуючи Centralized Exceptions policies в Symantec Endpoint Protection Manager (SEPM) console.
Resolution
Exceptions policies contain exceptions for following typs scans for Windows-based operating systems:
- Auto Protect (Extension Exception)
- Scheduled and on-demand ( Extension Exception)
- All Scans ( Extension Exception)
- Application Control (File Exception)
- Security Risk (File Exception)
- SONAR (File Exception)
Наведені інструкції нижче, щоб зробити тип exception required:
Creating exceptions for Windows Platform
- Log до SEPM and click Policies.
- Under View Policies click Exceptions.
- Under Tasks click Add a Exception policy. Це буде створено і виконано новий Exceptions Policy.
- In the left pane, click Exceptions.
- Click the Add button to open a drop-down menu. Move the cursor over Windows Exceptions to open a second drop-down menu.
- Виберіть один з 9 наявних опцій: Application, Application to Monitor, Extension, File, Folder, Known Risks, Trusted Web Domains, Tamper Protection Exception, DNS або Host File Change Exception.
Creating exceptions for Mac Platform
- Log до SEPM and click Policies.
- Under View Policies click Exceptions.
- Under Tasks click Add a Exception policy. Це буде створено і виконано новий Exceptions Policy.
- In the left pane, click Exceptions.
- Click the Add button to open a drop-down menu. Move the cursor over MacExceptions to open a second drop-down menu.
- Click Здоров'я RiskException for Files or Folder.
- Виберіть необхідну версію Variable and under File або folder enter the path. (For Mac Subfolders included by default)
Creating exceptions for Linux Platform
- Log до SEPM and click Policies.
- Under View Policies click Exceptions.
- Under Tasks click Add a Exception policy. Це буде створено і виконано новий Exceptions Policy.
- In the left pane, click Exceptions.
- Click the Add button to open a drop-down menu. Move the cursor over LinuxExceptions to open a second drop-down menu.
- Select either Folder or Extensions.
Note: 14.3 UA5 SEPM була підтримана підтримкою для wildcards asterisk (*) and question mark (?) anywhere in file path for Windows clients using 14.3 RU5 and newer. Ще один, щоб увійти в будь-який файл на ім'я, ви можете використовувати wildcards до виключених груп файлів і складників від зображення.
Prior to 14.3 RU5 client, Wildcard variables such as * and ? не підтримується для відмінних ризиків, файлів, або Folder exceptions. Як для файлового рівня exception ви повинні скористатися досконалою схемою файлу, і для послідовного рівня exception вимагають специфічності до складу файлу і якщо "Include Subfolder" is checked it will exclude every single file and folders inside the parent folder the Folder exceptions screen will accept * and ? but they will be treated as literal characters no wildcard variables. The? wildcard supported для Extension exceptions, the * wildcard supported для Trusted Web domains exceptions.
Note: Для File і Folder-based exclusions, Full Path до файлу повинні бути встановлені, неправильно "Prefix Variable" is selected. Якщо "Prefix Variable" є вибраним, шлях конкретний повинен бути порівняно до selected "Prefix Variable"
Note: Якщо ви не знайдете про те, що тип виключення для того, щоб дізнатися, що мова йде про "Managing Exceptions" in the pdf "Installation and Administration Guide".
- Введіть відповідні відомості про час, щоб бути excluded. Для Extensions, File, і Folder exclusions, specify the type of scans that will be excluded from the drop down menu or menus.
- (Optional) Repeat steps 6 through 8 to add any other Security Risk Exceptions to the policy.
- Click OK.
- Визначте політику до групи з SEPM.