Configuring the advanced protection

The advanced protection lets you establish different security modes to block unknown malware, and protect computers against APTs and advanced threats.

 

Mode

Audit

In audit mode, Adaptive Defense 360 only reports on detected threats but doesn’t block or disinfect the malware detected.

Hardening

Allows execution of the unknown programs already installed on users' computers. However, unknown programs coming from external sources (Internet, email, etc.) will be blocked until they are classified. Programs classified as malware will be moved to quarantine.

Lock

Prevents all unknown programs from running until they are classified.

 

Exclusions

These settings affect both the antivirus protection and the advanced protection.

This section allows you to configure items on the network computers that will not be scanned by Adaptive Defense 360

Extensions

Allows you to specify file extensions that won't be scanned.

Folders

Allows you to specify folders whose content won't be scanned.

Files

Allows you to indicate specific files that won't be scanned.

 

Network usage

Every executable file found on users’ computers that is not recognized by Adaptive Defense 360 will be sent by the agent to our server for analysis. This is configured to have no impact on the performance of the customer’s network (the maximum number of MB that can be transferred in an hour per agent is set by default to 50).

Unknown files are sent only once for all the customers using Adaptive Defense 360.  

Additionally, bandwidth management mechanisms have been implemented in order to minimize the impact on the customer’s network. To configure the maximum number of MB that an agent can send per hour, enter the relevant value and click OK. To establish unlimited transfers, set the value to 0.

 

Privacy

To allow Adaptive Defense 360 to display the full name and path of the files sent for analysis in its reports and forensic analysis tools, select the relevant checkbox on the Privacy tab.