Configuring Endpoint Policy

The Endpoint Security policy contains these components:

  • Threat Prevention - which includes Web & Files Protection, Behavioral Protection and Analysis & Remediation. The Threat Prevention policy is unified for all the Threat Prevention components. This is different than the Policy Rule Base in SmartEndpoint, where each component has its own set of rules.

  • Data Protection - which includes Full Disk Encryption and Media Encryption & Port Protection.

  • Access Policy - Includes Firewall, Application Control, Developer Protection, Deployment Policy and Client Settings.

When you plan the security policy, think about the security of your network and convenience for your users. A policy should permit users to work as freely as possible, but also reduce the threat of attack from malicious third parties.

You can add more rules to each Rule Base and edit rules as necessary. Changes are enforced after the policy is installed.

Outbound Traffic Rules

Outbound traffic rules define which outgoing network traffic is allowed from Endpoint computers.

The Source column in the outbound Rule Base describes the Endpoint devices to which the rules apply.

This outbound rule is configured by default:

No. Name Destination Service Action Track Comment
1 Allow any outbound Any Any Allow None