Default Rules

Policy Server provides default rules to give you a basis for configuring settings. The rules cover common and recommended security posture conditions and actions. The following rules are available by default:

Default rules (Continued)

Rule Name

Matching Criteria

Response if Criteria Matched

Server Action

Client Action

Healthy

Real-time Scan status is enabled and Virus Scan Engine and Virus Pattern are up-to-date.

Healthy

None

None

Checkup

Virus Pattern version is at least one ver­sion older than the version on the OfficeS­can server to which the cli­ent is regis­tered.

Checkup

Create entry in client valida­tion log

  • Update components

  • Perform automatic Cleanup Now on the client after enabling Real-time Scan or after an update

  • Display notification message on the client computer

  • If you use this rule, use automatic deployment. This helps ensure that clients receive the latest Virus Pattern immediately after the OfficeScan downloads new components.

Transition

Client com­puter is in the booting state.

Transition

None

None

Quaran­tine

Virus Pattern version is at least five ver­sions older than the ver­sion on the OfficeScan server to which the client is registered.

Quaran­tine

Create entry in client valida­tion log

  • Update components

  • Perform automatic Cleanup Now and Scan Now on the client after enabling Real-time Scan or after an update

  • Display notification message on the client computer

Not pro­tected

Real-time Scan status is disabled.

Infected

Create entry in client valida­tion log

  • Enable client Real-time Scan

  • Display notification message on the client computer