Create and manage rules to use with Application Control in Endpoint Security Policies.
![]() |
ImportantIf you are working on a policy, make sure to save your settings before leaving the
screen. Leaving the screen without saving discards any changes.
|
Application Control rules are a policy resource where you can create rules to configure
your Application Control settings in Endpoint Security Policies. Application Control
rules either block or allow applications to run on your endpoints. You can add up
to 350 Application Control rules.
Application Control rules are used by Application
Control.
Procedure
- Go to .
- Create or edit a rule.
-
To create a new rule, click Add Application Control rule.
-
To edit an existing rule, click the rule name and go to General
-
- Specify a name and description for the rule.
- Select the action for the rule to take.
-
Allow: Allows the specified application to run.
-
Block: Blocks the specified application from running.
-
- Select the Type.The Type determines the rule criteria, or what the rule looks for to match objects.
-
Certificate: The rule checks the application certificate for specified values.
-
File path: The rule checks the location of the application.
-
SHA-256: The rule checks the file hash value.
-
- If you select Certificate, specify the Property and Value.Click Add to specify more than one property and value. Additional criteria uses AND logic, requiring applications to match all specified property and value sets. You can add up to seven properties.Each property value has a maximum length:
-
Issuer country max 2 characters
-
Issuer locality max 128 characters
-
Issuer name max 128 characters
-
Issuer organization max 64 characters
-
Issuer organizational unit max 64 characters
-
Issuer state or province max 128 characters
-
Subject name max 128 characters
Important
Server & Workload Protection does not support wildcards in certificate values. -
- If you select File path, specify one or more file paths separated by line.Specify one file path per line. The rule supports up to 2000 characters total. File path cannot contain
;
in the entry. - If you select SHA-256, specify the hash Value.Hash values must be exactly 64 hexadecimal characters.
- Click Save.