The following table shows the actions you can apply to certain warning level
events.
Action
|
Description
|
Ignore
|
Performs no action to the detected file.
|
Delete
|
Deletes the detected file. |
Quarantine
|
Moves the detected file to a quarantine folder on the agent-device. |
Add to Approved List
|
Adds the detected file to the Approved List. See StellarProtect Application Lockdown
or StellarProtect
(Legacy Mode) Application Lockdown
for more details.
|
Add to Baseline
|
Adds the detected file to the baseline. See Add to Baseline for more
details.
|
Add to Suspicious Objects Blocklist
|
Adds the detected file to the blocklist. See Add to Suspicious Objects
Blocklist for
more details.
|
Grant One-Time Access
|
Allow the blocked USB to access the endpoint tempararily until
the USB is discconnected. See Grant One-Time Access for
more details.
|