Endpoint Security Policies

Apply security settings to your endpoint groups to enable XDR Endpoint Sensor on necessary endpoints.

Leverage your endpoint groups to enable XDR Endpoint Sensor on specific endpoints.

Important:

Endpoint groups inherit Endpoint Security Policies from parent groups. If you modify any settings on a parent group, all endpoints within that parent group and endpoints within any child group apply the same settings. You must manually modify specific child group settings to override new parent group settings.

Note:

To enable endpoint groups, complete the endpoint grouping initial setup in Endpoint Inventory or contact your support provider.

  1. Go to Security Policies > Endpoint.
  2. Click any available endpoint group to open the Security Agent Settings panel.

    You can create or modify endpoint groups using the Endpoint Inventory app.

    For more information, see Managing Groups.

  3. Click the toggle switch to enable or disable XDR Endpoint Sensor.

    XDR Endpoint Sensor collects the relevant endpoint activity data necessary to detect the majority of threats occurring on an endpoint without affecting endpoint performance

    Important:

    Endpoint groups inherit Endpoint Security Policies from parent groups. If you modify any settings on a parent group, all endpoints within that parent group and endpoints within any child group apply the same settings. You must manually modify specific child group settings to override new parent group settings.

  4. Optionally change the Detection mode settings.
    • Normal: Collects the relevant endpoint activity data necessary to detect the majority of threats occurring on an endpoint without affecting endpoint performance (Recommended)

    • Hypersensitive monitoring: Collects more endpoint activity data, which may generate false positives and increase bandwidth usage on endpoints.

      Important:

      Hypersensitive monitoring is only available after an authorized user has enabled the feature on the Support Settings app and automatically switches back to Normal after 7 days.

      For more information, see Support Settings.

  5. Click the toggle switch to enable or disable Vulnerability Detection.

    Vulnerability Detection checks endpoints for highly-exploitable operating system and application vulnerabilities.

    Important:

    Only supported on Windows platforms.

    Not supported on non-persistent virtual desktops.

  6. Click Save to apply the settings to the endpoint group.
    Note:

    Agents apply the new settings after connecting to the server.