Chapter 4 Quick Start Configuration

Configure a Rule Module

Figure 4-6 Add Rules to Module

Step 4 In the File access control rule configuration view (see Figure 4-7), enter the following information:

Description—Quarantined and Suspected Virus Applications, write All Files

Enabled—(This is selected by default. Don’t change this setting for this example.)

Step 5 Select Priority Deny from the action pulldown list.

By selecting Priority Deny here, we are stopping the quarantined applications we’re going to specify later from performing a selected operation on the files we will indicate. By default, when you create a deny rule, all other actions are allowed unless specifically denied by other rules. See the User Guide for information on allow/deny specifics.

 

 

Installing Management Center for Cisco Security Agents 5.2

 

 

 

 

 

 

78-17916-01

 

 

4-15

 

 

 

Page 115
Image 115
Cisco Systems DOC-78-17916 manual Add Rules to Module