[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

248268

 
 

909

 
 

195051

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

Process Exclusions

ID: oval:org.secpod.oval:def:28595Date: (C)2015-10-08   (M)2023-07-04
Class: COMPLIANCEFamily: windows




This policy setting allows you to disable scheduled and real-time scanning for any file opened by any of the specified processes. The process itself will not be excluded. To exclude the process, use the Path exclusion. Processes should be added under the Options for this setting. Each entry must be listed as a name value pair, where the name should be a string representation of the path to the process image. Note that only executables can be excluded. For example, a process might be defined as: c:\windows\app.exe. The value is not used and it is recommended that this be set to 0. If you enable this setting, scheduled and real-time scanning for any file opened by a specified process will be excluded. If you disable or do not configure this setting, scheduled and real-time scanning for files will happen for all processes. Fix: (1) GPO: Computer Configuration\Administrative Templates\Windows Components\Windows Defender\Exclusions!Process Exclusions (2) REG: HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\Windows Defender\Exclusions!Exclusions_Processes

Platform:
Microsoft Windows Server 2012 R2
Reference:
CCE-38376-0
CPE    1
cpe:/o:microsoft:windows_server_2012::r2:x64
CCE    1
CCE-38376-0
XCCDF    1
xccdf_org.secpod_benchmark_general_Windows_2012_R2

© SecPod Technologies