Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.

Creating an Application Control

...

policy

Application Control policies determine whether certain actions run before an end user can run an application. For example, a policy might deny an application the ability to execute or quarantine the application when a user attempts to run the application. The easiest way to create these policies is to use the Application Control Wizard, but they can also be created manually.

To create an Application Control policy using the wizard please refer to:

...

Application Control Policy Wizard.

To create an Application Control policy manually please refer to: Standard Application Control Policies

Using an existing policy

  • Once you are in the Arellia Console select the Policies tab
  • Select Then select Policies > Arellia >Application Control > Windows > Application Control TasksClick on Application Control > Policies

  Image RemovedClick the policy that you want to create.  Image Added

You can choose from the following policies:

  • Allow Microsoft Installer Policy
  • Allow Whitelist Execution
  • Deny Blacklist ExecutionAdministrative Rights Required Detection Policy (Application Compatibility)
  • Administrative Rights Required Detection Policy (Security Manifest)
  • Setup Detection Policy
  • Limit Internet Browser and Mail Client Process Rights
  • Limit Popular Instant Messaging Application Process Rights
  • Limit Popular Media Player Process Rights
  • Limit Process Rights for Unclassified Applications Discovered in the Last Week
Info
titleNote

For descriptions of these Application Control policies, see Overview

The Application Control Wizard opens in a new window. The following 3 steps take you through the wizard.

Step 1 - Welcome to the Application Control Wizard

Select the computers and applications you want to target with this policy.

  • To select the application that you want to target with this policy, click Select an Item next to Application:
  • In the Select Items dialog, select a collection and click OK.  You can select multiple filters if you want. 
  • To include filters in the policy, click Select an Item next to Include:
  • In the Select Items dialog, select an application filter from the available items
  • To exclude filters in the policy, click Select an Item next to Exclude: and follow the procedure in Step 4 above.
Step 2 - Select Actions

In this step, you select actions to apply to an application and its processes. You can also select application action reporting options.

To add an action to the policy

  • Next to Application Actions, click Select an Item.
  • In the Items Selector dialog, select an application action from the Available items and click Save changes.

To add your own application action:

  • In the left pane,right-click on the action type you would like to create and select New > item type.
  • Select the new item you have created.
  • In the right-pane, enter a name, description and other necessary info for that action.
    For details on what you can configure for each action, see Application Actions.

To add an action to any Child Process select:

  • Same as Above - Apply the application action to any child process.
  • Use Different Action - Choose Click to select, select an application in the Select Items dialog, and click Save changes.
  • (Optional) Click Send the Notification Server an event if these actions are applied.
  • Click Save changes.

(Optional) To Add extra Application Actions (You can add as many application actions to a policy as you want.)

  • Select an application action by choosing Click to select 
  • Choose the new action from the list of choices and add it to your policy.
  • Click Save changes.  Your policy now contains two application actions.
Step 3 - Policy Enforcement

Enter general policy details and enforcement options.

  • Enable the policy using the On/Off toggle.
  • Enter a policy name and description in the fields provided.
  • Select your policy enforcement options:
    • Policy Priority - Enter a policy priority to determine its order in relation to other policies.
    • *Continue enforcing policies after enforcing this policy - *Continues enforcing lower priority policies after enforcing this policy.
    • Continue enforcing policies for child processes after enforcing this policy - Continues enforcing lower priority policies for child processes after enforcing this policy.
    •  Stage 2 Processing
  • Click Save changes.User Requested Elevation Justification Policy
  • Allow Microsoft Security Rated Whitelist Execution Policy
  • Allow Microsoft Installer Policy
  • Deny Manual Security Rated Blacklist Execution