Capture Client Interoperability with Third Party Applications
10/23/2024 45 People found this article helpful 484,522 Views
Description
This guide helps ensure Capture Client works smoothly with the listed applications. For specific instructions on each application, refer to the dedicated guides (linked below). These guides will provide the necessary details to configure your system for optimal compatibility.
While these instructions improve compatibility with certain applications, it's important to understand that the Agent will no longer be able to scan for and block threats that exploit vulnerabilities within those excluded applications.
For best performance, limit exclusions to the smallest group of devices that actually need them. Avoid making exclusions to the default settings for all devices. Instead, create a specific group for devices that use the application you need to exclude, and then set the exclusion for that group.
Resolution
Capture client lets you exclude variants that could be false positives or causing issues with legitimate downloads.
There are five different ways you can create exclusions on the Capture Client console and apply it across the entire tenant network.
- Hashes: You can exclude the SHA 1 hashes of the files. MD5 and SHA 256 hashes are not accepted while creating an exclusion.
- Paths: you can exclude the path of file that could be excluded.
- Signer Identity: You can exclude a particular certificate if the certificate turns out to be a false positive and is blocked as a Threat under Capture client. Add the certificate ID and appropriate OS to create the exclusion.
- File types: lets you exclude any file types eg:exe, pdf ( Available only for Windows OS for now).
- Browsers: lets you exclude the entire browser ( Available only for Windows OS for now).
You can have Global/Tenant level exclusions or Per Policy based Exclusions:
To Create Global/Tenant Level Exclusions:
Click Add on the right. A window will open to Add the exclusion.
For file based exclusions select:
- Type: Path
- As: File
- Exclusion Mode: Performance Focus - Extended
For folder based exclusions select:
- Type: Path
- As: Folder and Subfolder
- Exclusion Mode: Performance Focus - Extended
To Create Per Policy based Exclusions:
For file based exclusions select:
- Type: Path
- As: File
- Exclusion Mode: Performance Focus - Extended
For folder based exclusions select:
- Type: Path
- As: Folder and Subfolder
- Exclusion Mode: Performance Focus - Extended
Note: Global/Tenant Level Exclusions will be pushed to all endpoints under the tenant, Per policy based Exclusions will only be applied to the Endpoints associated with that policy
Learn more about Best Practices for Create Path-based Exclusions.
Related Articles
Categories