View the Rule History of an Endpoint
Table of Contents
4.2 (EoS)
Expand all | Collapse all
-
- Set Up the Endpoint Infrastructure
- Activate Traps Licenses
-
- Endpoint Infrastructure Installation Considerations
- TLS/SSL Encryption for Traps Components
- Configure the MS-SQL Server Database
- Install the Endpoint Security Manager Server Software
- Install the Endpoint Security Manager Console Software
- Manage Proxy Communication with the Endpoint Security Manager
- Load Balance Traffic to ESM Servers
-
- Malware Protection Policy Best Practices
- Malware Protection Flow
- Manage Trusted Signers
-
- Remove an Endpoint from the Health Page
- Install an End-of-Life Traps Agent Version
-
-
- Traps Troubleshooting Resources
- Traps and Endpoint Security Manager Processes
- ESM Tech Support File
-
- Access Cytool
- View the Status of the Agent Using Cytool
- View Processes Currently Protected by Traps Using Cytool
- Manage Logging of Traps Components Using Cytool
- Restore a Quarantined File Using Cytool
- View Statistics for a Protected Process Using Cytool
- View Details About the Traps Local Analysis Module Using Cy...
- View Hash Details About a File Using Cytool
View the Rule History of an Endpoint
The standard details view of the Health page
displays a table of endpoints with fields displayed along the top.
Selecting an endpoint in the Health table expands the row to reveal
additional details about the endpoint and allows you to view the
rule history of objects in your organization. Each rule in the Agent
Policy displays the date and time when Traps applied the rule, source
of the policy rule (local or remote), rule name and description,
and the current status of that rule.
- Open the Endpoint Security Manager and select MonitorAgentHealth.
- Select the row of the endpoint for which you want to view the rule history. The row expands to display further details and actions you can perform.
- Select Agent Policy from the drop-down on the right. The recent status information appears in the Agent Policy and Logs section of the page.
- Click Details to view the full
rule history log. The status indicates one of the following:
- Active—The rule is active in the endpoint security policy.
- Historic—The rule is an older version of a rule that is active in the endpoint security policy.
- Disabled—The rule was deactivated in the security policy.