Traps Agent Settings Rules
Agent settings rules enable you to change preferences related to Traps from a central location. From the SettingsAgentSettings page, you can create rules to manage the following Traps settings:
Configure a size quota for endpoint logs. For more information, see Define Event Logging Preferences.
User visibility and access
Determine whether and how end users can access the Traps Console application. Optionally, you can configure the console so that only administrators can access it. For more information, see Hide or Restrict Access to the Traps Console.
Determine the frequency at which the Traps agent sends a heartbeat message to the ESM Server. The optimal frequency is determined according to the number of endpoints in the organization and the typical network load. For more information, see Define Heartbeat Settings Between the Agent and the ESM Server.
New process information collection
Configure Traps agents to collect new processes from endpoints. When this option is enabled, Traps reports every new process that runs on an endpoint to the ESM Server. You can view the processes in the Process Management view of the ESM Console and choose whether to create security rules related to the processes. For more information, see Collect New Process Information.
Prevent attempts to disable or make changes to the Traps registry values and files. When this option is enabled, users cannot shut down or modify the Traps agent service. For more information, see Manage Service Protection.
By default, users and administrators must enter a password to uninstall the Traps application. Use this option to change the password. For more information, see Change the Uninstall Password.
Configure the amount of time, known as the timeout value, after which Traps stops initiating attempts to reconnect to the ESM Server when the server becomes unreachable. Configure the grace period to specify when Traps should attempt to reestablish communication. For more information, see Define Communication Settings Between the Agent and the ESM Server.
Customize the general settings for all user alerts, including the display image and footer. You can also configure the title that appears on user alerts related to protection modules, restrictions, and unknown files. For more information, see Create a Custom User Alert Message.
Traps does not apply agent setting rules until the Traps agent receives the updated security policy, typically with the next heartbeat communication with the server. To manually retrieve the latest security policy from the ESM Server, select Check-in now on the Traps Console.
Select a rule on the Settings page to display additional information about that rule and other actions that you can perform to manage the rule (Delete, Activate/Deactivate, or Edit). For more information, see Manage Agent Settings Rules.
Manage Agent Settings Rules
Manage Agent Settings Rules Create agent settings rules from a central location to change preferences related to Traps. Traps Agent Settings Rules Add a New ...
Policy Rule Types
Policy Rule Types A complete endpoint security policy comprises policies that target specific methods of protection. The rules that make up each of these policies ...
Manage ESM Server Settings
Manage ESM Server Settings The ESM Server facilitates communication between Traps agents and WildFire. The ESM Server periodically communicates with WildFire to: Send unknown files ...
Add a New Agent Settings Rule
Add a New Agent Settings Rule For each agent settings rule, you can specify organizational objects, conditions, and Traps preferences to apply. Create a new ...
Define Heartbeat Settings Between the Agent and the ESM Server
Define Heartbeat Settings Between the Agent and the ESM Server During the heartbeat communication, the Traps agent requests the current security policy and sends a ...
Traps Troubleshooting Resources
Traps Troubleshooting Resources To troubleshoot Traps and the Endpoint Security Manager (comprising an ESM Server, the ESM Console, and a database), use the following resources: ...
Forensics Rules Forensics management rules enable you collect forensics data captured by Traps from a central location. From the Policies Forensics Management page, you can ...
Traps Action Rules
Traps Action Rules Action rules enable you to perform one-time actions on the Traps agent that runs on each endpoint. For each action rule, you ...
Define Communication Settings Between the Agent and the ESM Server
Define Communication Settings Between the Agent and the ESM Server By default, the Traps agent applies a No Connection policy to all unknown executable files ...