Controlled folder access - Configure allowed applications GPO

UT_JR 0 Reputation points
2023-05-25T16:22:55.4333333+00:00

We have configured the GPO and now want to release various programmes, but the path is not always the same. How must placeholders be entered here?

C:***\Application.exe

C:**\Application.exe

C:**\Application.exe

Does a separate entry have to be created for each possible folder level?

C:**\Application.exe

C:***\Application.exe

C:****\Application.exe

GPO (Computer Configuration/Administrative Templates/Windows Components/Windows Defender Antivirus/Windows Defender Exploit Guard/Controlled Folder Access/Configure allowed applications)

Many thanks in advance for any relevant information.

Windows 10
Windows 10
A Microsoft operating system that runs on personal computers and tablets.
10,558 questions
0 comments No comments
{count} votes

1 answer

Sort by: Most helpful
  1. Limitless Technology 43,921 Reputation points
    2023-06-01T10:27:21.9933333+00:00

    Hello there,

    You have to specify each folder that you want to protect at Windows components > Microsoft Defender Antivirus > Windows Defender Exploit Guard > Controlled folder access.

    Controlled folder access applies to many system folders and default locations, including folders such as Documents, Pictures, and Movies. You can add other folders to be protected, but you cannot remove the default folders in the default list.

    Adding other folders to controlled folder access can be helpful for cases when you don't store files in the default Windows libraries, or you've changed the default location of your libraries.

    Detailed information here https://learn.microsoft.com/en-us/microsoft-365/security/defender-endpoint/customize-controlled-folders?view=o365-worldwide

    Hope this resolves your Query !!

    --If the reply is helpful, please Upvote and Accept it as an answer–

    0 comments No comments