Editing a Policy
Applies To: Forefront Endpoint Protection
Forefront Endpoint Protection policies contain settings that control the configuration options of the Forefront Endpoint Protection client software. You can customize the settings of the Forefront Endpoint Protection policy to meet your requirements.
To edit an existing policy
In the Configuration Manager console, expand System Center Configuration Manager, expand Site Database, expand Computer Management, expand Forefront Endpoint Protection, and then click Policies.
Double-click the policy that you want to edit.
In the Properties dialog box, change the options as appropriate for your organization, and then click OK.
The following table summarizes the settings available on each page of the policy properties.
Property page | Setting |
---|---|
General |
|
Antimalware |
|
Updates |
|
Windows Firewall |
|
Warning
It is recommended that you clear the Enable protection against network-based exploits check box for policies assigned to servers. This option is on the Antimalware tab under Real-time protection.
Important
The following items can be added to the list of Excluded files and locations, however the Forefront Endpoint Protection client software will ignore these entries:
- \\
- \
- *
- *.*
- ?:
- *\
- \\\\
- \\?\