Endpoint Protection

 View Only
  • 1.  How do I exclude multiple files with counters?

    Posted Oct 26, 2016 12:11 PM

    Following Microsoft KB 822158 "Virus scanning recommendations for Enterprise computers that are running currently supported versions of Windows", I want to exclude the edb*.jrs files in the %Windir%\security\database directory.  These files have counters as part of the name such as 'edb00001.jrs', 'edbres00002.jrs' so I would like to make an exception along the lines of edb*.jrs.  However, it appears that SEPM blocks the use of the * and ? key when trying to type in the file name.  How do I get around it?

    It is not acceptable to say that the filenames have to be individually listed as exceptions because even if I list 'edbres00001.jrs' today in exceptions, what's to say that tomorrow there won't be an 'edbres00002.jrs', or that 'edbres00001.jrs' might be on WS 1 but on WS 2 there is an 'edbres00002.jrs'?

    Thanks,

    Dan



  • 2.  RE: How do I exclude multiple files with counters?

    Posted Oct 26, 2016 01:02 PM

    You can only exlude file extensions, but, the ability to use a wildcard is not possible. Have you tried excluding the directory where the files are located?



  • 3.  RE: How do I exclude multiple files with counters?

    Posted Oct 26, 2016 01:16 PM

    I can exclude the directory but I was trying to be as specific as possible. 

    That seems like a significant drawback that you can't use wildcards to specify a group of files.

    Dan