Jump to content

Policy doesnt work


Go to solution Solved by kapi9913,

Recommended Posts

Hello guys. I'm new into eset. Im trying to configure basic policies that for example block selected website. It seems that I configured that correctly, but nothing works. Im sure that there isnt doubled policies or policy is not aplied. I checked everything. I work on ESET PROTECT and ESET ENDPOINT. I did policy that block usb pendrive and it worked so I dont know where is the problem in other policies.

Zrzut ekranu 2023-03-08 072630.png

Zrzut ekranu 2023-03-08 072708.png

Link to comment
Share on other sites

  • Most Valued Members

Just a suggestion , since you blocked Polish language of Facebook , it might just re-direct to some other domain or english language

Try blocking *.facebook.com

Link to comment
Share on other sites

It doesnt work. I guess there is a problem with aplying policies. I  made a bunch of them and only one work- blocking removable devices. Should I remove my computer from dynamic group. Maybe this blocks policy from static group where I apply every policy that I made.

Link to comment
Share on other sites

  • Administrators

I didn't find any issues with your configuration and using the very same Web Control rule worked for me. What about blocking a different website for a test? And what about blocking an http site? As for the suggestion above by Nightownl, try blocking just facebook.com since wildcards are not supported in Web Control rules.

Does blocking the website via Web access protection -> Url management work?

Link to comment
Share on other sites

Eicar is detected by endpoint but webaccess doesnt say anything. I guess there is a problem with connection between endpoint and eset protect.

Link to comment
Share on other sites

  • Administrators

To find out if the issue is policy related, please try what I suggested before:

Does the problem persist even if you try to block the said hostname locally and not via a policy?

Link to comment
Share on other sites

I cant set it locally because I do not have password to ESET ENDPOINT. There is password reqiurment if you want to set the rule.

Link to comment
Share on other sites

  • Administrators

If you are an administrator with access to ESET PROTECT, it should be you who set the password to protect settings.

At least you should be able to create a policy for a particular endpoint that will temporarily remove password protection.

Link to comment
Share on other sites

  • Administrators

You can't determine the password but you can create and enforce a policy that would either temporarily disable password protection set by another admin or enable override mode.

image.png

Link to comment
Share on other sites

I added this policy and it still requier password. It can be problem between endpoint and protect. But I dont know what exactly is going on.

Zrzut ekranu 2023-03-08 100631.png

Zrzut ekranu 2023-03-08 100738.png

Link to comment
Share on other sites

  • Administrators

I'm sorry, I was wrong with the override mode. Instead enforce a policy setting an empty password. After removing this policy, settings with be protected with the existing password again.

image.png

Link to comment
Share on other sites

  • Solution

It worked after I deleted static group and kept only dynamic group. Question is how can i exclude my computer from dynamic group called windows pc

Link to comment
Share on other sites

Guest
This topic is now closed to further replies.
  • Recently Browsing   0 members

    • No registered users viewing this page.
×
×
  • Create New...