Hello,
I was wondering if there is any way to prevent users from running or coping any executables in removable device with excluded files type that considered not risky.
This thread was automatically locked due to age.
Hello,
I was wondering if there is any way to prevent users from running or coping any executables in removable device with excluded files type that considered not risky.
Hello Obaida Thunibat,
only Peripheral Control considers the removable attribute. What you want is something similar to download protection or a "reverse DLP" (maybe Data Infiltration Protection).
From the scanner's POV a removable device is not only just a local disk, you can't block arbitrary files or file types with the Threat Protection policy.
Christian
Hi Obaida Thunibat,
You can prevent the user's from copying files with specific extension under the Data loss prevention policy -using File rule.
Regards,
Gowtham Mani
Community Support Engineer | Sophos Technical Support
Knowledge Base | @SophosSupport | Sign up for SMS Alerts
If a post solves your question use the 'This helped me' link.
QC said:Hello Obaida Thunibat,
only Peripheral Control considers the removable attribute. What you want is something similar to download protection or a "reverse DLP" (maybe Data Infiltration Protection).
From the scanner's POV a removable device is not only just a local disk, you can't block arbitrary files or file types with the Threat Protection policy.Christian
Thank you for the explanation, I had the same feature before in McAfee DLP before migrating to Sophos.
Gowtham Mani said:Hi Obaida Thunibat,
You can prevent the user's from copying files with specific extension under the Data loss prevention policy -using File rule.
Prevent them to copy files to the removable device, not the opposite. I need to prevent them to copy data to the PC from the removable device.