I'be been looking to no avail for some recommended settings for a home user / standalone install of Endpoint Security and Control . Can someone point me in the right direction?
This thread was automatically locked due to age.
HI,
To be honest the defaults are pretty good and have obviously been thought about. I don't think there is much you would want to change, It's really when you need to clean some malware up when you might want to modify the settings, for example to turn on cleanup.
The only customisations you may want to make is to create a scheduled scan and turn on "on-write scanning" under on-access setting if it doesn't cause you any performance problems. The only other things you might need to do is create a few exclusions for performance reasons but the security implications of doing so should be understood before doing so,
I wrote a post which touches on exclusions here: /search?q= 8067
Thanks,
Jak
There's also Best Practice: setting up home users which gives some recommendations together with an explanation for the setting. Although I don't quite understand the paragraph
You can’’’’t create a scheduled scan for your end users’’’’ home computers, so we recommend leaving this unset.
Scheduled scans are in the exported policy and I think they are also set up on the client - but I haven't tested it.
Christian