This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

User %temp% folder exclusion

Hi All,

Scenerio: We are running software that cannot be scanned by anti-virus. It resides in the users %temp%/gss folder.

I know Sophos doesn't allow shortcuts in the path, ie %temp%. (Symantec does...) ;)  anyways...  

So... I have went to the client and inserted the full path c:\DOCUME~1\LOCAL~1\etc\etc\%temp%\gss and it works. But wait. When I go back to the Enterprise Console, it states that the computer is using a different policy and is flagged. 

I DO NOT want to see every computer flagged. The only way I went around this was to create a policy for every user. Surely there is a better way to do this! 

Any help would be great! 

Thank you,

:37537


This thread was automatically locked due to age.
Parents
  • Christian,

    I agree about the "unfortunate" design! The software in question is very poorly designed. It is a disaster. Alas, we have to run it. It runs on the server, but it downloads parts of the program to the local user's %temp%/gss folder.

    I think I will just add the 'C:\Users\joeshmo\AppData\Local\Temp\gss' for each user to the policy on the Console. It will be a pain and not clean, but at least I will not have flags on every client.

    I will call Sophos also.

    Thanks,

    Capman

    :37571
Reply
  • Christian,

    I agree about the "unfortunate" design! The software in question is very poorly designed. It is a disaster. Alas, we have to run it. It runs on the server, but it downloads parts of the program to the local user's %temp%/gss folder.

    I think I will just add the 'C:\Users\joeshmo\AppData\Local\Temp\gss' for each user to the policy on the Console. It will be a pain and not clean, but at least I will not have flags on every client.

    I will call Sophos also.

    Thanks,

    Capman

    :37571
Children
No Data