Changing application rights for trust groups and groups of applications

The optimal application rights for different trust groups are created by default. The settings of rights for application groups that are in a trust group inherit values from the settings of the trust group rights. You can edit the preset rights of trust groups and rights of application groups.

To edit the rights of a trust group or the rights of an application group:

  1. In the main application window, click the Settings button.
  2. In the left part of the window, in the Advanced Threat Protection section, select Host Intrusion Prevention.

    In the right part of the window, the settings of the Host Intrusion Prevention component are displayed.

  3. Click the Applications button.

    This opens the Application rights tab in the Host Intrusion Prevention window.

  4. Select the necessary trust group or application group.
  5. From the context menu of a trust group or of a group of applications, select Group rights.

    The Application group rights window opens.

  6. In the Application group rights window, do one of the following:
    • To edit trust group rights or application group rights that govern the rights of the trust group or application group to access the operating system registry, user files, and application settings, select the Files and system registry tab.
    • To edit trust group rights or application group rights that govern the rights of the trust group or application group to access operating system processes and objects, select the Rights tab.
  7. For the required resource, in the column of the corresponding action, right-click to open the context menu.
  8. From the context menu, select the required item.
    • Inherit
    • Allow
    • Block
    • Log events

    If you are editing trust group control rules, the Inherit item is not available.

  9. Click OK.
  10. In the Host Intrusion Prevention window, click OK.
  11. To save changes, click the Save button.
Page top