Changing application rights for trust groups and groups of applications
The optimal application rights for different trust groups are created by default. The settings of rights for application groups that are in a trust group inherit values from the settings of the trust group rights. You can edit the preset rights of trust groups and rights of application groups.
To edit the rights of a trust group or the rights of an application group:
In the main application window, click the Settings button.
In the application settings window, select Advanced Threat Protection → Host Intrusion Prevention.
Click the Applications button.
This opens the Application rights tab in the Host Intrusion Prevention window.
Select the necessary trust group or application group.
From the context menu of a trust group or of a group of applications, select Group rights.
The Application group rights window opens.
In the Application group rights window, do one of the following:
To edit trust group rights or application group rights that govern the rights of the trust group or application group to access the operating system registry, user files, and application settings, select the Files and system registry tab.
To edit trust group rights or application group rights that govern the rights of the trust group or application group to access operating system processes and objects, select the Rights tab.
For the required resource, in the column of the corresponding action, right-click to open the context menu.
From the context menu, select the required item.
Inherit
Allow
Block
Log events
If you are editing trust group control rules, the Inherit item is not available.