Actions on threat detection window

In this window, you can configure actions to be performed by Kaspersky Industrial CyberSecurity for Linux Nodes with detected infected objects:

File Threat Protection settings

Setting

Description

Actions on threat detection

You can select the actions that the application performs on a detected infected object:

  • Disinfect; delete if disinfection is not possible (default). If you select this action, the application attempts to disinfect the infected object by saving a copy of the object in Backup. If disinfection is not possible (for example, if the type of object or the type of threat in the object cannot be disinfected), then the application deletes the infected object.
  • Disinfect; block if disinfection fails. If you select this action, the application attempts to disinfect the infected object by saving a copy of the object in Backup. If disinfection is not possible (for example, if the type of object or type of threat in the object cannot be disinfected), then access to the infected object is blocked.
  • Block. If you select this action, the application blocks access to the infected object.
  • Skip. When this action is selected, the application skips the infected object (default).

Page top