Kaspersky Security 11.x for Windows Server

Expanding Device Control rules usage scope

June 10, 2022

ID 148411

Each automatically generated device control rule covers only one external device. You can manually expand a rule usage scope by setting the device instance path mask in properties of any specified rule.

Device instance path application reduces the total number of rules specified and simplifies rules processing. But expanding of a rule usage scope can lead to decreasing of external devices control efficiency.

To apply a device instance path mask in a device control rule properties:

  1. Open the Device Control rules window.
  2. In the window that opens, select a rule to use its properties for mask application.
  3. Open the Rule properties window by double clicking on a selected device control rule.
  4. In the window that opens, perform the following operations:
    • Select the Use mask check box next to the Controller type (PID) field if you want a rule selected to allow connections for all external devices that fit the specified information about device manufacturer and controller type.
    • Select the Use mask check box next to the Serial number field if you want a rule selected to allow connections for all external devices that fit the specified information about device manufacturer and device serial number.
    • Select the Use mask check boxes next to the Controller type (PID) field and the Serial number field if you want a rule selected to allow connections for all external devices that fit the specified information about device manufacturer and both controller type and device serial number.

    If the Use mask check box is selected in at least one of the fields, the data from the fields with the selected check box is replaced with the * sign and is not considered when the rule is applied.

  5. If necessary, specify additional information about rule in the Description field. For example, specify the devices affected by the rule.
  6. Click OK.

The newly configured rule properties will be saved. The rule usage scope will be expanded according to a device instance path mask specified.

Did you find this article helpful?
What can we do better?
Thank you for your feedback! You're helping us improve.
Thank you for your feedback! You're helping us improve.